Azure overprovisioned identities should have only necessary permissionsRecommendationsAzure overprovisioned identities should have only necessary permissionsCategories:Identity & Access ManagementFrameworks:CSPM less than a minute
Containers running in Azure should have vulnerability findings resolvedRecommendationsContainers running in Azure should have vulnerability findings resolvedCategories:Container SecurityFrameworks:CSPMDefender for Cloud Recommendations less than a minute
Permissions of inactive identities should be revokedRecommendationsPermissions of inactive identities should be revokedCategories:Identity & Access ManagementFrameworks:CSPM less than a minute
Privileged roles should not have permanent access at subscription/RG levelRecommendationsPrivileged roles should not have permanent access at subscription/RG levelCategories:Identity & Access ManagementFrameworks:CSPMDefender for Cloud Recommendations less than a minute
Service Principals should not be assigned administrative roles at sub/RG levelRecommendationsService Principals should not be assigned administrative roles at sub/RG levelCategories:Identity & Access ManagementFrameworks:CSPMDefender for Cloud Recommendations less than a minute
Vulnerable AKS should be updated to resolve vulnerability findingsRecommendationsVulnerable AKS should be updated to resolve vulnerability findingsCategories:Kubernetes / AKSFrameworks:CSPMDefender for Cloud Recommendations less than a minute