Security, Pricing, Compliance and Trust Flashcards

1
Q

Azure firewall

A

firewall that protects azure VPN resources.

  • built in high availability
  • unrestricted cloud scalability

Inbound protection for non HTTPS protocols e.g. remote desktops and file transfer (FTP)

Outbound protection, network level protection for all ports and protocols.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Network Security Group (NSG)

A

List of allowed and denied communication to and from network interfaces. Fully customisable and give the ability to lock down network communication to and from virtual machines.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Authentication

A

Who are you?

process of establishing identity of a person or service looking to access a resource.
It establishes if the person is who they say they are

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Azure DDoS protection

A

protects azure applications by scrubbing/monitoring traffic at the azure network edge before it can impact the service’s availability.
Notifications of attacks through azure monitor metrics

protects against DoS attacks (aim to make services unavailable for users)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Authorisation

A

What are you allowed to do?

what level of access an authenticated person is allowed

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Azure active directory

A

cloud based identity service, can sync with existing AD. Includes:

  • authentication
  • single sign on
  • application management
  • access controls
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Azure MFA

A

additional security for identities by requiring 2 or more elements for authentication:

  • something you know (password)
  • something you possess (mobile phone)
  • biometric (fingerprint, face scan)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Azure security centre

A

monitoring service that provides threat protection across all services - azure and on prem

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Usage scenarios for azure security center

A
  • incident response (detect, assess, diagnose)

- implement recommendations

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Key Vault

A

Centralised cloud service for storing application secrets and keys

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Azure Information Protection

A

cloud-based solution that helps organisations classify and protect documents and emails by applying labels.

analyse data flows, detect risky behaviour, track access, prevent data leakage

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Azure advanced threat protection ATP

A

cloud-based security that identifies, detects and helps you investigate threats, compromised identities and malicious insider actions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Azure policies

A

service to create, assign and manage policies. Policies apply rules that resources need to follow.
Gives visibility into compliance

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Initiatives

A

Initiatives work alongside policies in Azure policy.

A set or group of policy definitions to help track compliance state

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Role-based access controls

A

fine grained access management for azure resources

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Resource locks

A

setting that can be applied to any resource to block modification or deletion

17
Q

Azure monitor

A

Maximises availability and performance of applications by providing monitoring using telemetry from cloud and on premise environments

18
Q

Azure service health

A

Notifies about issues with azure services, help you understand impact and keep you updated.
Also provides personalised guidance and support when issues with azure services affect you.

19
Q

General Data Protection Regulation (GDPR)

A

European privacy law

Regulation on organisations, governments on the way they can collect and analyse data tied to EU residents

20
Q

National institute of standards and technology (NIST) cybersecurity framework (CSF)

A

voluntary framework that consists of standards, guidelines and best practise to managing cybersecurity related risks.

Microsoft cloud services have gone through FedRAMP (federal risk and authorisation management program) and also through assessments performed by HITRUST (health information trust alliance).

21
Q

Microsoft privacy statement

A

explains what personal data microsoft processes and for what purposes

22
Q

Trust center

A

Website containing details on how microsoft implements and supports security, privacy, compliance and transparency

23
Q

Service Trust Portal

A

hosts the compliance manager service and is microsoft’s public site for publishing compliance related information including audit reports, compliance guides

24
Q

Compliance manager

A

Workflow-based risk assessment dashboard within the trust portal. Allows you to track, assign and verify compliance activities related to microsoft cloud services

25
Q

Azure Government Services

A

cloud environment designed to meet compliance and security requirements for US government. Physically separated instance of Azure

26
Q

Azure blueprints

A

enable you to create a repeatable set of resources in Azure that adhere to an organisation’s standards and requirements