
Learn foundational Azure security concepts for beginners, including Azure resource locks, Azure network security groups, Azure Bastion, Azure Firewall, Azure Key Vault, VM disk encryption, and managed identities.
Use the Azure portal to apply locks at subscription, resource group, or resource level, protecting against accidental deletion or modification with read only and delete locks.
Learn how Azure network security groups filter traffic at the edge of virtual networks, using inbound and outbound rules, five-tuple evaluation, and priority to protect resources.
Learn to deploy Azure Bastion, a fully managed PaaS that grants TLS 443 access to all VMs from a web browser in the Azure portal, while masking public IP exposure.
Encrypt a virtual machine disk using Azure disk encryption with a key vault and RSA 2048. Verify the encryption status in the portal and Cloud Shell.
Deploy an Azure Firewall from the ground up, choosing standard or premium SKUs, and configure the Azure Firewall Manager, routing, and application and network rules to secure Azure workloads.
Enable Azure just-in-time access to reduce attack surface by opening port 3389 only when requested, governed by Defender for Cloud and network security group rules.
Explore Azure Key Vault, a cloud service for securely storing secrets, keys, and certificates. Compare standard and premium tiers with hardware security module protection and auditing features.
Reset an Azure AD user password and a virtual machine password via the Azure portal, ensuring the VM is running, then reset and connect to verify access.
Discover how Azure managed identities provide automatically managed identities for Azure resources, enabling authentication to services via the Azure Active Directory without credentials in your code.
Celebrate completing the Azure security basic course and build a solid foundation to begin your security career; continue learning in depth, and get up and running with security.
Learn the basics of Azure Security from Azure Locks, NSGs, Encryption and Firewall deployment and more...
Protect data, apps, and infrastructure quickly with built-in security services in Azure that include unparalleled security intelligence to help identify rapidly evolving threats early so you can respond quickly. Implement a layered, defense in-depth strategy across identity, data, hosts, and networks. Unify security management and enable advanced threat protection across hybrid cloud environments.
We know that security is job one in the cloud and how important it is that you find accurate and timely information about Azure security. One of the best reasons to use Azure for your applications and services is to take advantage of its wide array of security tools and capabilities. These tools and capabilities help make it possible to create secure solutions on the secure Azure platform. Microsoft Azure provides confidentiality, integrity, and availability of customer data, while also enabling transparent accountability.
Depending on the cloud service model, there is variable responsibility for who is responsible for managing the security of the application or service. There are capabilities available in the Azure Platform to assist you in meeting these responsibilities through built-in features, and through partner solutions that can be deployed into an Azure subscription.
The built-in capabilities are organized in six functional areas: Operations, Applications, Storage, Networking, Compute, and Identity. Additional detail on the features and capabilities available in the Azure Platform in these six areas are provided through summary information.