defender-cloud-compliance-controls
Lists the controls of a compliance standard collected from Microsoft Defender for Cloud with their state and assessment counts.
defender-cloud-compliance-controls [profile=VALUE] [subscription=VALUE] [standard=VALUE] [state=VALUE] [locale=VALUE]
- profile=VALUE
- Optional. e.g. mdc
- subscription=VALUE
- Optional. e.g. 00000000-0000-0000-0000-000000000000
- standard=VALUE
- Optional. e.g. Microsoft-cloud-security-benchmark
- state=VALUE
- Optional. Passed, Failed or Skipped. e.g. Failed
- locale=VALUE
- Optional. Language of the control title. Defaults to the console session's language; en returns the original English. e.g. ko
Output fields
| Field | Type | Name | Description |
|---|---|---|---|
| profile | String | Profile | e.g. mdc |
| cloud_account | String | Subscription ID | e.g. 00000000-0000-0000-0000-000000000000 |
| standard_name | String | Standard | e.g. Microsoft-cloud-security-benchmark |
| control_id | String | Control ID | e.g. DS.4 |
| control_name | String | Control | e.g. Integrate static application security testing into DevOps pipeline |
| state | String | State | e.g. Failed |
| failed_assessment_count | Integer | Failed assessments | e.g. 1 |
| passed_assessment_count | Integer | Passed assessments | e.g. 10 |
| skipped_assessment_count | Integer | Skipped assessments | Assessments the standard lists but this tenant has nothing to evaluate against. e.g. 0 |
| row_key | String | Row key | SHA-256 of the identity columns, stable across cycles. e.g. a1b2c3d4e5f6... |
| snapshot_id | String | Snapshot ID | The collection cycle that last wrote this row. e.g. 00000000-0000-0000-... |
| updated | Date | Collected at | e.g. 2026-10-05 00:34:15 |