Chapter 8: Describing Basic Security Services and Management Capabilities in Azure
The previous chapter covered understanding about identity and access protection and governance in Azure AD with Conditional Access policies, Azure Identity Protection, entitlement management, and Privileged Identity Management. In this chapter, we will describe the various security services within Azure for network, compute, and data protection. This will include perimeter and application security services.
In this chapter, we're going to cover the following main topics:
- Describe network segmentation
- Describe Azure Network Security Groups
- Describe Azure DDoS protection
- Describe Azure Firewall and Web Application Firewall
- Describe secure remote management of virtual machines
- Describe Azure data encryption