PipelineAtlas

Azure Security Audit

Build a custom security scan across your Azure subscription. Pick only the services you run, and we bundle them into one combined audit report aligned to CIS Azure Benchmarks.

FullService Coverage
DeepSecurity Checks
CISBenchmark Aligned
← Back to Cloud Providers
How to create credentials Register an App in Azure Active Directory with Reader and Security Reader roles on your subscription. Use the App's Client ID, Client Secret, and your Tenant ID below. Your credentials are used only to run the audit and are never stored.
Found in Azure Portal under Subscriptions
Azure Active Directory : Overview : Directory ID
App Registrations : your app : Application (client) ID
App Registrations : your app : Certificates and secrets
Receive the full HTML report by email when the audit completes
Pick the scanners you want Select the Azure services you run from the scanners below. When you build your package, every scanner you tick runs against your subscription and the results are combined into a single prioritised report. Choose all of them, or just the services you actually run.
25 of 25 scanners selected
Storage and Data
Compute and Containers
Security and Identity
Networking and Edge
Messaging and Cache
Data Protection and Monitoring
Extended Service Coverage

These extended scanners cover the long tail of Azure services. They are optional and unchecked by default to keep a standard audit fast. Tick only what you run.

Extended Networking and Edge
Extended Storage and Data
Extended Compute and Containers
Extended AI, Analytics and Data
Extended Integration and Messaging
Extended Security and Management
Extended IoT, Web and Media
25 scanners in your package Combined into one prioritised Azure audit report