Cloud posture assessment — Azure, AWS & GCP
Your Microsoft 365 workspace is half the picture. The other half runs in cloud subscriptions — VMs, storage, databases, networks — each with its own misconfigurations. This module reads Microsoft Defender for Cloud to assess that estate: Azure natively, and AWS and GCP through Defender's environment connectors.
What the report covers
Per-subscription secure scores; unhealthy resource findings classified High / Medium / Low severity, each with Microsoft's remediation guidance; and coverage analysis — if your AWS or GCP accounts aren't connected to Defender for Cloud yet, that's finding #1, and we can set the connectors up as part of the engagement. Everything merges with your Microsoft 365 assessment into one consolidated report: workspace posture and infrastructure posture, side by side, in one executive summary.
How access works
You assign the built-in Azure role Security Reader to the Zybim assessment app on the subscriptions you want assessed — a two-minute step with a copy-paste command, documented in our setup guide. Read-only, removable in one click from the same screen.
How to start
Two ways in. Alongside the free Microsoft 365 assessment: after your review call, follow the setup guide and we merge cloud posture into one consolidated report. Or cloud-first, no M365 required: start directly on our cloud assessment page — useful if your estate lives mainly in Azure, AWS or GCP.
Know where you stand first. Run the free two-minute Microsoft 365 security assessment — read-only, revocable anytime.
Run the free assessment