Information
Microsoft Defender for Azure Cosmos DB scans all incoming network requests for threats to your Azure Cosmos DB resources.
In scanning Azure Cosmos DB requests within a subscription, requests are compared to a heuristic list of potential security threats. These threats could be a result of a security breach within your services, thus scanning for them could prevent a potential security threat from being introduced.
Solution
Remediate from Azure Portal
- Go to Microsoft Defender for Cloud
- Under Management select Environment Settings
- Click on the subscription name.
- Select the Defender plans blade.
- On the Database row click on Select types >
- Set the toggle switch next to Azure Cosmos DB to On
- Click Continue
- Click Save
Remediate from Azure CLI
Run the following command:
az security pricing create -n 'CosmosDbs' --tier 'standard'
Remediate from PowerShell
Use the below command to enable Standard pricing tier for Azure Cosmos DB
Set-AzSecurityPricing -Name 'CosmosDbs' -PricingTier 'Standard
Impact:
Enabling Microsoft Defender for Azure Cosmos DB requires enabling Microsoft Defender for your subscription. Both will incur additional charges.