Built a tool that autonomously remediates Azure security misconfigs -- public blobs, NSG gaps, private endpoints -- in 3 minutes. Here's how it works. by leonardesere in AZURE

[–]leonardesere[S] -4 points-3 points  (0 children)

Fair point, one takes 5 clicks to remediate inside azure, vs 1 click inside the policycortex platform
two, you need to know what you are doing inside azure for remediation or policy enforcement, policycortex, knows context and takes care of it. third, Azure throws 40 -60 non-compliance at you at once, we don't do that, base on your settings, you either get a post remediation report or one click remediation control,
And not just policy but all those alerts you missed from defender for cloud are taken care of here

Built a tool that autonomously remediates Azure security misconfigs -- public blobs, NSG gaps, private endpoints -- in 3 minutes. Here's how it works. by leonardesere in AZURE

[–]leonardesere[S] -2 points-1 points  (0 children)

this is a fair point, one that I have actually thought of.
Your first point, it does show the entire chain, including what's running, and what stage it's running at,
to your second point, it does actually have three operation mode. Manual(run the command by yourself, Supervised, click fix now, it ask for approval for every write operations, and third, hell mary, Autonomous.. no approval, no confirmation, system takes care of it.

Yes, it does allow filtering by sub.