Audit diagnostic setting for selected resource types

MEDIUM

Ensures that diagnostic settings are configured for key Azure resource types to enable logging and monitoring.

What does this mean?

This recommendation audits whether diagnostic settings are properly configured for selected Azure resource types. Without diagnostic settings, operational and security events for these resources are not captured.

Benefits of implementation

  • Ensures comprehensive logging across Azure resources
  • Enables proactive monitoring and alerting
  • Required for security and compliance auditing

Drawbacks and considerations

  • Each resource type needs individual diagnostic setting configuration
  • Log storage costs scale with the number of resources
  • Requires a logging strategy and destination (Log Analytics, Storage, Event Hub)

Implementation

Implementation guidance coming soon.

Related recommendations will be linked here.

Frameworks

Details
Risk Level
MEDIUM
Category
Logging & Monitoring
Azure Resource

Frameworks
1 frameworks
Last updated
2026-02-12