azure-external-attack-surface-management

Retrieve Azure EASM documentation on limits, configuration, and integrations.

1|Updated Oct 1, 2025
One-click install
npx skills add https://github.com/diberry/microsoft-mcp-doc-generation --skill azure-external-attack-surface-management-diberry
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: azure-external-attack-surface-management
Source: https://github.com/diberry/microsoft-mcp-doc-generation/tree/main/docs-generation/skills-source/azure-external-attack-surface-management
Command: npx skills add https://github.com/diberry/microsoft-mcp-doc-generation --skill azure-external-attack-surface-management-diberry

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes references (resource) components.

What problem does it solve?

This Skill provides expert knowledge for managing and securing your organization's external attack surface within Azure, addressing configuration, limits, and integration challenges.

Core Features & Use Cases

  • Configuration: Learn to filter and query your EASM inventory by various asset types and set up policy engine automation rules.
  • Limits & Quotas: Understand billing, billable assets, and how asset counts impact costs.
  • Integrations: Configure data export to Log Analytics and Azure Data Explorer for advanced analysis.
  • Use Case: An organization needs to understand its Azure EASM billing and configure specific asset filters to monitor only domain assets.

Quick Start

Use the azure-external-attack-surface-management skill to understand Defender EASM billing and billable asset counts.

Frequently Asked Questions about azure-external-attack-surface-management

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I filter Azure EASM inventory to monitor specific asset types?

You can filter your Azure External Attack Surface Management inventory by configuring asset filters to query and monitor specific asset types like domains. This allows you to narrow your attack surface monitoring scope.

What assets are considered billable in Azure Defender EASM?

Billable assets in Azure Defender EASM determine your billing costs based on the asset counts within your configured inventory. Understanding these counts helps you anticipate costs and manage your external attack surface budget.

How do I export Azure EASM data to Log Analytics and Azure Data Explorer?

You can configure data export from Azure External Attack Surface Management to Log Analytics and Azure Data Explorer. This integration enables advanced analysis of your discovered attack surface assets and security telemetry.

How do I set up policy engine automation rules in Azure EASM?

Azure EASM allows you to configure policy engine automation rules to manage your external attack surface. These rules help automate the classification and response processes for your discovered assets.

Does Azure External Attack Surface Management require network access to fetch documentation?

Yes, retrieving Azure EASM documentation requires network access via specific fetch tools like mcp_microsoftdocs:microsoft_docs_fetch or fetch_webpage. This connectivity is needed to synthesize configuration and integration guidance.

What are the limits and quotas for Azure EASM asset monitoring?

Azure EASM limits and quotas dictate how many assets you can monitor, directly impacting your billing and configuration strategy. Understanding these constraints ensures you stay within platform boundaries while securing your attack surface.