Book Image

Microsoft Defender for Cloud Cookbook

By : Sasha Kranjac
Book Image

Microsoft Defender for Cloud Cookbook

By: Sasha Kranjac

Overview of this book

Microsoft Defender for Cloud is a multi-cloud and hybrid cloud security posture management solution that enables security administrators to build cyber defense for their Azure and non-Azure resources by providing both recommendations and security protection capabilities. This book will start with a foundational overview of Microsoft Defender for Cloud and its core capabilities. Then, the reader is taken on a journey from enabling the service, selecting the correct tier, and configuring the data collection, to working on remediation. Next, we will continue with hands-on guidance on how to implement several security features of Microsoft Defender for Cloud, finishing with monitoring and maintenance-related topics, gaining visibility in advanced threat protection in distributed infrastructure and preventing security failures through automation. By the end of this book, you will know how to get a view of your security posture and where to optimize security protection in your environment as well as the ins and outs of Microsoft Defender for Cloud.
Table of Contents (12 chapters)

Creating an Azure firewall

An Azure firewall is a managed Platform-as-a-Service (PaaS) solution that protects resources residing on Azure Virtual Network. The Microsoft Defender for Cloud Overview page supports and displays the status of Firewall Manager and its supported services, firewalls, and hubs. In this recipe, you will create an Azure Firewall Standard SKU.

Getting ready

In these examples, you can choose your own user-defined values instead of the examples provided.

To get ready for an Azure firewall deployment and to complete the preliminary steps, perform the following steps:

  1. Open a web browser and navigate to https://portal.azure.com.
  2. Open Virtual Networks and click + Create. The Create Virtual Network blade opens.
  3. In the Create Virtual Network blade, under the Basics tab, choose Azure Subscription, and, under Resource Group, click Create new, and then type Firewall for a resource group name.
  4. Under the Instance details group, in the Name field...