Impossible to enable Defender for Storage Malware scanning

PP 20 Reputation points
2023-05-16T15:33:43.44+00:00

I would like to enable Azure Defender Malware scanning on my (StorageV2) Storage Account.

I upgraded my subscription's MS Defender for Cloud plan.

However, any attempt on enabling Malware scanning or Sensitive data discovery fails.

  1. While enabling on the subscription level (Subscription -> MS Defender for Cloud -> Cloud Workload Protection (CWP) -> Storage) I receive an error
    sub level
  2. While enabling it on the Storage Account level I receive a different error
    User's image

Let me add, that I'm testing this functionality on Visual Studio Proffesional subscription.

Azure Storage Accounts
Azure Storage Accounts
Globally unique resources that provide access to data management services and serve as the parent namespace for the services.
3,394 questions
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,498 questions
0 comments No comments
{count} vote

6 answers

Sort by: Most helpful
  1. Bobby 0 Reputation points
    2025-02-26T14:10:02.32+00:00

    The suggested solution here requires Azure Entra P1 or similar to create custom roles. Further the build in roles for EventGrid Contributor (etc. ) that one could use to avoid custom roles were not available to me in the list of built in roles in Entra.

    My solution to this was to navigate to Event Grid and create a new system topic for the storage account at hand. After deployment, with no further actions in the new resource, i could go back and successfully activate Malware Scanning .

    https://portal.azure.com/#view/Microsoft_Azure_EventGrid/SystemTopicCreateBlade

    After this I had a new event subscription in my previously created Event Grid

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.