azure-external-attack-surface-management

Fetch Azure EASM documentation for configuration, limits, and integrations.

686|107|Updated Jan 27, 2026
One-click install
npx skills add https://github.com/MicrosoftDocs/Agent-Skills --skill azure-external-attack-surface-management
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: azure-external-attack-surface-management
Source: https://github.com/MicrosoftDocs/Agent-Skills/tree/main/skills/azure-external-attack-surface-management
Command: npx skills add https://github.com/MicrosoftDocs/Agent-Skills --skill azure-external-attack-surface-management

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes references (resource) components.

What problem does it solve?

This Skill provides comprehensive knowledge and guidance for managing and securing the external attack surface of Azure environments, addressing configuration, limits, and integration challenges.

Core Features & Use Cases

  • Resource Management: Understand and manage billable assets, apply filters for domains, hosts, IPs, and more.
  • Security Configuration: Configure policy engine automation rules and integrate with Log Analytics for data export.
  • Use Case: A security analyst needs to understand how Azure Defender External Attack Surface Management (EASM) billing works and how to filter their inventory to focus on specific IP address ranges.

Quick Start

Use the azure-external-attack-surface-management skill to find information on using IP address asset filters in Defender EASM.

Frequently Asked Questions about azure-external-attack-surface-management

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I filter Azure EASM inventory by specific IP address ranges?

To filter Azure External Attack Surface Management inventory by specific IP address ranges, you apply asset filters for domains, hosts, and IPs. This narrows your billable asset view to focus precisely on defined network boundaries.

How does billing work for billable assets in Defender External Attack Surface Management?

Defender External Attack Surface Management billing applies to discovered billable assets within your inventory. Understanding resource management limits and quotas helps optimize costs and control the scope of monitored domains, hosts, and IPs.

Can I configure policy engine automation rules in Azure EASM?

Yes, you can configure policy engine automation rules within Azure External Attack Surface Management. This security configuration allows you to automate responses and manage your external attack surface based on customized criteria.

Does Azure External Attack Surface Management integrate with Log Analytics?

Azure External Attack Surface Management integrates with Log Analytics to configure data export. This allows security analysts to forward discovered asset inventory and attack surface findings for centralized monitoring and analysis.

What are the limits and quotas for Azure EASM resources?

Azure External Attack Surface Management enforces specific limits and quotas on resource management and billable assets. Reviewing these configuration constraints helps optimize application performance and avoid hitting boundaries during asset discovery.