Cloud posture assessment — Azure, AWS & GCP

Paid module · read-only · consolidated with your workspace report

Your Microsoft 365 workspace is half the picture. The other half runs in cloud subscriptions — VMs, storage, databases, networks — each with its own misconfigurations. This module reads Microsoft Defender for Cloud to assess that estate: Azure natively, and AWS and GCP through Defender's environment connectors.

What the report covers

Per-subscription secure scores; unhealthy resource findings classified High / Medium / Low severity, each with Microsoft's remediation guidance; and coverage analysis — if your AWS or GCP accounts aren't connected to Defender for Cloud yet, that's finding #1, and we can set the connectors up as part of the engagement. Everything merges with your Microsoft 365 assessment into one consolidated report: workspace posture and infrastructure posture, side by side, in one executive summary.

How access works

You assign the built-in Azure role Security Reader to the Zybim assessment app on the subscriptions you want assessed — a two-minute step with a copy-paste command, documented in our setup guide. Read-only, removable in one click from the same screen.

How to start

This module runs as part of a paid engagement, typically after your free Microsoft 365 assessment review. If you've had your review call, follow the setup guide and tell your Zybim contact — we'll run it and bring the consolidated report to your session.

Know where you stand first. Run the free two-minute Microsoft 365 security assessment — read-only, revocable anytime.

Run the free assessment