MICROSOFT AZURE SECURITY, PRIVACY, COMPLIANCE AND TRUST Flashcards

1
Q
  • A layered approach to securing computer systems.
  • Provides multiple levels of protection
  • Attacks against one layer are isolated from subsequent layers
A

Defense in Depth

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What are the Defense in Depth?

A

Data
Application
Compute
Network
Perimeter
Identity & Access
Physical Security

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Security becomes a shared concern between cloud providers and customers

A

Shared security

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Stateful, managed, Firewall as a Service (FaaS) that grants / denies server access based on originating IP address, to protect network resources.

A

Azure Firewall

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What does DDoS Protection do?

A
  • Sanitizes unwanted network traffic, before it
    impacts service availability.
  • Basic service tier is automatically enabled in
    Azure.
    -Standard service tier adds mitigation capabilities,
    tuned to protect Azure Virtual Network resources.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Set inbound and outbound rules to filter by source and
destination IP address, port, and protocol.

A

Network Security Groups (NSGs)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What are the network security solutions ?

A

Perimeter layer
Networking layer

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

protects your networks boundaries with Azure DDoS Protection and Azure Firewall.

A

Perimeter layer

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

only permits traffic to pass between networked resources with Network Security Group (NSG) inbound
and outbound rules.

A

Networking layer

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What are the 2 concepts that are fundamental to understanding identify and access

A
  • Authentication
    -Authorization
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Provides additional security for your identities by requiring two or more elements for full authentication.

A

Azure Multi-Factor Authentication

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Stores application secrets in a centralized cloud
location, to securely control access permissions, and
access logging.

A

Azure Key Vault

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Classifies and protects documents, and emails, by
applying labels.

Automatically using rules and conditions
defined by administrators.

A

Azure Information Protection (AIP)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Cloud-based security solution for identifying, detecting, and investigating advanced threats, compromised identities, and malicious insider actions.

A

Azure Advanced Threat Protection

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

is a service to create, assign, and, manage policies.

A

Azure Policy

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What are the Policy Initiatives work with Azure Policies

A
  • Initiative definitions
  • Initiative assignments
17
Q

group multiple policy definitions into a single unit, to track compliance at a higher scope. For example, one initiative can monitor all your Azure Security Center recommendations.

A

Initiative definitions

18
Q

are assigned to a specific scope and reduce the need to make an initiative definition for each scope.

A

Initiative assignments

19
Q

Enables allowing or disallowing access to the Azure portal, and controlling access to resources.

A

Role-based access control (RBAC)

20
Q

Protect your Azure resources from accidental deletion or modification

A

Resource locks

21
Q

Create reusable environment definitions that can recreate your Azure resources, like VMs, and apply your policies instantly.

A

Azure Blueprints

22
Q

Provides metadata for your Azure resources.

A

Tags

23
Q

Evaluate the impact of Azure service issues with personalized guidance and support, notifications, and issue resolution updates.

A

Azure Service Health