Beyond the score: what else ID Posture covers.
Every account gets the core scan across all 4 pillars. These capabilities and Azure resource-configuration categories go further, some included by default, some available for your tenant on request, always at no extra tier or self-serve upgrade.
Some of these are on by default. Others are available on request for your tenant.
Drift Detection
See exactly what changed since your last scan: who gained Owner on which subscription, or which app picked up a new permission, with an optional email alert.
Accepted Risks
Formally accept a known risk, object-by-object or finding-wide, with a full audit trail of who accepted it, when, and why. Accepted findings stop counting against your score.
Tenant Health
10 additional checks across Security Defaults, guest invite policy, risky app consent, and more. Informational, not part of your posture score.
Essential Eight & ISO 27001
Cross-reference findings against the ACSC Essential Eight and ISO/IEC 27001:2022 Annex A. Essential Eight mapping is included by default; ISO 27001 mapping is available on request.
PDF Reports
Generate a posture report on demand, ready to share with leadership, a customer, or a cyber insurer.
Available on request, alongside your identity scan.
SQL Security
Whether Azure SQL servers enforce Entra ID authentication, plus TLS version, Defender for SQL, and transparent data encryption on databases.
Cosmos DB Security
Whether Cosmos DB accounts enforce Entra ID authentication instead of local keys.
Redis Security
Whether classic Azure Cache for Redis and Azure Managed Redis enforce Entra ID authentication instead of local keys.
Networking
Subnet NSG coverage, unrestricted inbound rules, DDoS protection, and public IP exposure across your virtual networks.
Key Vault
Soft-delete, purge protection, permission model, and public network access on every Key Vault.
Storage Security
Shared key auth, public blob access, secure transfer, TLS version, and network exposure on every storage account.
AKS Security
Entra ID integration, Azure RBAC, local account exposure, API server access, and network policy on your Kubernetes clusters.
VM Security
Entra ID sign-in, local password authentication, Trusted Launch, encryption at host, and public IP exposure on your virtual machines.
Peer Benchmarking
See how your posture score compares against a real ID Posture customer assessment, not a self-reported industry survey. Included by default for every tenant.
Ask about enabling Drift Detection, Accepted Risks, Tenant Health, ISO 27001 mapping, or any Azure resource-configuration category for your account.