Hello @Bimala Shrestha
Thanks for using Q&A forum.
Built-in initiatives that are monitored by Defender for CloudAzure Policy built-in policy definitions related to Microsoft Defender for Cloud. The following groupings of policy definitions are available:
- The initiatives group lists the Azure Policy initiative definitions in the "Defender for Cloud" category.
- The default initiative group lists all the Azure Policy definitions that are part of Defender for Cloud's default initiative, Microsoft cloud security benchmark. This Microsoft-authored, widely respected benchmark builds on controls from the Center for Internet Security (CIS) and the National Institute of Standards and Technology (NIST) with a focus on cloud-centric security.
- The category group lists all the Azure Policy definitions in the "Defender for Cloud" category.
Security standards in Defender for Cloud:
- Modify the built-in MCSB for the subscription: When you enable Defender for Cloud, the MCSB is automatically assigned to all Defender for Cloud registered subscriptions. Learn more about managing the MCSB standard.
- Add regulatory compliance standards: If you have one or more paid plans enabled, you can assign built-in compliance standards against which to assess your Azure, AWS, and GCP resources. Learn more about assigning regulatory standards.
- Add custom standards: If you have at least one paid Defender plan enabled, you can define new custom standards and custom recommendations in the Defender for Cloud portal. You can then add recommendations to those standards.
If the Answer is helpful, please click Accept Answer
and Up-Vote, so that it can help others in the community looking for help on similar topics.