Integrations/Microsoft Azure (ARM)
Core Security Platforms

Microsoft Azure (ARM) Integration

Capture exportable evidence from Microsoft Azure (ARM) on a schedule you control. Evidence includes source details and timestamps so reviewers can verify without meetings.

CloudDirect connectionEvidence captureContinuous checksUpdates every 1 hours3 mapped controls
Common coverage includes Cloud audit logging, Cloud Security Management --- Cloud security management, and Public access prevention.
No obligation. We’ll start with the export format.
At a Glance
Best for
Continuous checks and evidence capture
Auth
OAuth 2.0 (application sign-in)
Cadence
Every 1 hours
Setup time
10 to 20 minutes
Framework coverage
Aurora Essentials (Baseline Control Set) and 14 more
Proof outputs
Buyer-recognizable deliverables you can ship on demand.

Setup

Setup

A short path from connection to an exportable evidence bundle.

01
Connect Microsoft Azure (ARM)
Sign-in method: OAuth 2.0 (application sign-in). Start with least-privilege access where supported.
02
Confirm Evidence Sources and Cadence
Confirm evidence sources and set cadence (every 1 hours).
03
Validate Capture (Read-Only Where Possible)
Validate evidence capture in read-only mode (where possible) before expanding workflows.
04
Map Evidence to Controls
Map captured artifacts to controls (3 mapped controls listed).
05
Export an Evidence Bundle
Export an evidence bundle (ZIP) you can attach to reviewer-ready exports.

Capture

What This Integration Captures

Evidence types and collection notes, based on the integration’s published resources.

What Aurora monitors
2 continuous checks
Azure Activity Log export configured • Azure Storage public access prevention enforced
Evidence Aurora can collect
2 evidence types
Accounts • Resource
How it stays current
Incremental updates every 1 hours. Full refresh daily.
Checks update as new data is synced.
Checks
Automated checks Aurora can run
Checks map directly to common buyer requirements. Reviewers see the result as exportable evidence, not a screenshot.
Azure Activity Log export configured
Azure Storage public access prevention enforced
Evidence
Evidence types collected
These evidence objects can be mapped to controls and exported as an evidence bundle or audit workbook snapshot.
AccountsResource
Produces
  • Evidence objects with source details
  • Freshness and cadence status
  • Evidence bundle exports (plan-based)
Security Note
Read-only API, scoped credentials, and an audit trail (where supported by the connector and your environment).
Cadence Controls
Incremental updates every 1 hours. Full refresh daily.

Reviewers

Why It Matters for Reviewers

A few ways this reduces follow-ups during audits and buyer reviews.

  • Reduces “show me” follow-ups by attaching system exports to answers.
  • Keeps timestamps explicit for audit windows.
  • Makes sampling easier through evidence bundles.

Frameworks

Controls and Frameworks Impacted

A quick sense of which frameworks this connector helps cover (based on mapped controls).

Aurora Essentials (Baseline Control Set)
AURORA_ESS
3 controls
AWS Foundational Technical Review (FTR) Validation Checklist
AWS_FTR
1 control
CSA Consensus Assessments Initiative Questionnaire (CAIQ) v4.0.3
CAIQ
1 control
CSA Cloud Controls Matrix (CCM) v4.0.12
CCM
1 control
CMMC 2.0 Level 1 (Foundational)
CMMC
1 control
Cyber Risk Institute Profile (CRI)
CRI_PROFILE
1 control
FedRAMP Security Controls Baseline (High) - NIST SP 800-53 Rev. 5
FEDRAMP_REV5_HIGH_BASELINE
1 control
FedRAMP Security Controls Baseline (Low) - NIST SP 800-53 Rev. 5
FEDRAMP_REV5_LOW_BASELINE
1 control
FedRAMP Security Controls Baseline (Moderate) - NIST SP 800-53 Rev. 5
FEDRAMP_REV5_MODERATE_BASELINE
1 control
FedRAMP 20x (Phase 2 Pilot) Requirements, Recommendations, and KSIs
FEDRAMP20X
1 control
ISO/IEC 27017:2015 — Code of practice for information security controls for cloud services
ISO_IEC_27017_2015
1 control
ISO/SAE 21434:2021 — Road vehicles — Cybersecurity engineering
ISO_SAE_21434
1 control

FAQ

Microsoft Azure (ARM) Integration Questions

Short answers to common evaluation questions.

Does this require admin access?
It depends on the evidence you choose to capture. We’ll confirm required permissions during setup.
Can we control cadence?
Yes. In eligible plans, cadence is configurable.
Can we export evidence for reviewers?
Yes. Captured artifacts can be included in evidence bundles and reviewer-ready exports.
Next step
Want to Confirm Evidence Coverage for Microsoft Azure (ARM)?
Bring one reviewer request. We’ll map which artifacts matter and what you can export today.
No obligation. We respond within one business day. We will show a sample reviewer-ready export.