defender-cloud-compliance-assessments
Lists compliance assessments collected from Microsoft Defender for Cloud with the number of resources that passed and failed.
defender-cloud-compliance-assessments [profile=VALUE] [subscription=VALUE] [standard=VALUE] [control=VALUE] [state=VALUE] [locale=VALUE]
- profile=VALUE
- Optional. e.g. mdc
- subscription=VALUE
- Optional. e.g. 00000000-0000-0000-0000-000000000000
- standard=VALUE
- Optional. e.g. Microsoft-cloud-security-benchmark
- control=VALUE
- Optional. e.g. DS.4
- state=VALUE
- Optional. Passed, Failed or Skipped. e.g. Failed
- locale=VALUE
- Optional. Language of the assessment title. Defaults to the console session's language; en returns Azure's original text. e.g. ko
Output fields
| Field | Type | Name | Description |
|---|---|---|---|
| profile | String | Profile | e.g. mdc |
| cloud_account | String | Subscription ID | e.g. 00000000-0000-0000-0000-000000000000 |
| standard_name | String | Standard | e.g. Microsoft-cloud-security-benchmark |
| control_id | String | Control ID | e.g. NS.1 |
| assessment_name | String | Assessment | e.g. Subnets should be associated with a network security group |
| state | String | State | e.g. Failed |
| failed_resource_count | Integer | Failed resources | e.g. 2 |
| passed_resource_count | Integer | Passed resources | e.g. 5 |
| skipped_resource_count | Integer | Skipped resources | All three zero means nothing here was evaluated, which is not compliance. e.g. 0 |
| assessment_id | String | Assessment ID | e.g. 11111111-1111-1111-1111-111111111111 - joins to defender-cloud-assessments |
| row_key | String | Row key | SHA-256 of the identity columns, stable across cycles. e.g. a1b2c3d4e5f6... |
| snapshot_id | String | Snapshot ID | The collection cycle that last wrote this row. e.g. 00000000-0000-0000-... |
| updated | Date | Collected at | e.g. 2026-10-05 00:34:15 |