Azure Security Services and Technologies (2024)

  • Article

In our discussions with current and future Azure customers, we're often asked "do you have a list of all the security-related services and technologies that Azure has to offer?"

When you evaluate cloud service provider options, it's helpful to have this information. So we have provided this list to get you started.

Over time, this list will change and grow, just as Azure does. Make sure to check this page on a regular basis to stay up-to-date on our security-related services and technologies.

General Azure security

ServiceDescription
Microsoft Defender for CloudA cloud workload protection solution that provides security management and advanced threat protection across hybrid cloud workloads.
Microsoft SentinelA scalable, cloud-native solution that delivers intelligent security analytics and threat intelligence across the enterprise.
Azure Key VaultA secure secrets store for the passwords, connection strings, and other information you need to keep your apps working.
Azure Monitor logsA monitoring service that collects telemetry and other data, and provides a query language and analytics engine to deliver operational insights for your apps and resources. Can be used alone or with other services such as Defender for Cloud.
Azure Dev/Test LabsA service that helps developers and testers quickly create environments in Azure while minimizing waste and controlling cost.

Storage security

ServiceDescription
AzureStorageServiceEncryptionA security feature that automatically encrypts your data in Azure storage.
Azure StorSimple Virtual ArrayAn integrated storage solution that manages storage tasks between an on-premises virtual array running in a hypervisor and Microsoft Azure cloud storage.
Client-Side encryption for blobsA client-side encryption solution that supports encrypting data within client applications before uploading to Azure Storage, and decrypting data while downloading to the client.
Azure Storage shared access signaturesA shared access signature (SAS) provides delegated access to resources in your storage account.
Azure Storage Account KeysAn access control method for Azure storage that is used authorize requests to the storage account using either the account access keys or a Microsoft Entra account (default).
Azure File sharesA storage security technology that offers fully managed file shares in the cloud that are accessible via the industry standard Server Message Block (SMB) protocol, Network File System (NFS) protocol, and Azure Files REST AP.
Azure Storage AnalyticsA logging and metrics-generating technology for data in your storage account.

Database security

ServiceDescription
AzureSQLFirewallA network access control feature that protects against network-based attacks to database.
AzureSQLConnection EncryptionTo provide security, SQL Database controls access with firewall rules limiting connectivity by IP address, authentication mechanisms requiring users to prove their identity, and authorization mechanisms limiting users to specific actions and data.
Azure SQL Always EncryptedProtects sensitive data, such as credit card numbers or national/regional identification numbers (for example, U.S. social security numbers), stored in Azure SQL Database, Azure SQL Managed Instance, and SQL Server databases.
AzureSQLtransparent data encryptionA database security feature that helps protect Azure SQL Database, Azure SQL Managed Instance, and Azure Synapse Analytics against the threat of malicious offline activity by encrypting data at rest.
Azure SQL Database AuditingAn auditing feature for Azure SQL Database and Azure Synapse Analytics that tracks database events and writes them to an audit log in your Azure storage account, Log Analytics workspace, or Event Hubs.
Virtual network rulesA firewall security feature that controls whether the server for your databases and elastic pools in Azure SQL Database or for your dedicated SQL pool (formerly SQL DW) databases in Azure Synapse Analytics accepts communications that are sent from particular subnets in virtual networks.

Identity and access management

ServiceDescription
Azurerole-basedaccess controlAn access control feature designed to allow users to access only the resources they are required to access based on their roles within the organization.
Microsoft Entra IDA cloud-based identity and access management service that supports a multi-tenant, cloud-based directory and multiple identity management services within Azure.
Azure Active Directory B2CA customer identity access management (CIAM) solution that enables control over how customers sign-up, sign-in, and manage their profiles when using Azure-based applications.
Microsoft Entra Domain ServicesA cloud-based and managed version of Active Directory Domain Services that provides managed domain services such as domain join, group policy, lightweight directory access protocol (LDAP), and Kerberos/NTLM authentication.
Microsoft Entra multifactor authenticationA security provision that employs several different forms of authentication and verification before allowing access to secured information.

Backup and disaster recovery

ServiceDescription
AzureBackupAn Azure-based service used to back up and restore data in the Azure cloud.
AzureSiteRecoveryAn online service that replicates workloads running on physical and virtual machines (VMs) from a primary site to a secondary location to enable recovery of services after a failure.

Networking

ServiceDescription
NetworkSecurityGroupsA network-based access control feature to filter network traffic between Azure resources in an Azure virtual network.
Azure VPN GatewayA network device used as a VPN endpoint to allow cross-premises access to Azure Virtual Networks.
Azure Application GatewayAn advanced web traffic load balancer that enables you to manage traffic to your web applications.
Web application firewall (WAF)A feature that provides centralized protection of your web applications from common exploits and vulnerabilities
Azure Load BalancerA TCP/UDP application network load balancer.
Azure ExpressRouteA feature that lets you extend your on-premises networks into the Microsoft cloud over a private connection with the help of a connectivity provider.
Azure Traffic ManagerA DNS-based traffic load balancer.
Microsoft Entra application proxyAn authenticating front-end used to secure remote access to on-premises web applications.
Azure FirewallA cloud-native and intelligent network firewall security service that provides threat protection for your cloud workloads running in Azure.
Azure DDoS protectionCombined with application design best practices, provides defense against DDoS attacks.
Virtual Network service endpointsProvides secure and direct connectivity to Azure services over an optimized route over the Azure backbone network.
Azure Private LinkEnables you to access Azure PaaS Services (for example, Azure Storage and SQL Database) and Azure hosted customer-owned/partner services over a private endpoint in your virtual network.
Azure BastionA service you deploy that lets you connect to a virtual machine using your browser and the Azure portal, or via the native SSH or RDP client already installed on your local computer.
Azure Front DoorProvides web application protection capability to safeguard your web applications from network attacks and common web vulnerabilities exploits like SQL Injection or Cross Site Scripting (XSS).

Next steps

Learn more about Azure's end-to-end security and how Azure services can help you meet the security needs of your business and protect your users, devices, resources, data, and applications in the cloud.

Feedback

Was this page helpful?

Azure Security Services and Technologies (2024)
Top Articles
What is ESG? Environmental, social, and governance commitment explained
Nicaragua Country Quickfacts | Goway Travel
English Bulldog Puppies For Sale Under 1000 In Florida
Katie Pavlich Bikini Photos
Gamevault Agent
Pieology Nutrition Calculator Mobile
Hocus Pocus Showtimes Near Harkins Theatres Yuma Palms 14
Hendersonville (Tennessee) – Travel guide at Wikivoyage
Compare the Samsung Galaxy S24 - 256GB - Cobalt Violet vs Apple iPhone 16 Pro - 128GB - Desert Titanium | AT&T
Vardis Olive Garden (Georgioupolis, Kreta) ✈️ inkl. Flug buchen
Craigslist Dog Kennels For Sale
Things To Do In Atlanta Tomorrow Night
Non Sequitur
Crossword Nexus Solver
How To Cut Eelgrass Grounded
Pac Man Deviantart
Alexander Funeral Home Gallatin Obituaries
Energy Healing Conference Utah
Geometry Review Quiz 5 Answer Key
Hobby Stores Near Me Now
Icivics The Electoral Process Answer Key
Allybearloves
Bible Gateway passage: Revelation 3 - New Living Translation
Yisd Home Access Center
Pearson Correlation Coefficient
Home
Shadbase Get Out Of Jail
Gina Wilson Angle Addition Postulate
Celina Powell Lil Meech Video: A Controversial Encounter Shakes Social Media - Video Reddit Trend
Walmart Pharmacy Near Me Open
Marquette Gas Prices
A Christmas Horse - Alison Senxation
Ou Football Brainiacs
Access a Shared Resource | Computing for Arts + Sciences
Vera Bradley Factory Outlet Sunbury Products
Pixel Combat Unblocked
Movies - EPIC Theatres
Cvs Sport Physicals
Mercedes W204 Belt Diagram
Mia Malkova Bio, Net Worth, Age & More - Magzica
'Conan Exiles' 3.0 Guide: How To Unlock Spells And Sorcery
Teenbeautyfitness
Where Can I Cash A Huntington National Bank Check
Topos De Bolos Engraçados
Sand Castle Parents Guide
Gregory (Five Nights at Freddy's)
Grand Valley State University Library Hours
Hello – Cornerstone Chapel
Stoughton Commuter Rail Schedule
Nfsd Web Portal
Selly Medaline
Latest Posts
Article information

Author: Mrs. Angelic Larkin

Last Updated:

Views: 5630

Rating: 4.7 / 5 (47 voted)

Reviews: 86% of readers found this page helpful

Author information

Name: Mrs. Angelic Larkin

Birthday: 1992-06-28

Address: Apt. 413 8275 Mueller Overpass, South Magnolia, IA 99527-6023

Phone: +6824704719725

Job: District Real-Estate Facilitator

Hobby: Letterboxing, Vacation, Poi, Homebrewing, Mountain biking, Slacklining, Cabaret

Introduction: My name is Mrs. Angelic Larkin, I am a cute, charming, funny, determined, inexpensive, joyous, cheerful person who loves writing and wants to share my knowledge and understanding with you.