The recommendations in this document will go into updating the CIS Microsoft Azure Foundations Benchmark v1, and are anchored on the security best practices defined by the CIS Controls, Version 7. Like the CIS Controls themselves, communities of experts develop CIS Benchmarks with a consensus-based approach. To learn more or access the corresponding CIS Benchmark, please visit the Center for Internet Security website or visit our community platform, CIS WorkBench. This document, CIS Microsoft Azure Foundations Security Benchmark, provides prescriptive guidance for establishing a secure baseline configuration for Microsoft Azure. In May 2018, the Center for Internet Security (CIS) published the most recent version of the benchmark, 1.2.0. The Center for Internet Security (CIS) releases benchmarks for best practice security recommendations. The hardening of this instance was configured through the utilization of local group policy. This image has been hardened by CIS and is configured with the majority of the recommendations included in the free PDF version of the corresponding CIS Benchmark. The benchmark offers prescriptive instructions for configuring AWS services in accordance with industry best practices. CIS provides so-called Benchmarks for various operating systems and applications such as Windows 10, Office 2016, Linux, Google Chrome, Firefox, Windows Server 2016 etc. In the big wide world of security, it can be hard to know what Azure resource settings give you the best possible security posture. CIS Benchmarks are vendor agnostic, consensus-based security configuration guides both developed and accepted by government, business, industry, and academia. The CIS Benchmarks are objective, consensus-driven configuration guidelines developed by security experts to help organizations improve their security posture. Currently, there are more than 140 CIS Benchmarks in total, spanning across seven core technology categories. Hardened according to a CIS Benchmark - the consensus-based best practice for secure configuration. The AWS Foundations Benchmark is a set of configuration best practices for hardening AWS accounts to establish a secure foundation for running workloads on AWS. The CIS Kubernetes Benchmark is a set of recommendations for configuring Kubernetes to support a strong security posture. Implementing the Center for Internet Security Benchmark for macOS. The CIS Controls for Effective Cyber Defense (CSC) is a set of information security control recommendations developed by the Center for Internet Security (CIS). It provides an industry approved rubric by which to measure a Kubernetes cluster's security posture. CIS Hardened Images Now in Microsoft Azure Marketplace. This white paper shows you how to implement CIS recommendations for: Software updates and patches; System preferences; Cloud services This benchmark contains recommendations that help improve the security of your applications and data on Azure. In simple words, a CIS benchmark contains guidance for as to how to securely configure an operating system or application. The Benchmark is tied to a specific Kubernetes release. CIS Benchmarks, published by the Center for Internet Security (CIS), are documented industry best practices for securely configuring IT systems, software, and networks. CIS Benchmarks are developed in a unique consensus-based process comprised of hundreds of security professionals worldwide as de facto, best-practice configuration standards. In my previous post, we discussed the CIS Benchmarks and system hardening. CIS Benchmarks are vendor agnostic, consensus-based security configuration guides both developed and accepted by government, business, industry, and academia. CIS benchmarks are a set of configuration standards and best practices designed to help organizations ‘harden’ the security of their digital assets.