Protecting keys, data, servers and networks, and the controls that enforce it.
Sections from the books on security, free to read:
Why control-plane roles can't read secrets, and which Key Vault role or access policy each task needs. SC-500
Where each Azure SQL data protection feature works and who it protects data from. SC-500
How JIT locks management ports and opens them on request, with the plan and permissions it needs. SC-500
How security admin rules are evaluated before NSGs, and when to use Allow, Deny or Always allow. SC-500
The order Azure applies subnet and NIC network security groups for inbound and outbound traffic, how priority works, and a worked example. AZ-104
Where guardrails check an agent run, what Prompt Shields catch, and when to block or annotate. AI-103
Search the series glossary for Defender, or browse all 2,575 terms.
Know which control enforces it, and why.
Free with Kindle Unlimited
Know which role, setting or tool does the job, and why.
Free with Kindle Unlimited
Choose the right design, and explain why.
Free with Kindle Unlimited