Systems need to be designed with security in mind,
What service allows you to recieve and processes millions of events each second via dynamic data pipelines and intergrate with other Azure Services
Azure Event Hubs
Whose responsibility is Security in the cloud
Cloud Security is a shared responsibility.
In cloud some security is baked into service whilst addressing others remains the customers responsibility
What are some of the challenges involved with security in On-Prem data centers
Many tools and experts required to keep pace with volume and complexity of threats
Moving from On prem to cloud shifts some of the security responsibility, Security of the operational environment is now shared by Customer and Cloud Service Provider. With a shift to the cloud what can organisations reduce there forcus on
Moving from On prem to cloud shifts some of the security responsibility
Which model (IaaS, PaaS, SaaS) makes it the customers responsibility to patch and secure OS + Software. As well as configuring the network to be secure.
When using PaaS what elements of Security are removed from the customer
With PaaS…Azure takes care of OS + Foundational Software, everything is updated/patched and can be intergrated with Azure AD
In terms of infrastructure, what benefits does PaaS bring?
With SaaS, everything is more or less outsourced, Software is run on internet infrastructure and code is controlled by Vendor.
What is an example of SaaS
Office 365 is an example
You outsource nearly everything, S/W runs on internet infra, code controlled by vendor and only configured by the customer
With all deployment types, what do you always own
With all deployment types you own data and identities
With all deployment types you are responsible for helping secure data and identities, what else is it
always your responsibility to secure?
Defense In Depth is known as a “****” approach
Layered Approach
As a Strategy what does defense in depth employ
What is the objective of Defense in depth
How can Defense in Depth be visualise, and how does it remove the reliance on a single layer of protection
In almost all cases what is it that an attacked wants to get
Who’s responsibility is it to ensure data is secured?
What often dictates controls with processs to ensure HA, Confidentialty and Intergrity
It is the Responsibility of those who store and control access to ensure it’s secured.
What points should be implemented within an Application, with regards to security
What points should be implemented within “Compute”, with regards to security
What points should be implemented within “Networking”, with regards to security
What points should be implemented within “Perimeter”, with regards to security
What points should be implemented within “Identity and Access”, with regards to security
What points should be implemented within “Physical Security”, with regards to security
Azure Helps _______ security concerns but still ______ responsibility and how much depends on which model is used within Azure
Defense in ____ is used as a _____ for considering what protections are ______ for our environments.
Azure Helps alleviate security concerns but still shared responsibility and how much depends on which model is used within Azure
Defense in depth is used as a guideline for considering what protections are adequate for our environments.
Azure Security Center is a good starting point for investigating security of Azure based solutions, it is a monitoring service providing threat protection across….?
Monitoring service providing threat protection across Azure Services + On prem