Quick Notes92 words
Microsoft Defender for Cloud DevOps Security — quick notes
Defender for Cloud DevOps Security — quick notes
| Fact | Detail |
|---|---|
| Purpose | Extend cloud security posture back into pipelines and repos |
| Connectors | Azure DevOps · GitHub · GitLab |
| Key value | Map a cloud finding to the template/repo that created it |
| Scanning done by | GitHub Advanced Security (or equivalent) |
| Defender's role | Aggregate and correlate, not perform the scan |
Trap: connecting Defender for Cloud does not itself start scanning code — GHAS does the scanning.