DeviceTvmSecureConfigurationAssessment

DeviceTvmSecureConfigurationAssessment Schema #

Table description #

TableSection TableType TableSectionName Description
Tvm Regular Threat & Vulnerability Management assessment events, indicating the status of various security configurations on devices

Table retention #

HotDays ColdDays TotalInteractiveDays
30 0 30

Schema #

Name Description Type
ConfigurationCategory Category or grouping to which the configuration belongs String
ConfigurationId Unique identifier for a specific configuration String
ConfigurationImpact Rated impact of the configuration to the overall configuration score (1-10) Double
ConfigurationSubcategory Subcategory or subgrouping to which the configuration belongs. In many cases, this describes specific capabilities or features. String
Context Configuration context data of the machine Object
DeviceId Unique identifier for the device in Microsoft Defender for Endpoint String
DeviceName Fully qualified domain name (FQDN) of the device String
IsApplicable Indicates whether the configuration or policy is applicable Boolean
IsCompliant Indicates whether the configuration or policy is properly configured Boolean
IsExpectedUserImpact Indicates whether there will be user impact if the configuration will be applied Boolean
OSPlatform Platform of the operating system running on the device. This indicates specific operating systems, including variations within the same family, such as Windows 10 and Windows 7 String
Timestamp Date and time when the record was generated DateTime

Schema changes #

Date Action
2026-02-27 Column TenantId removed
2026-02-27 Column Type removed
2026-02-27 Column SourceSystem removed
2026-02-27 Column MachineGroup removed
2026-02-27 Column TimeGenerated removed
2024-10-18 Table added to tracking