THREAD: Yesterday I gave a talk at #ITechDays on #Security approach in a #Cloud with #Azure context.
Here is key points and promised links and references.
DISCLAIMER: I'm MVP and RD but it isn't based on NDA info. My opinions only.
It might be wrong. You are warned.
#Azure Services like #AzureAD@azuread with its signals, conditional access and risk-based identity protection are delivering its own smaller #OODA Loops
Same with other services - #Azure Security Center @AzureTeamSec works on its own OODA Loop (collect, orient, decide, act) to protect specific resources
#Azure delivers platform and tools to execute your own #security loop. Each of those tools runs its internal loop to mitigate threats.
#CLoud providers make commodity not not only from platform but also #security consulting.
Not perfect but compliance manager or Secure Score are good enough for most who don't do anything at all now.
ORIENT: Go Check your Secure Score:
Both will give you a baseline. You will be surprised how low it typically is.
#Azure Security Center does the same for cloud infrastructure, now also for #AWS and #GCP.
Base security consulting knowledge was turned into commodity tools
What you need besides security knowledge is to learn new skills: KQL, Jupyter Notebooks, Python, #Azure security concepts.
How? Here are links
I needed a space to deploy simple web page over weekend. Requirements:
- static web page
- custom domain (apex)
- HTTPS enabled.
I gave a try to #Azure storage as a web hosting. Thread: (hint: documentation sucks at least a bit).
Storage: simple, yet useful service in all #cloud. #Azure storage host static website:
Pro: simple, cheap, custom domain
Con: No HTTPS for custom domain
Basic setup:…
- Create storage account
- Enable web hosting
- Change public access level
Done. Works.
I have DNS zone on #Azure DNS. No apex ("naked") domain support. How to overcome HTTPS and custom zone support?
Go for #Azure CDN service - in my case, Verizon premium (rules). It might take some time to provision it.
Basic setup:…
Hi, in 3 min I'm going live with @PredicaExperts on short AMA. If you have questions about tech, company, running business, meaning of life ... join us :)!
I reflected over coffee about my learning process today. It changed and formed into a funnel process:
👉 discover and acquire
👉 refine
👉research go deep
The most significant change over the years: go wider than deep.
(short thread)
Acquire has changed. Mostly get initial information and news from my info-bubble:
👉 Twitter (very efficient)
👉 Linkedin feeds
👉 Direct media feeds (very little)
👉 Peers recommendation (a lot)
It feeds my refinement funnel.
Then filtering it into refining funnel:
👉 Watch/Read
👉 Ideas
👉 Research.
Watch/Read - I started to store it in @RoamResearch recently.
Very efficient for my personality and the way I save and consume information.
@patoarchitekci@marekgrabarz@rwitkowski_asc No więc tak, przesłuchałem w drodze do ... Panie Władzo, to naprawdę moja krytyczna życiowa potrzeba ... tyle powiem w temacie wyjścia. To teraz o odcinku.