8.2.1 Ensure That Microsoft Defender for IoT Hub Is Set To 'On'

Information

Microsoft Defender for IoT acts as a central security hub for IoT devices within your organization.

IoT devices are very rarely patched and can be potential attack vectors for enterprise networks. Updating their network configuration to use a central security hub allows for detection of these breaches.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Remediate from Azure Portal

- Go to IoT Hub.
- Select an IoT Hub to validate.
- Select Overview in Defender for IoT.
- Click on Secure your IoT solution, and complete the onboarding.

Impact:

Enabling Microsoft Defender for IoT will incur additional charges dependent on the level of usage.

See Also

https://workbench.cisecurity.org/benchmarks/21611

Item Details

Category: RISK ASSESSMENT, SYSTEM AND INFORMATION INTEGRITY

References: 800-53|RA-5, 800-53|SI-4, 800-53|SI-4(4), CSCv7|3.1

Plugin: microsoft_azure

Control ID: dbaff1e8fab6bd6dbbfe24e4d51c1aedebd06bf1e6f80b3726d44b0d6ffcde00