Cloud Security Defense In-Depth Azure Approach

What is Defense in-depth?

  • Physical Security ( within your data-center )
  • Policies and Access / Identity and Access Management
  • Perimeter
  • Networking
  • Virtual Machines/Compute
  • Applications
  • Data

Microsoft Azure Security Center

Physical Security

Policies and Access

Perimeter Security

Network Protection

Compute Protection

  • Apply a Just-In-Time network access control
  • Enable NSG
  • Apply Disk encryption
  • Apply System updates
  • Restrict access through internet facing endpoint

Application Protection

  1. SSL/TLS, HTTPS
  2. Single Sign On
  3. Application integrity ( adhering to the policies like following NIST guidelines )
  4. Vulnerability Scans

Data Protection

Structured Data Protection

  • Enable Auditing & Threat detection on SQL databases
  • Enable Transparent Data encryption

Non Structured Data Protection

Summary

--

--

I am a Senior Software Architect, mentor & successful PluralSight Author, professionally I am an expert at Angular, Express, Node.JS, Object Oriented Design but with a particular focus on Service Oriented Architecture, DDD, MEAN stack and Asp.Net.

Get the Medium app

A button that says 'Download on the App Store', and if clicked it will lead you to the iOS App store
A button that says 'Get it on, Google Play', and if clicked it will lead you to the Google Play store
Rupesh Kumar Tiwari

Pluralsight Author, Developer and Trainer. I help students and professionals to become Full Stack Software Developer in less than a Year.