InformationEnable 'Azure Defender for SQL' on critical SQL Servers.
Azure Defender for SQL is a unified package for advanced SQL security capabilities. Azure Defender is available for Azure SQL Database, Azure SQL Managed Instance, and Azure Synapse Analytics. It includes functionality for discovering and classifying sensitive data, surfacing and mitigating potential database vulnerabilities, and detecting anomalous activities that could indicate a threat to your database. It provides a single go-to location for enabling and managing these capabilities.
Azure Defender for SQL is a paid feature and will incur additional cost for each SQL server.
SolutionFrom Azure Console
Go to SQL servers
For each server instance
Click on Azure Defender for SQL
Set Azure Defender for SQL to On
Using Azure PowerShell
Enable Advanced Data Security for a SQL Server:
Set-AzSqlServerThreatDetectionPolicy -ResourceGroupName <resource group name> -ServerName <server name> -EmailAdmins $True
Enabling 'Azure Defender for SQL' from the Azure portal enables Threat Detection
Using Powershell command Set-AzSqlServerThreatDetectionPolicy enables Azure Defender for SQL for a SQL server
By default, Azure Defender for SQL is set to Off.