An Azure cloud security case study
Company XYZ currently has a small number of applications in Azure, and they are planning a significant expansion of the Azure cloud to meet their business needs. To support the large-scale environment, they are building a flexible backbone network to support the connectivity between the Azure cloud and on-prem resources, with a robust security solution to partition internet-facing networks from an intranet environment. In this case study of Company XYZ’s cloud deployment project, we will focus on two aspects – cloud infrastructure security and network security.
Organizational infrastructure security
Based on the customer environment, we will architect an organization infrastructure hierarchy of Azure management groups and subscriptions.
Management groups
The Azure management group is at the top of the Azure resource management hierarchy. Permissions and policies applied at a management group will flow to all objects below...