azure policy

  1. Azure Policy Brings CIS Linux Benchmarks via azure-osconfig (Preview)

    Microsoft Azure now exposes the official Center for Internet Security (CIS) Linux Benchmarks as a built‑in capability inside Azure Policy’s Machine Configuration, delivered by Microsoft’s new azure‑osconfig compliance engine and released in Preview as an audit‑only, CIS‑certified assessment...
  2. Azure Policy Brings CIS Linux Benchmarks to Linux Fleets (Preview)

    Microsoft Azure now includes the official Center for Internet Security (CIS) Linux Benchmarks as a built‑in, CIS‑certified capability inside Azure Policy’s Machine Configuration — a preview feature powered by the new azure‑osconfig compliance engine that delivers continuous, audit‑grade...
  3. Azure Policy Adds CIS Linux Benchmarks via azure-osconfig (Preview)

    Microsoft and the Center for Internet Security (CIS) have made the official CIS Linux Benchmarks available as a built‑in, CIS‑certified capability in Microsoft Azure’s Azure Policy → Machine Configuration experience, powered by the new azure‑osconfig compliance engine — a preview feature that...
  4. Azure Policy Adds Built in CIS Linux Benchmarks via azure osconfig

    Microsoft and the Center for Internet Security (CIS) have delivered a major operational win for cloud security teams: official CIS Linux Benchmarks are now available as a built‑in capability in Microsoft Azure, exposed through Azure Policy’s Machine Configuration and powered by the new...
  5. Azure Policy Brings CIS Linux Benchmarks to Hybrid Cloud via azure-osconfig

    Microsoft Azure now exposes the Center for Internet Security (CIS) Linux Benchmarks as a built‑in Azure Policy Machine Configuration capability, bringing CIS‑certified, audit‑grade Linux benchmark assessments into a supported, cloud‑native compliance workflow and enabling continuous evaluation...
  6. Azure Policy Adds CIS Certified Linux Benchmarks via Azure osconfig (Preview)

    Microsoft Azure has added official, CIS‑certified Linux benchmarks as a built‑in Azure Policy Machine Configuration capability, allowing organizations to run continuous, audit‑grade assessments of Linux hosts across cloud, on‑premises, and Azure Arc‑connected fleets using the new azure‑osconfig...
  7. Azure CIS Linux Benchmarks Built In via Policy and Arc (Preview)

    Microsoft and the Center for Internet Security (CIS) have made official CIS Linux security benchmarks available natively on Microsoft Azure, delivered as a built‑in Azure Policy Machine Configuration capability powered by the new azure‑osconfig compliance engine — a move that brings...
  8. Auto Agent Upgrade for Azure Arc: Policy-driven CMA updates (Public Preview)

    Microsoft has quietly moved another piece of hybrid management from "manual chore" to "policy-driven automation" with the public preview of Auto Agent Upgrade for Azure Arc–enabled servers — a feature that will automatically keep the Azure Connected Machine agent current across on‑premises...
  9. Microsoft's Cloud-First Transformation: Azure, Observability, and Platform Engineering

    Microsoft’s internal IT organization has completed one of the most ambitious cloud migrations in corporate history — moving virtually all employee-facing systems into Azure and reshaping how the company thinks about operations, security, and engineering at scale. The transition, driven by...
  10. Azure Arc and Azure Update Manager: The WSUS Replacement for Hybrid Patch Management

    Azure Arc is becoming the practical replacement many enterprises need after Microsoft signaled the deprecation of Windows Server Update Services (WSUS), and for organizations that want to centralize patching across on-premises servers and Azure VMs the recommended route is to Arc‑enable servers...
  11. Urgent: Patch CVE-2025-49707 in Azure VMs (Local Spoofing)

    Title: Urgent: CVE-2025-49707 — Azure Virtual Machines Improper Access Control Allows Local Spoofing (What IT Teams Must Do Now) Summary Microsoft has published guidance for CVE-2025-49707: an improper access-control vulnerability in Azure Virtual Machines that allows an authorized attacker to...