Book Image

Cloud Scale Analytics with Azure Data Services

By : Patrik Borosch
Book Image

Cloud Scale Analytics with Azure Data Services

By: Patrik Borosch

Overview of this book

Azure Data Lake, the modern data warehouse architecture, and related data services on Azure enable organizations to build their own customized analytical platform to fit any analytical requirements in terms of volume, speed, and quality. This book is your guide to learning all the features and capabilities of Azure data services for storing, processing, and analyzing data (structured, unstructured, and semi-structured) of any size. You will explore key techniques for ingesting and storing data and perform batch, streaming, and interactive analytics. The book also shows you how to overcome various challenges and complexities relating to productivity and scaling. Next, you will be able to develop and run massive data workloads to perform different actions. Using a cloud-based big data-modern data warehouse-analytics setup, you will also be able to build secure, scalable data estates for enterprises. Finally, you will not only learn how to develop a data warehouse but also understand how to create enterprise-grade security and auditing big data programs. By the end of this Azure book, you will have learned how to develop a powerful and efficient analytical platform to meet enterprise needs.
Table of Contents (20 chapters)
1
Section 1: Data Warehousing and Considerations Regarding Cloud Computing
4
Section 2: The Storage Layer
7
Section 3: Cloud-Scale Data Integration and Data Transformation
14
Section 4: Data Presentation, Dashboarding, and Distribution

Understanding security in your MDWH

When you are using Azure services, there are always two aspects regarding security. You can set up access control where you grant or revoke Role-Based Access Control (RBAC) roles or Access Control Lists (ACLs).

We have touched on these concepts already in Chapter 3, Understanding the Data Lake Storage Layer, and in other chapters too when we have set up services and their connections.

The other perspective in the security topic is networking, such as when you want to hide your services completely from the outside world and the so-called public internet. You can peer your on-premise network to Azure Virtual Network. Typically, you will set up a so-called landing zone from where you will route traffic to the target services, such as your data lake, for example, or your Azure Synapse workspace with its computes.

Additionally, you will then implement IP firewall rules for the services that you are securing.

Implementing access control

...