Defender for Cloud
-

Build an Azure Network Security Perimeter Around PaaS Resources
PaaS resources are easy to deploy and easy to expose. Firewalls, private endpoints, and resource-level network rules help, but teams still need a consistent way to define which public inbound and outbound paths are acceptable for supported PaaS services. This walkthrough builds a small Azure Network Security Perimeter pilot, associates supported PaaS resources, defines access…
-

Enable API Security Posture Management with Defender CSPM
Many organizations know what APIs they intentionally publish through API Management, but they do not always know which APIs appear through function endpoints, Logic Apps, or cloud-native integration paths. API posture management helps close that inventory gap. In this walkthrough, we enable and use Defender CSPM API security posture signals to discover APIs across supported…
-

Protect Azure API Management APIs with Microsoft Defender for APIs
APIs often expose business logic directly to users, partners, mobile apps, and automation. When an API lacks authentication, exposes sensitive data, or carries unused legacy routes, the risk is not just infrastructure exposure; it is application behavior exposed through a managed gateway.
-

Deploy Microsoft Defender for Storage with Malware Scanning and Sensitive Data Threat Detection
Azure Storage often becomes the handoff point for partners, applications, automation jobs, exports, and user-generated files. That makes it a high-value security boundary: a malicious upload, exposed blob container, or unusual access pattern can turn a simple storage account into an incident source.