Skip to content
  • Blog
  • Events
  • Help
  • Careers
  • Contact
New Signature
  • About
      • Company

        Cognizant Microsoft Business Group is dedicated to changing the way businesses innovate, transform and run based on a unique cloud operating model. You will now be redirected to our new microsite to learn more.

        View Company

      • Awards

        As a company, we are regularly recognized within the IT industry as well as the communities we serve.

        View All Awards
      • News

        Read the most up-to-date corporate announcements, Microsoft technology updates, innovative business solutions and learn more about how the Cognizant Microsoft Business Group can take your business even farther.

        View News

      • Partners

        New Signature works with a number of outstanding technology companies to deliver the best experiences to our customers.

        View Partners
      • Leadership

        Cognizant Microsoft Business Group’s executive team is comprised of innovative leaders with proven experience and deep industry expertise. You will now be redirected to our new microsite to learn more.

        View Leadership

      • Industries

        Our solutions are tailored to empower organizations across a wide range
        of industries.

        View Industry Experience
    Close
  • Solutions
      • Intelligent Enterprise
        Solutions

        Going Digital
        Unleash cloud capability, deliver change and compete at speed with a Microsoft digital operating model, enabling you to work more efficiently as you transform your IT environment. Learn More

      • Featured Solution

        Secure Cloud
        In a world of constant threat, ensuring that your underlying cloud platform is protected is the first step on your organization’s journey towards a secure, compliant operating environment. Learn More
      • Intelligent Workplace
        Solutions

      • Secure Workplace

        Work Anywhere

        Endpoint Health

        Identity Health

        Teamwork Support



        VIEW WORKPLACE SOLUTIONS
      • Intelligent Cloud
        Solutions

      • App Factory

        Azure Accelerator

        Azure Launchpad

        Azure Launchpad for DevOps

        Application Health

        Platform Health

        VIEW ClOUD SOLUTIONS
    Close
  • Services
      • Begin your journey towards becoming a digital business with GO, our unique end-to-end framework based on the Microsoft Cloud Adoption Framework.

        GO DIGITAL OPERATING MODEL
      • Intelligent Enterprise

      • Consulting

        We go beyond just technology to help your organization understand how digital can help you uniquely differentiate and better serve your employees and customers.

        VIEW ENTERPRISE SERVICES
      • Intelligent Workplace

        • Identity

          Identity is your new first-line-of-defense. It’s vital to your users and clients that your identity platform is properly configured and secured.

          Endpoint

          Whether your devices are on-premises or remote, personal or business-owned, we can ensure they are properly managed and protected.

          Teamwork

          Today’s workforce is collaborating than ever before.  We can empower your current teams with tomorrow’s progressive technologies.

          VIEW WORKPLACE SERVICES
        • Intelligent Cloud

          • Platform

            The cloud is no longer some future-state. It’s the here and now. Adopting a cloud-first platform is one of the best ways to maintain a future-proofed competitive advantage.

            Applications

            We build cloud-native apps and modernize legacy systems with the power of Azure to give your organization a competitive edge.

            Data

            We can help your organization create secure, scalable data platforms to deliver simpler and more sophisticated insights to your business.

            VIEW CLOUD SERVICES
        Close
      • Client Stories
          • Case Studies

            Browse a comprehensive list of companies who have created successful partnerships and experienced transformative solutions with New Signature.

            View All Case Studies

          • Featured Case Study TalkTalk Modern Workplace

            New Signature worked with TalkTalk to define a new Modern Workplace solution based on Microsoft 365, which kept the user firmly at the center of the transformation.
            View Case Study

          • Testimonials

            We love transforming our customers businesses, take a look at what they have to say about New Signature.

            View Testimonials

          • Featured Testimonial Davis Construction

            With New Signature’s help, Davis was able to take a progressive step forward by migrating their private branch exchange (PBX) phone system to a Voice of Internet Protocol (VoIP) system.
            View Testimonial

        Close
      • Explore
          • Guides & Ebooks

            Dive deeper into education with your team by leveraging our expert-developed guides and eBooks.

            View All Guides & Ebooks

          • Infographics

            Rich with statistics and information, our infographics are great tools for quick but insightful learning.

            View All Infographics
          • Podcast: Office Explorers

            Join Kat and Rob monthly as they chat with New Signature experts and explore the world of O365.

            Listen to Podcasts

          • Videos

            Visit our videos stream to access recorded webinars, service information and to learn more about us.

            WATCH ALL VIDEOS
          • Flyers

            Searching for information about our services? Our flyers are a great takeaway for all those details.

            VIEW ALL FLYERS

          • Featured Stream

            Learn more about the tooling and expertise required to unlock productivity and mobilize your teams.

            MODERN WORKPLACE
        Close
        Close
      Blog

      The Five Disciplines of Cloud Governance – Security Baseline

      New Signature / Blog / The Five Disciplines of Cloud Governance – Security Baseline
      October 26, 2020October 25, 2020| New Signature

      In our recent webinar “Controlling Your Azure Environment: Governance for the Modern Enterprise” we touched on the five disciplines of cloud governance from Microsoft’s Cloud Adoption Framework. This blog post is the third in the “The Five Disciplines of Cloud Governance” five-part series expanding on those concepts. If you missed the first post in the series around Deployment Acceleration, check it out here.

      In this post we are going to dig a little deeper into the discipline of “Security Baseline” and will explore the Azure Security Center and how it can improve your organization’s security posture.

      In the Five Disciplines of Cloud Governance Microsoft explains that: “Security is a complex and personal topic, unique to each company. Once security requirements are established, cloud governance policies and enforcement applies those requirements across network, data and asset configurations.”

      Why is it important?

      In traditional on-premise security, the control plane was the perimeter, the firewall. The security focus was on limiting and restricting access to resources inside the firewall from the various outside threats of the internet. Services inside the firewall were safe and trusted. With the move to hosted cloud service such as Microsoft Azure, this is no longer appropriate. Individuals are using all types of devices at any location. A more complex strategy is required.

      Azure Security Center

      Azure Security Center is a powerful cloud tool that provides you with a centralized view of your Azure resources and their active security state.  It is a monitoring and remediation tool useful to prevent, detect and respond to threats to Azure resources.

      Azure Security Center uses security policies, security alerts and a secure score to define your organization’s security priorities, keep you informed of threats and how to prevent them and also helps organize what areas to focus immediate attention to.

      Security Policy

      A security policy is a definition of a set of controls. These controls are used to provide recommendations for Azure resources. Security policies can be applied to subscriptions or resource groups. Different security policies can be used for workloads that have different security requirements. For example, applications with regulatory requirements can use a different security policy than development environments.

      A security policy contains multiple prevention policies which when enabled provide recommendations for different Azure features. The available prevention policies are:

      • System updates – daily security and critical updates from Windows Update or Windows Server Update Services (WSUS)
      • OS vulnerabilities – daily OS configuration analysis
      • Endpoint protection – identifies systems without protection software
      • Disk encryption – identifies systems without at rest data protection
      • Network security groups – identifies NSGs with configured inbound and outbound traffic to public endpoints, assesses inbound security rules
      • Web application firewall – discover deployments for which a Next Generation firewall is recommended and allow you to provision a virtual appliance
      • Next Generation firewall – may recommend a next generation firewall from a Microsoft partner
      • Vulnerability assessment – identify VMs without vulnerability assessment software
      • SQL auditing & threat detection – identifies Azure SQL Databases to enable access auditing and advanced threat detection
      • SQL encryption – identify SQL databases to enable encryption at rest

      Security Alerts

      Azure Security Center collects and analyzes log data from Azure resources, the network and partner solutions. When a threat is detected, a security alert is generated. A few examples of the types of security alerts are;

      • Compromised VMs communicating with known malicious IP addresses
      • Advanced malware detected
      • Brute-force attacks against VMs

      Alerts contain information about what triggered the alert, the resources targets, and the source of the attack.

      Security Center also uses machine learning to combine individual alerts into incidents. Viewing incidents is available in the Standard tier and above. Incidents may contain additional information useful during the threat investigation.

      Alerts are generated according to the following categories;

      • Virtual machine behavior analysis
      • Network analysis
      • SQL database and SQL Data Warehouse analysis
      • Contextual Information

      Custom alert rules in Security Center can also be created. Queries can be used to match criteria from computer security events, computer security logs, or data ingested via API’s.

      Managing and Working with Alerts

      In the Azure portal, Security Center, Overview page you can view your alerts. The Detection area shows current alerts by severity and shows details below for each alert.

      By selecting a given alert you can view more details such as what triggered it and what remediation steps are available.

      By clicking on an individual resource, you can get additional information including recommended remediation steps.

      Secure Score

      Azure Security Center also provides an overall score based on the security recommendations and their severity and preferred practices. To view your secure score, from the Azure portal, select Security Center, Secure Score.

      The secure score is calculated based on the ratio of healthy resources to the total number of resources. If all resources are healthy for a recommendation, 50 points are added to the secure score.

      You can also view the top three recommendations on the Security Center dashboard.

      Additional Considerations

      In addition to Azure Security Policy, Security Alerts and Azure Secure Score, Azure allows flexibility in the securing of Virtual Machine and Web App service with configurable properties such as:

      • Identity and access management – simplified identity provider architecture using Azure Active Directory (AD), access based on role (RBAC), Multi-Factor Authentication integration, privileged account protection, cryptographic keys to secure access to storage accounts and other resources/services, Just-In-Time access, Privileged Identity Management, Conditional Access, and other features.
      • Endpoint access – in addition to Network Security Groups to protect public endpoints, Azure provides additional access restriction functionality in Azure App Service Access Restrictions and Azure Service Environment IP Access Rules.
      • Encryption requirements – Enforcing SSL Connections for MySQL, PostgreSQL, and App Services and requiring latest TLS encryption versions
      • Resource locks – Prevent changes to critical resources
      • Network Security – Native (integrated) basic DDoS Protection with available Standard tier protections that allow for rich telemetry via Azure Monitor for alerting and custom policies.
      • Reporting – Sign-in anomaly detection and Identity Secure Score
      • Other –increased Audit logs and log retention, phone/email notifications, etc.

      New Signature leverages industry best practices for securing IaaS and PaaS workloads hosted in Azure based on Microsoft Security Baselines, CIS Benchmarks, and real-world experience.

       Conclusion

      Security is an ever-evolving concern for every organization. As resources are moved into the cloud it’s important to use the right tools to assess and achieve security. Azure Security Center is an integrated tool for all your Azure resources. By specifying security policies, staff can monitor their cloud investment and receive alerts to threats. In addition, Azure Security Center alerts provide steps to help remediate these threats.

      Azure Security Center’s secure score helps visualize and quantify an organization’s security posture. It can help analyze and provide a roadmap through recommendations to prevent threats before they occur.

      About the Author
      Matt Alofs is the Director of Microsoft Business Group’s Centers of Excellence. His role aims to bring together the thought leaders and practice experts from across our organization and work with them to continually improve and enhance their practices, along with helping them to develop the best new services and solutions to help our clients overcome their challenges with progressive technologies.

       

       

      Categories
      Technical Reviews
      Contact New Signature

      Blog Posts

      • Agile Delivery for Large Scale Data Ingestion using Azure Data Explorer
      • Implementing Cloud Adoption Framework Across Vida Homeloan’s Organization
      • Cognizant Microsoft Business Group Achieves Microsoft Advanced Specialization for Windows Virtual Desktop
      • Cognizant’s Experience Lab for Continuous Testing with Azure

      Managed Services

      Lorem ipsum dolor sit amet, consectetur adipiscing elit. Praesent fermentum, enim ac dignissim aliquet

      VIEW ALL MANAGED SERVICES

      Professional Services

      Lorem ipsum dolor sit amet, consectetur adipiscing elit. Praesent fermentum, enim ac dignissim aliquet

      VIEW ALL PROFESSIONAL SERVICES

      New Signature

      About

      • Company
      • Awards
      • News
      • Leadership
      • Partners
      • Industries

      Solutions

      • Intelligent Enterprise Solutions
      • Intelligent Workplace Solutions
      • Intelligent Cloud Solutions

      Services

      • GO
      • Intelligent Enterprise
      • Intelligent Workplace
      • Intelligent Cloud

      Client Stories

      • Client Stories
      • Testimonials

      Explore

      • Guides & Ebooks
      • Podcasts
      • Flyers
      • Infographics
      • Videos
      Copyright © 2023 New Signature
      • Blog
      • Events
      • Careers
      • Help
      • Anti Slavery
      • Privacy Policy
      • Contact
      • About
        • Company
        • Awards
        • News
        • Leadership
        • Partners
        • Industries
      • Services
        • GO
        • Intelligent Enterprise
        • Intelligent Workplace
        • Intelligent Cloud
      • Client Stories
        • Case Studies
        • Testimonials
      • Technologies
      • Explore
        • Guides & Ebooks
        • Infographics
        • Podcast: Office Explorers
        • Videos
        • Flyers
      • Blog
      • Events
      • Careers
      • Contact
      • Search
      Cookie Settings
      New Signature uses "Required Cookies" to run our website, "Functional Cookies" used by third parties to personalise marketing, including social media features.

      Change your preferences by clicking the “Cookie Settings” link at the bottom of every page. Learn more about cookies in our Cookie Policy and our Privacy Policy. By clicking the “Accept Cookies” button below, you consent to our use of cookies.

      Please note that “Required Cookies” will be set regardless of your consent.
      Cookie SettingsAccept Cookies
      Privacy & Cookies Policy

      Privacy Overview

      This website uses cookies to improve your experience while you navigate through the website. Out of these cookies, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may have an effect on your browsing experience.
      Performance

      Performance Cookies provide Content Delivery Network assets that deliver faster site content delivery capabilities.

      Required

      These cookies are required mainly in order to deliver Multilanguage site capabilities.

      Functional

      Functional Cookies allow us to provided advanced media capabilities including videos, surveys and other multimedia capabilities.

      Disabling Functional cookies will block the playing of videos and other multimedia site components.

      Targeting

      Targeting Cookies are used to capture user information in order for New Signature to deliver better user experiences.

      Save & Accept