AzureTracks

Practical Azure and Microsoft 365 security walkthroughs

Defender for Cloud

  • Prioritize Real Risk with Defender for Cloud Attack Path Analysis

    Prioritize Real Risk with Defender for Cloud Attack Path Analysis

    Cloud security programs often drown in recommendations. The hard part is not finding misconfigurations; it is deciding which combinations of exposure, identity, vulnerability, and business impact create the most realistic attack path. This article shows how to use Defender for Cloud attack path analysis as a prioritization tool. We review detected paths, inspect the affected…

    Read article

  • Reduce Log Analytics Noise with Azure Monitor DCR Transformations

    Reduce Log Analytics Noise with Azure Monitor DCR Transformations

    Security logging is only useful when the right data lands in the right place at a cost the organization can sustain. Noisy logs can hide real signals, inflate ingestion, and make analysts distrust the workspace. In this walkthrough, we build a controlled Data Collection Rule transformation, test the KQL logic, validate the resulting records in…

    Read article

  • Build an Azure Network Security Perimeter Around PaaS Resources

    Build an Azure Network Security Perimeter Around PaaS Resources

    PaaS resources are easy to deploy and easy to expose. Firewalls, private endpoints, and resource-level network rules help, but teams still need a consistent way to define which public inbound and outbound paths are acceptable for supported PaaS services. This walkthrough builds a small Azure Network Security Perimeter pilot, associates supported PaaS resources, defines access…

    Read article

  • Enable API Security Posture Management with Defender CSPM

    Enable API Security Posture Management with Defender CSPM

    Many organizations know what APIs they intentionally publish through API Management, but they do not always know which APIs appear through function endpoints, Logic Apps, or cloud-native integration paths. API posture management helps close that inventory gap. In this walkthrough, we enable and use Defender CSPM API security posture signals to discover APIs across supported…

    Read article

  • Protect Azure API Management APIs with Microsoft Defender for APIs

    Protect Azure API Management APIs with Microsoft Defender for APIs

    APIs often expose business logic directly to users, partners, mobile apps, and automation. When an API lacks authentication, exposes sensitive data, or carries unused legacy routes, the risk is not just infrastructure exposure; it is application behavior exposed through a managed gateway.

    Read article

  • Deploy Microsoft Defender for Storage with Malware Scanning and Sensitive Data Threat Detection

    Deploy Microsoft Defender for Storage with Malware Scanning and Sensitive Data Threat Detection

    Azure Storage often becomes the handoff point for partners, applications, automation jobs, exports, and user-generated files. That makes it a high-value security boundary: a malicious upload, exposed blob container, or unusual access pattern can turn a simple storage account into an incident source.

    Read article