Azure-Samples / modern-data-warehouse-dataops

DataOps for Microsoft Data Platform technologies. https://aka.ms/dataops-repo
MIT License
590 stars 462 forks source link

Triage Security Findings - Defender Work in Progress #859

Open ExpressDead opened 2 days ago

ExpressDead commented 2 days ago

We recommend at least three triage sessions so that your backlog doesn’t get out of hand by not keeping up with security recommendations that go unidentified. The work in progress review should happen around the midpoint of the engagement. You should have already gathered a baseline initial score and should have completed some deployments into the environment to drive discussion.

ACTIONS

Hold a triage meeting to review security recommendations. Address recommendations, create backlog items to remediate findings as appropriate. Record the observed Defender score here