Understanding security and compliance
Security and compliance are important factors in all organizations. As we move our solutions to the cloud, we need to ensure that the resources we build do not expose data to the public network.
In addition, many organizations define governance policies that must be adhered to; sometimes these are aligned to regulatory compliance, and sometimes they match security policy.
We discussed compliance and governance in Chapter 5, Ensuring Platform Governance, and during that chapter, we explored how to create policies and initiatives that encode those needs.
Security Center is an optional addition to your toolset, and when enabled on a subscription, it creates an Azure Security benchmark initiative that gets automatically assigned. The initiative contains audit policies containing industry best practices for ensuring a secure platform.
Azure Security Center
Azure Security Center uses your own policies and the built-in policies to calculate a...