9.2.1 Ensure That Microsoft Defender for IoT Hub Is Set To 'On'

Information

Microsoft Defender for IoT acts as a central security hub for IoT devices within your organization.

IoT devices are very rarely patched and can be potential attack vectors for enterprise networks. Updating their network configuration to use a central security hub allows for detection of these breaches.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Remediate from Azure Portal

- Go to IoT Hub
- Select an IoT Hub to validate.
- Select Overview in Defender for IoT
- Click on Secure your IoT solution and complete the onboarding.

Impact:

Enabling Microsoft Defender for IoT will incur additional charges dependent on the level of usage.

See Also

https://workbench.cisecurity.org/benchmarks/19304

Item Details

Category: RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

References: 800-53|RA-5, 800-53|SI-4, 800-53|SI-4(4), CSCv7|3.1

Plugin: microsoft_azure

Control ID: df74febd6681a9b3861172bd35b2881a60501aef9cad09220d46ea2bdae209d1