The canal authority has house rules such as no public IPs on lock-lab resource groups and Key Vault purge protection. How should those appear as a Defender for Cloud standard?
Select an answer to reveal the explanation.
Short Explanation
House rules need a real standard, not a Threat Modeling doodle. Build a custom Defender for Cloud standard from your Azure Policy initiative and let the dashboard grade the canal’s own rules.
Full Explanation
Custom standards in Microsoft Defender for Cloud are created from Azure Policy initiatives or custom assessments as documented. Threat Modeling Tool diagrams, Sentinel bookmarks, and informal documents are not how custom compliance standards are added to Defender for Cloud.