Thanks for your question. I would first recommend Azure Update Manager. This allows you to oversee update compliance for all your machines, whether they are in Azure, on-premises, or in other cloud environments.
For installation or configuration of your VMs you can utilize Azure Policy's machine configuration feature. Azure Machine Configuration allows you to audit and configure operating system settings as code for machines running in Azure and hybrid environments. It can be applied directly to individual machines or orchestrated at scale using Azure Policy.
Check these out and let me know if they are helpful. If you have other requirements let me know and I will be happy to address them or provide alternatives.
If you still have questions, please let us know in the "comments" and we would be happy to help you. Comment is the fastest way of notifying the experts.
If the answer has been helpful, we appreciate hearing from you and would love to help others who may have the same question. Accepting answers helps increase visibility of this question for other members of the Microsoft Q&A community.
Thank you for helping to improve Microsoft Q&A!