AzureTracks

Practical Azure and Microsoft 365 security walkthroughs

Defender for Cloud

  • Build an Azure Network Security Perimeter Around PaaS Resources

    Build an Azure Network Security Perimeter Around PaaS Resources

    PaaS resources are easy to deploy and easy to expose. Firewalls, private endpoints, and resource-level network rules help, but teams still need a consistent way to define which public inbound and outbound paths are acceptable for supported PaaS services. This walkthrough builds a small Azure Network Security Perimeter pilot, associates supported PaaS resources, defines access…

    Read article

  • Enable API Security Posture Management with Defender CSPM

    Enable API Security Posture Management with Defender CSPM

    Many organizations know what APIs they intentionally publish through API Management, but they do not always know which APIs appear through function endpoints, Logic Apps, or cloud-native integration paths. API posture management helps close that inventory gap. In this walkthrough, we enable and use Defender CSPM API security posture signals to discover APIs across supported…

    Read article

  • Protect Azure API Management APIs with Microsoft Defender for APIs

    Protect Azure API Management APIs with Microsoft Defender for APIs

    APIs often expose business logic directly to users, partners, mobile apps, and automation. When an API lacks authentication, exposes sensitive data, or carries unused legacy routes, the risk is not just infrastructure exposure; it is application behavior exposed through a managed gateway.

    Read article

  • Deploy Microsoft Defender for Storage with Malware Scanning and Sensitive Data Threat Detection

    Deploy Microsoft Defender for Storage with Malware Scanning and Sensitive Data Threat Detection

    Azure Storage often becomes the handoff point for partners, applications, automation jobs, exports, and user-generated files. That makes it a high-value security boundary: a malicious upload, exposed blob container, or unusual access pattern can turn a simple storage account into an incident source.

    Read article