I recently activated my Azure OpenAI playground and I noticed new security recommendations in Defender for Cloud.
It's important to consider security aspects when using enterprise AI services.
I point out the following resources:
- Azure Cognitive Services security: https://lnkd.in/dM-NbD9g
- Azure security baseline for Cognitive Services: https://lnkd.in/dCNmeYEs
Interesting insights about: TLS, Auth options, key rotation, customer managed keys, virtual networks, DLP, bring-your-own-storage...
I'll write a blog post about monitoring AI services, stay tuned :)
#openai #ai #aisecurity #security #cybersecurity #cognitiveservices #azure #azuresecurity #defenderforcloud #dfc #xdr #cloud #cspm #cwp #cnapp #multicloud #cloudsecurity #authentication #keyrotation #dlp #byos #virtualnetworks #tls #networksecurity #openaiplayground #chatgpt #gpt #artificialintelligence #microsoft #microsoftsecurity
#openai #ai #aisecurity #security #cybersecurity #cognitiveservices #azure #AzureSecurity #defenderforcloud #dfc #xdr #cloud #cspm #cwp #cnapp #multicloud #cloudsecurity #authentication #keyrotation #dlp #byos #virtualnetworks #tls #networksecurity #openaiplayground #chatgpt #gpt #artificialintelligence #microsoft #microsoftsecurity
Do not use tags for filtering security related Azure Policies #Azure #AzurePolicy #AzureSecurity #Governance https://cloudadministrator.net/2023/03/09/do-not-use-tags-for-filtering-security-related-azure-policies/
#azure #azurepolicy #AzureSecurity #governance
It's good to keep your hand in π€
#AzureSecurity #cloudsecurity #certification #certbot
π’ Did you know that Security Administrator role is not enough for preparing new tenants for Defender for Office365? π±π€―
π https://m365xazure.de/security/defender-for-office365-policies-in-new-tenants/
#EXO #ExchangeOnline #MDO #DefenderForOffice365 #M365D #AzureSecurity #Microsoft
#exo #ExchangeOnline #mdo #defenderforoffice365 #M365D #AzureSecurity #microsoft
Whether you're fresh to #Azure or #AzureAD, or have been around the block for a while, understanding the tenant to subscription relationship can be a tricky thing.
In this post we'll try to gain a better understanding with a mix of analogies and visuals.
#mvpbuzz #aad #azureactivedirectory #azuresecurity #entra #identity
https://ericonidentity.com/2023/01/29/azure-ad-101-azure-subscription-relationship
#azure #azuread #mvpbuzz #aad #azureactivedirectory #AzureSecurity #entra #identity
Azure Advisor is a tool which helps organizations and individuals optimize their Azure environment, reduce attack surface area, and cut costs. It offers guidance on cost, security, reliability, operational excellence and performance, with quick fixes and automation options to help make the process easier. https://techcommunity.microsoft.com/t5/core-infrastructure-and-security/automating-cumbersome-tasks-disk-snapshots/ba-p/3727742 #AzureAdvisor #AzureEnvironment #AzureSecurity
#azureadvisor #azureenvironment #AzureSecurity
Today from the Wiz Academy - The importance of configuration management to Cloud Security
https://www.wiz.io/academy/why-configuration-management-is-essential-to-cloud-security
#cybersecurity #cloudsecurity #azuresecurity #awssecurity #configurationmanagement
#cybersecurity #cloudsecurity #AzureSecurity #awssecurity #configurationmanagement
β¨ Passwordless Persistence and Privilege Escalation in #Azure by @_wald0
π Certificate-Based Authentication(CBA)
π Doesnt seem to be any way to differentiate between logins performed with a password vs those performed with certificate
https://posts.specterops.io/passwordless-persistence-and-privilege-escalation-in-azure-98a01310be3f
#infosec #redteam #pentesting #redteamingtips #AzureSecurity #cloudsecurity
#azure #infosec #redteam #pentesting #redteamingtips #AzureSecurity #cloudsecurity
Today from the Wiz Academy - a Cloud Security Foundation.
#cybersecurity #cloudsecurity #AzureSecurity #awssecurity
I just published an article on Medium that covers some basic tips for beginner soc analysts looking to investigate processes. If you're just starting in this field or want to get a job, I hope you'll find it useful.
Thanks for reading! π #socanalyst #malwareanalysis #azuresecurity
#socanalyst #malwareanalysis #AzureSecurity
RT @mnemonic_sec
Check out @emiliensocchi's post about a 0-day he found allowing anyone with the right amount of information to access data located in private instances of Azure Cognitive Search: https://www.mnemonic.io/resources/blog/acsessed-cross-tenant-network-bypass-in-azure-cognitive-search
#Azure #AzureSecurity #AzureCognitiveSearch #0day #zeroday
#azure #AzureSecurity #azurecognitivesearch #0day #zeroday
π’ This week I want to show, how you can #audit your #Microsoft #CertificationAuthority and send the logs to #MicrosoftSentinel in my article "Watch out for certificate theft!" πΉ
π https://m365xazure.de/security/watch-out-for-certificate-theft/
#audit #microsoft #certificationauthority #MicrosoftSentinel #hybridcloud #AzureSecurity
Azure Security: Posts on Azure Security by Teri Radichel [Expect more since thatβs what Iβm getting paid to do at the moment. π]
~~~~~~~
by Teri Radichel | Dec 5, 2022
#cloudsecurity #azuresecurity
https://medium.com/cloud-security/azure-security-7d3f68d9ae1c
π’ New week new post: Ingest Microsoft #Intune logs into #MicrosoftSentinel
π₯οΈ Learn how you can forward your logs to Sentinel and analyze them:
π° https://m365xazure.de/security/ingest-microsoft-intune-logs-into-microsoft-sentinel/
#AzureSecurity #M365 #Microsoft #MSIntune
#intune #MicrosoftSentinel #AzureSecurity #m365 #microsoft #MSIntune
π’ NEW BLOG POST: #MicrosoftSentinel β how to save money π°π€
https://m365xazure.de/security/microsoft-sentinel-how-to-save-money/
Please leave a comment and share! β€
#Azure #AzureSecurity #Microsoft #M365 #M365D #MDE #Security
#MicrosoftSentinel #azure #AzureSecurity #microsoft #m365 #M365D #MDE #security