Protect network resources

Important

Attention: All Microsoft Defender for Cloud features will be officially retired in Azure in China region on August 18, 2026 per the announcement posted by 21Vianet.

Microsoft Defender for Cloud continuously analyzes the security state of your Azure resources for network security best practices. When Defender for Cloud identifies potential security vulnerabilities, it creates recommendations that guide you through the process of configuring the needed controls to harden and protect your resources.

Review Defender for Cloud networking recommendations.

This article addresses recommendations that apply to your Azure resources from a network security perspective. Networking recommendations center around next generation firewalls, Network Security Groups, JIT VM access, overly permissive inbound traffic rules, and more. For a list of networking recommendations and remediation actions, see Managing security recommendations in Microsoft Defender for Cloud.

The Networking features of Defender for Cloud include:

  • Networking security recommendations

View your networking resources and their recommendations

From the asset inventory page, use the resource type filter to select the networking resources that you want to investigate:

Asset inventory network resource types.

Next steps

To learn more about recommendations that apply to other Azure resource types, see the following: