20210825 Azure Security, Compliance & Identity 공부 기록

Soojin Chung·2021년 8월 25일
1

Azure

목록 보기
1/1
post-thumbnail

🦾 Vocabulary 정리

litigation 소송
retention policy 보존 정책
retention 보유
standalone resource 독립 리소스
Atypical 전형적이지 않은
Anomalous 변칙의


🦾 용어 정리

  • BYOD: Bring-Your-Own-Device
  • MAM: Mobile Application Management
  • MDM: Mobile Device Management
  • Zero-Trust Methodology: Trust no one, verify everything.

🦾 Tips

📒 You can create groups and add assessments to each group if you need to create assessments according to local regulations for each of BUs.
📒 Ingested data from Azure Sentinel is stored in Azure Log Analytics Workspace.

📒 Defense in Depth: Layers of defensive mechanisms. If one layer fails, another layer immediately steps up to prevent an attack.

📒 CIA: common principles that help define a security posture. Confidentiality, Integrity, Availability.

📒 Risk Types
(1) User Risk: when a given identity is compromised.

  • Leaked Credentials, AAD threat intelligence

(2) Sign-in Risk: when a given authentication request isn't authorized by the identity owner.

  • Anonymous IP address, Token Issuer Anomaly, Malware linked IP, Atypical travel

🦾 Official Documents

  • Defense in Depth 설명 비디오

https://azure.microsoft.com/en-us/resources/videos/defense-in-depth-security-in-azure/

  • Microsoft의 Compliance Management에 관한 비디오

https://docs.microsoft.com/en-us/learn/modules/describe-compliance-management-capabilities-microsoft/


오늘 이것저것 공식 문서 뒤적이다가
문득 Microsoft의 MVP의 존재를 알게 되었고
나도 미래에 Microsoft MVP가 되고 싶어졌다.

그러기 위해
열심히 그리고 꾸준히 공부해야지!!!🤩

profile
Cloud Engineer in Tokyo, Japan

0개의 댓글