SV-272887r1156554_rule
V-272887
SRG-APP-000211
MSDE-00-000350
CAT II
10
Access the MDE portal as a user with at least an MDE Administrator or equivalent role:
1. In the navigation pane, select Settings >> Microsoft Defender XDR >> Permissions and Roles.
2. Select "+Add role".
3. Enter a Role Name, select "Permissions" as defined by the AO, and then click "Next".
4. Select the appropriate group as defined in MSDE-00-000300.
Access the MDE portal as a user with at least an MDE Administrator or equivalent role:
1. In the navigation pane, select Settings >> Microsoft Defender XDR >> Permissions and Roles.
2. For each defined role:
- Click the role to enter the edit role screen.
- Verify the Permissions are configured as defined by the authorizing official (AO).
- Verify the appropriate user groups are assigned as defined by the AO.
- Click "Cancel".
If Settings >> Microsoft Defender XDR >> Permissions and Roles does not display roles as defined by the AO, this is a finding.
When selecting each role individually, if the permissions and user groups are not as defined by the AO, this is a finding.
V-272887
False
MSDE-00-000350
Access the MDE portal as a user with at least an MDE Administrator or equivalent role:
1. In the navigation pane, select Settings >> Microsoft Defender XDR >> Permissions and Roles.
2. For each defined role:
- Click the role to enter the edit role screen.
- Verify the Permissions are configured as defined by the authorizing official (AO).
- Verify the appropriate user groups are assigned as defined by the AO.
- Click "Cancel".
If Settings >> Microsoft Defender XDR >> Permissions and Roles does not display roles as defined by the AO, this is a finding.
When selecting each role individually, if the permissions and user groups are not as defined by the AO, this is a finding.
M
5693