Logging and monitoring

Missing alert for virtual machine creation/updating


Monitoring for create or update virtual machine events gives insight into the changes made within your cloud environment regarding Azure virtual machines and can help reduce the time for detecting unauthorized activity.
  • Recommended Mitigation

    Under Monitor -> Alerts, create an alert for 'Microsoft.Compute/virtualMachines/write'