Cloud security in Azure

Comprendere l'architettura e i servizi di Microsoft Azure

Florin Angelescu

Azure Architect

Cloud security

Cloud security

  • Protection of data, applications, and infrastructure
  • Involves practices like:
    • Data encryption
    • Identity management
    • Network security
    • Compliance adherence
    • Measures to detect and respond to security incidents
Comprendere l'architettura e i servizi di Microsoft Azure

Cloud security

Cloud security

  • Responsibility is shared between the cloud service provider and the users
  • Aims to ensure the confidentiality, integrity, and availability of information
Comprendere l'architettura e i servizi di Microsoft Azure

Zero trust model

Zero trust

  • Assumption of a potential breach
  • Safeguards resources accordingly
  • Verifies each request as if it originated from an unsecured network
Comprendere l'architettura e i servizi di Microsoft Azure

Zero trust - explicit verification

Multi-factor authentication

  • Always authenticate and authorize based on all available channels
Comprendere l'architettura e i servizi di Microsoft Azure

Zero trust - least privilege access

Least privilege access

  • Users should only be granted access to the resources and permissions essential for their specific job roles
Comprendere l'architettura e i servizi di Microsoft Azure

Zero trust - assume breach

Assume breach

  • Determined attackers may find a way in
  • Minimize the impact of a breach
Comprendere l'architettura e i servizi di Microsoft Azure

Defense-in-depth

Defense-in-depth

  • Safeguard resources and prevent unauthorized access and information theft
  • Employs multiple layers of mechanisms to block the progress of an attack
  • Central data is surrounded by protective layers to ensure its security
Comprendere l'architettura e i servizi di Microsoft Azure

Defense-in-depth layers

Defense-in-depth layers

Comprendere l'architettura e i servizi di Microsoft Azure

Microsoft Defender for Cloud

Microsoft Defender for Cloud

  • Monitoring tool for security posture management and threat protection
  • Provides guidance and notifications to enhance security
  • Integrates into Azure natively
Comprendere l'architettura e i servizi di Microsoft Azure

Assess, secure and defend

Assess, secure and defend

Comprendere l'architettura e i servizi di Microsoft Azure

Importance of cloud security

Cloud security

  • Foundation of trust in our digital landscape
  • Protects data, applications, and systems
  • Ensures confidentiality, integrity, and availability
Comprendere l'architettura e i servizi di Microsoft Azure

Let's practice!

Comprendere l'architettura e i servizi di Microsoft Azure

Preparing Video For Download...