Cloud security in Azure

Understanding Microsoft Azure Architecture and Services

Florin Angelescu

Azure Architect

Cloud security

Cloud security

  • Protection of data, applications, and infrastructure
  • Involves practices like:
    • Data encryption
    • Identity management
    • Network security
    • Compliance adherence
    • Measures to detect and respond to security incidents
Understanding Microsoft Azure Architecture and Services

Cloud security

Cloud security

  • Responsibility is shared between the cloud service provider and the users
  • Aims to ensure the confidentiality, integrity, and availability of information
Understanding Microsoft Azure Architecture and Services

Zero trust model

Zero trust

  • Assumption of a potential breach
  • Safeguards resources accordingly
  • Verifies each request as if it originated from an unsecured network
Understanding Microsoft Azure Architecture and Services

Zero trust - explicit verification

Multi-factor authentication

  • Always authenticate and authorize based on all available channels
Understanding Microsoft Azure Architecture and Services

Zero trust - least privilege access

Least privilege access

  • Users should only be granted access to the resources and permissions essential for their specific job roles
Understanding Microsoft Azure Architecture and Services

Zero trust - assume breach

Assume breach

  • Determined attackers may find a way in
  • Minimize the impact of a breach
Understanding Microsoft Azure Architecture and Services

Defense-in-depth

Defense-in-depth

  • Safeguard resources and prevent unauthorized access and information theft
  • Employs multiple layers of mechanisms to block the progress of an attack
  • Central data is surrounded by protective layers to ensure its security
Understanding Microsoft Azure Architecture and Services

Defense-in-depth layers

Defense-in-depth layers

Understanding Microsoft Azure Architecture and Services

Microsoft Defender for Cloud

Microsoft Defender for Cloud

  • Monitoring tool for security posture management and threat protection
  • Provides guidance and notifications to enhance security
  • Integrates into Azure natively
Understanding Microsoft Azure Architecture and Services

Assess, secure and defend

Assess, secure and defend

Understanding Microsoft Azure Architecture and Services

Importance of cloud security

Cloud security

  • Foundation of trust in our digital landscape
  • Protects data, applications, and systems
  • Ensures confidentiality, integrity, and availability
Understanding Microsoft Azure Architecture and Services

Let's practice!

Understanding Microsoft Azure Architecture and Services

Preparing Video For Download...