Skip to main content

2019 | Buch

Pro Azure Governance and Security

A Comprehensive Guide to Azure Policy, Blueprints, Security Center, and Sentinel

verfasst von: Peter De Tender, David Rendon, Samuel Erskine

Verlag: Apress

insite
SUCHEN

Über dieses Buch

Any IT professional can tell you that managing security is a top priority and even more so when working in the cloud. Access to accurate and timely security information is critical, but governance and control must first be enabled. This guide shows you how to take advantage of Azure's vast and powerful built-in security tools and capabilities for your application workloads.

Pro Azure Governance and Security offers a comprehensive look at the governance features available with Microsoft Azure and demonstrates how to integrate them with your hybrid and Azure environments, drawing on the author's experiences from years in the field. Learn about the array of controls implemented within Microsoft Azure from two valuable perspectives: the customer and Microsoft operations.

Beginning with the top-level subscription hierarchy, learn about the most important built-in Azure security services and features, as well as how to use Azure Policies and Blueprints as a means for security and governance. A series of hands-on exercises teaches you the concepts of Azure Governance: how to enable and deploy Azure Security Center, integrate RBAC (role-based access control), and set up Azure Operations and Monitoring. Get introduced to the new Azure Sentinel solution that offers SIEM as a service for security incident management and proactive hunting.

What You'll Learn

Understand different architectural designs for implementing Azure Security

Operate and monitor an Azure environmentDeploy Azure Governance, Policies, and BlueprintsDiscover key Azure features that enhance securityImplement and confidently access Azure Security CenterGet to know Azure Sentinel

Who This Book Is For

Technical engineers, consultants, solution and cloud architects, IT managers, and SecOps teams who need to understand how to integrate governance, security, and compliance in hybrid and Azure environments. A basic understanding of Azure or other public cloud platforms is beneficial, but not required.

Inhaltsverzeichnis

Frontmatter
Chapter 1. Introduction to Governance in the Cloud
Abstract
The cloud, in the context of technology, has many definitions and types—ranging from its simplest form of using shared resources, to a fully automated environment with extreme standardization. What does this really mean in practice, and how is it relevant to your organization?
Peter De Tender, David Rendon, Samuel Erskine
Chapter 2. Azure Scaffold for Enterprise Subscriptions
Abstract
When analyzing a migration strategy to the cloud, a fundamental component of correctly managing the applications and infrastructure running on Azure is the correct administration of our subscriptions and the team members that administer them.
Peter De Tender, David Rendon, Samuel Erskine
Chapter 3. Azure Naming Conventions and Standards
Abstract
Identifying, organizing, and tracking resources is key in any environment. This is an age-old requirement that continues to be a challenge for technology management teams of all sizes. Naming conventions require a well-thought-out plan before using in all environments. There are a number of reasons that drive this approach; examples include but are not limited to the following.
Peter De Tender, David Rendon, Samuel Erskine
Chapter 4. Azure Policy Implementation and Management
Abstract
In Chapter 1, we touched briefly on Azure Policy and the role that it plays in Azure Governance. The following is a recap of the introduction to Azure Policy.
Peter De Tender, David Rendon, Samuel Erskine
Chapter 5. Azure Security Center
Abstract
Azure Security Center is Microsoft’s centralized dashboard solution for all things security, whether in Azure or in a hybrid topology.
Peter De Tender, David Rendon, Samuel Erskine
Chapter 6. Optimizing IT Operations Using Azure Monitor and Log Analytics
Abstract
Microsoft Azure provides a large number of hybrid cloud services that allow us to extend our infrastructure and applications in new ways to improve not only their performance but also provide us with a platform that offers one of the most important capabilities for IT administrators: capacity of monitoring and diagnostics to proactively manage our applications.
Peter De Tender, David Rendon, Samuel Erskine
Chapter 7. Introduction to Azure Governance at Scale for the Enterprise
Abstract
One of the core attributes of the cloud is the ability to operate at scale with speed and agility. Enabling and managing governance in Microsoft Azure for enterprise environments of all sizes also has scale and agility options. We have discussed and provided examples of using policies and initiatives to implement and maintain an organization’s governance objective in Azure. In this chapter, we introduce scale options for governance management using automation and Azure blueprints.
Peter De Tender, David Rendon, Samuel Erskine
Chapter 8. Azure Sentinel (Preview)
Abstract
Honestly, it took us some time to decide if we would include a preview service and dedicate a full chapter to it in this book. But with what we have seen and experienced so far, what Azure Sentinel does (and promises to do once GA), we could not do else but talk about it. After all, this book has a clear focus on Azure security and governance—where Sentinel definitely has a place!
Peter De Tender, David Rendon, Samuel Erskine
Backmatter
Metadaten
Titel
Pro Azure Governance and Security
verfasst von
Peter De Tender
David Rendon
Samuel Erskine
Copyright-Jahr
2019
Verlag
Apress
Electronic ISBN
978-1-4842-4910-9
Print ISBN
978-1-4842-4909-3
DOI
https://doi.org/10.1007/978-1-4842-4910-9