Azure User Group Nepal

File Integrity Monitoring (FIM) using Defender for Cloud to comply with PCI DSS requirement

In this post, I want to discuss how File Integrity Monitoring (FIM) can be implemented using Microsoft Defender for Cloud which is one of the requirements of PCI DSS.

Microsoft Defender AV exclusion list bypass can go undetected by Defender for Endpoint

Microsoft Defender Antivirus exclusion list can be bypassed if the user has the administrative right or the threat actor got administrative access to the device. Microsoft Defender exclusion list from scanning is unprotected and exposed to the end-user. There are two big risks: Risk1: Privileged users or bad actors can

Azure Governance - Detect when VM created/modified in your organization

Governance in Azure got ignored for small organizations or newly cloud-adopted organizations. We should not have to start big, we can start from small things that can be achieved easily. For example, you want to get notified if any resources like a virtual machine, storage account, network, etc. create or

Microsoft Defender Family - Name changed in Ignite 2021

Microsoft has changed the Defender family name in Ignite 2021. New Names Old Names

Integrate Azure Web App with NAT Gateway and vNET to get static outbound IP

Azure NAT Gateway, gives more control over the outbound traffic from the virtual network. It will allow you to have static outbound public IP for PaaS services. There could be many use cases of this service but here I am interested in controlling Azure Web App outbound traffic. The issue

Azure User Group Nepal © 2026