Describe Security, Privacy, Compliance, and Trust Flashcards

1
Q

Describe network security group

A

Allows filtering of network traffic to and from azure resources.

Filter by
Source IP address
Destination up address
Port
Protocol
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Describe application security group

A

Configure network security as a extension of an application’s structure allowing you to group virtual machines and define security policies based on those groups

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Describe user defined rules

A

Check answer

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Describe azure firewall

A

Service that grants access based on originating up address.

Network protocol and port specific

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Describe azure did protection

A

Ddos.
Levels
Basic - automatically enabled. Always on traffic monitoring real time mitigation of common network level attacks

Standard - additional mitigation capabilities tuned to azure virtual network resources

Standard
Volumetric attacks
Protocol attacks
Resource layer Attacks

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is authorisation

A

Process of establishing what level of access an authenticated person or service has.
It specifies what data they’re allowed to access and what they can do with it.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is authentication?

A

Establishing the identity of a person or service looking to access a resource.
Challenging for legitimate credentials

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is azure active directory

A

Microsoft cloud based identity and access management service.

Helps
Employees sign in and access resources

Authentication
Single sign on
App Management 
B2b
B2c
Device management 

Intended for
It admins
App developers
Microsoft 365, office 365, azure or cram online

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What is mfa?

A

Multi factor authentication
Provides additional security by requiring two or
More elements for full authentication

Comes as part of
Ad premium license
Authentication subscription for office 365
Azure AD directory global adminstrators

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What is azure security centre

A

Monitoring service provides threat
Protection to on prem and azure resources

Security recommendations
Monitor
Assessments 
Machine learning
Analyse and identify inbound attacks 
Access control for ports

Versions
Free - azure resources only
Standard - full suite

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is azure security centre usage scenarios?

A

Integrate into workflows

1 use security centre for an incident response
Detect
Assess
Diagnose

2 enhance security
Security policy recommendations

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is azure key vault ?

A

Centralised cloud service for storing
Application secrets

Secrets management
Key management
Certificate management
Store secrets backed by HSMs

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What is azure information protection (AIP)

A

Helps organisations classify and protect documents and email by applying labels

Manually or automatically

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is azure advanced threat protection (ATP)

A

Identifies, detects and helps
You investigate advances threats

License

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Describe azure policy

A

Service to create assign and manage policies

Policies enforce different rules and effects on resources so they’d stay compliant with corporate standards and sla’s

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What is role

Based access control (RBAC)

A

Fine grained access management enabling you to grant users only the rights they need

17
Q

Define locks

A

Prevent accidental deletion or modification of resources

CanNotDelete
ReadInly

18
Q

What are azure blueprints

A

Define a repeatable set of resources that implement and adhere to standards, patterns and requirements

Allow rapidly build and deploy
New environments

Role assignments
Policy assignments
Azure resource manager templates
Resource groups

Armt deploy resources but have no active relationship. By contrast azure blueprints each deployment is tied to a azure blueprint package. Hence relationship is maintained. Improves auditing and tracking.

19
Q

What is azure monitor

A

It helps you understand how your resources are performing and proactively identifies issues affecting them and the resources they depend upon

20
Q

What is azure service health

A

Suite of experiences that provide personalised guidance and support when issues with azure services affect you.

Azure status
Service health
Resource health

21
Q

What is the Microsoft privacy statement

A

Explains what personnel data Microsoft processes, how it is processed and for what purpose

22
Q

Describe trust center

A

Website resource contains details about how Microsoft implements And supports security, privacy, and transparency I

23
Q

What is compliance manager

A

Workflow based risk assessment dashboard

Track, assign and verify your organisation regulatory compliance activities

24
Q

Describe service trust portal

A

Stop hosts compliance manager and is the Microsoft public site for publishing audit reports and other compliance related information

25
Q

Describe azure government services

A

Separate azure instance

Addresses security and compliance needs of us federal agencies, state and local governments and their solution providers.

Physical isolation from non-government deployments and
Provides screened us personnel.

26
Q

Describe azure China 21 Vianet

A

Operated by 21 Vianet physical separated instance of cloud service hosted in China.