New built-in Azure policies to create continuous export or workflow automation are now available

%3CLINGO-SUB%20id%3D%22lingo-sub-1435874%22%20slang%3D%22en-US%22%3ENew%20built-in%20Azure%20policies%20to%20create%20continuous%20export%20or%20workflow%20automation%20are%20now%20available%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-1435874%22%20slang%3D%22en-US%22%3E%3CP%3E%3CSTRONG%3ETeam%2C%3C%2FSTRONG%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EWe%20want%20to%20update%20that%20new%20built-in%20Azure%20policies%20to%20create%20and%20configure%20%3CA%20href%3D%22https%3A%2F%2Fnam06.safelinks.protection.outlook.com%2F%3Furl%3Dhttps%253A%252F%252Fdocs.microsoft.com%252Fen-us%252Fazure%252Fsecurity-center%252Fcontinuous-export%26amp%3Bdata%3D02%257C01%257Ccrmuno%2540microsoft.com%257C397a698784d5433a9bca08d807a8f87d%257C72f988bf86f141af91ab2d7cd011db47%257C1%257C0%257C637267769848848935%26amp%3Bsdata%3Dn2%252FEul0jk7ivGuilXotPsiwBKnFKmrmy93Kk0f6znIc%253D%26amp%3Breserved%3D0%22%20target%3D%22_blank%22%20rel%3D%22nofollow%20noopener%20noreferrer%20noopener%20noreferrer%22%3EContinuous%20export%3C%2FA%3E%20and%20%3CA%20href%3D%22https%3A%2F%2Fnam06.safelinks.protection.outlook.com%2F%3Furl%3Dhttps%253A%252F%252Fdocs.microsoft.com%252Fen-us%252Fazure%252Fsecurity-center%252Fworkflow-automation%26amp%3Bdata%3D02%257C01%257Ccrmuno%2540microsoft.com%257C397a698784d5433a9bca08d807a8f87d%257C72f988bf86f141af91ab2d7cd011db47%257C1%257C0%257C637267769848848935%26amp%3Bsdata%3DpSw2ZGqp83ZU8u7lSSmD47fc42yJmw4gMbEHECe%252FLco%253D%26amp%3Breserved%3D0%22%20target%3D%22_blank%22%20rel%3D%22nofollow%20noopener%20noreferrer%20noopener%20noreferrer%22%3EWorkflow%20automation%3C%2FA%3E%20in%20ASC%20at%20scale%20are%20now%20available.%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EThese%20%3CEM%3EDeployIfNotExist%3C%2FEM%3E%20policies%20can%20be%20used%20to%20create%20the%20desired%20configurations%20on%20any%20scope%2C%20subscription%2Fs%20or%20management%20groups%2C%20and%20can%20be%20found%20through%20Azure%20Policy%3A%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CUL%3E%0A%3CLI%3E%3CSTRONG%3EContinuous%20export%3C%2FSTRONG%3E%3C%2FLI%3E%0A%3C%2FUL%3E%0A%3CP%3E%E2%80%98Deploy%20export%20to%20Event%20Hub%20for%20Azure%20Security%20Center%20alerts%20and%20recommendations%E2%80%99%20%E2%80%93%20Policy%20Id%3A%20cdfcce10-4578-4ecd-9703-530938e4abcb%3C%2FP%3E%0A%3CP%3E%E2%80%98Deploy%20export%20to%20Log%20Analytics%20workspace%20for%20Azure%20Security%20Center%20alerts%20and%20recommendations%E2%80%99%20%E2%80%93%20Policy%20Id%3A%20ffb6f416-7bd2-4488-8828-56585fef2be9%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CUL%3E%0A%3CLI%3E%3CSTRONG%3EWorkflow%20automation%3C%2FSTRONG%3E%3C%2FLI%3E%0A%3C%2FUL%3E%0A%3CP%3E%E2%80%98Deploy%20Workflow%20Automation%20for%20Azure%20Security%20Center%20alerts%E2%80%99%20%E2%80%93%20Policy%20Id%3A%20f1525828-9a90-4fcf-be48-268cdd02361e%3C%2FP%3E%0A%3CP%3E%E2%80%98Deploy%20Workflow%20Automation%20for%20Azure%20Security%20Center%20recommendations%E2%80%99%20%E2%80%93%20Policy%20Id%3A%2073d6ab6c-2475-4850-afd6-43795f3492ef%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EWe%20hope%20you%20will%20find%20these%20useful%20and%20will%20appreciate%20any%20feedback.%3C%2FP%3E%3C%2FLINGO-BODY%3E
Highlighted
Microsoft

Team,

 

We want to update that new built-in Azure policies to create and configure Continuous export and Workflow automation in ASC at scale are now available.

 

These DeployIfNotExist policies can be used to create the desired configurations on any scope, subscription/s or management groups, and can be found through Azure Policy:

 

  • Continuous export

‘Deploy export to Event Hub for Azure Security Center alerts and recommendations’ – Policy Id: cdfcce10-4578-4ecd-9703-530938e4abcb

‘Deploy export to Log Analytics workspace for Azure Security Center alerts and recommendations’ – Policy Id: ffb6f416-7bd2-4488-8828-56585fef2be9

 

  • Workflow automation

‘Deploy Workflow Automation for Azure Security Center alerts’ – Policy Id: f1525828-9a90-4fcf-be48-268cdd02361e

‘Deploy Workflow Automation for Azure Security Center recommendations’ – Policy Id: 73d6ab6c-2475-4850-afd6-43795f3492ef

 

We hope you will find these useful and will appreciate any feedback.