7

Governance & Compliance

Policy enforcement, audit trails and risk management

Compliance Score

96%

3% vs last month

Active Policies

6

2% new this month

Audit Events (7d)

6

5% vs last week

Open Risks

3

1% vs last week

Compliance Frameworks

Azure Policy79%
142 ControlsPassed: 112Failed: 30
CIS Azure v2.085%
100 ControlsPassed: 85Failed: 15
ISO 27001:202292%
114 ControlsPassed: 105Failed: 9
NIST CSF 2.073%
108 ControlsPassed: 79Failed: 29

Policy Management

Policy NameScopeEffectCompliance
Require HTTPS on App ServicesSubscriptionDeny98%
Audit SQL Server TDERG-CockpitAudit100%
Allowed locations: East US 2SubscriptionDeny96%
Require tag: EnvironmentSubscriptionAppend84%
Audit VMs without managed disksRG-CockpitAudit100%
Disable public network access on SQLRG-CockpitDeny100%

Risk Register

Unpatched critical CVEs on API VMsOpen
SecurityL: HighI: HighSecOps
No MFA on break-glass accountsMitigated
IdentityL: MediumI: HighIAM Team
SQL backups not geo-redundantOpen
ResilienceL: LowI: HighDBA
Expired TLS certificate on legacy APIAccepted
SecurityL: MediumI: MediumDevOps
Insufficient logging retention (30d)Open
ComplianceL: LowI: MediumOps

Audit Log

TimestampUserActionResourceResult
2026-06-14 22:01john.doe@contoso.comDeletevm-api-prod-01failure
2026-06-14 21:47admin@contoso.comPolicyAssignRG-Cockpitsuccess
2026-06-14 20:33jane.smith@contoso.comRoleAssignsql-cockpit-devsuccess
2026-06-14 18:55deploy-spDeployapp-cockpit-web-devsuccess
2026-06-14 17:22john.doe@contoso.comConfigChangekv-cockpit-devwarning
2026-06-14 16:10admin@contoso.comCreatestorage-ingestion-devsuccess