Designing the implementation of Azure Policy
In the previous section, we discussed how to use Microsoft Defender for Cloud to determine the levels of compliance within the infrastructure. Addressing the recommendations takes you on a path to passing a regulatory audit. The ability to assess, monitor, and manage compliance to these standards and other standards within Azure is done through the use of Azure Policy. Figure 5.9 shows the workflow of a policy within Azure:
Figure 5.9 – Azure Policy workflow
Azure Policy is used to create definitions of governance parameters that meet a company’s standards. These policies are then continuously evaluated for compliance and any changes within the environment. Azure Policy definitions are not only used for regulatory compliance to standards; they can also be used to create cost and size parameters on resources, and to ensure that logging and monitoring tools are included upon deployment.
These...