PART 7: SECURITY SERVICES

7.1 Microsoft Defender for Cloud

Overview

Cloud security posture management + workload protection.

Key Features

Defender Plans

PlanProtects
ServersVMs, on-prem
SQLDatabase security
StorageBlob, Files
ContainersAKS, ACR

Key Feature

JIT VM Access: Opens RDP/SSH ports temporarily to reduce attack surface.

7.2 Microsoft Sentinel

Overview

Cloud-native SIEM + SOAR platform.

Components

Key Features

7.3 Azure Policy

Overview

Enforce compliance rules across resources.

Key Concepts

Effects

EffectDescription
DenyBlock non-compliant resources
AuditLog violations
DeployIfNotExistsAuto-deploy missing configs
ModifyUpdate resource properties

7.4 Azure Blueprints

Package of policies, RBAC, and templates for compliant deployments.

7.5 Azure WAF

Overview

Protect web apps from OWASP Top 10 attacks.

Modes

7.6 Azure Confidential Computing

Encrypt data in use using trusted execution environments.