A reviewer wants to turn off Azure Policy assignments because Defender for Cloud regulatory compliance is enabled. What is the accurate guidance?
Select an answer to reveal the explanation.
Short Explanation
Defender’s compliance board is the report card; Azure Policy is still the hall monitor with the deny stick. Turning Policy off because the dashboard looks pretty leaves the estate unenforced.
Full Explanation
Microsoft Defender for Cloud regulatory standards assess and report compliance posture. Azure Policy remains the primary enforcement mechanism (audit/deny/deploy effects). Many assessments are backed by Policy, but enabling Defender compliance reporting does not justify removing Policy assignments that enforce controls.