{"id":19026,"date":"2020-03-09T12:11:31","date_gmt":"2020-03-09T19:11:31","guid":{"rendered":"http:\/\/devblogs.microsoft.com\/azuregov\/?p=19026"},"modified":"2020-05-19T15:05:21","modified_gmt":"2020-05-19T22:05:21","slug":"new-services-in-azure-government-to-enhance-your-security-posture","status":"publish","type":"post","link":"https:\/\/devblogs.microsoft.com\/azuregov\/new-services-in-azure-government-to-enhance-your-security-posture\/","title":{"rendered":"New services in Azure Government to enhance your security posture"},"content":{"rendered":"<p>Azure Government continues to invest in delivering new cloud capabilities to government customers at a rapid pace. Over the next few weeks, we\u2019ll highlight a wide range of new services along with how-to resources to help you accelerate modernization initiatives.<\/p>\n<p>On the security side, we\u2019ve recently added several new services to give you greater choice and help you optimize the security of your digital estate. We\u2019ll continue to bring new capabilities into Azure Government in the coming months; in line with our ongoing commitment to deliver the most secure and compliant cloud for the needs of government customers.<\/p>\n<p>New security services available in Azure Government include Azure Advanced Threat Protection, Microsoft Cloud App Security, Azure Web Application Firewall and Azure IoT security.<\/p>\n<p>Learn more about these services below and reach out to us with any questions at <a href=\"mailto:azgovfeedback@microsoft.com\">azgovfeedback@microsoft.com<\/a>. For a complete list of services, view Azure <a href=\"https:\/\/azure.microsoft.com\/en-us\/global-infrastructure\/services\/\">services by region<\/a>.<\/p>\n<p><span style=\"font-size: 14pt;\"><strong>Azure Advanced Threat Protection<\/strong><\/span><\/p>\n<p><a href=\"https:\/\/docs.microsoft.com\/en-us\/azure-advanced-threat-protection\/what-is-atp\">Azure Advanced Threat Protection (ATP)<\/a> is a cloud-based security solution that leverages your on-premises Active Directory signals to identify, detect, and investigate advanced threats, compromised identities, and malicious insider actions directed at your organization.<\/p>\n<p>Azure ATP enables SecOp analysts and security professionals struggling to detect advanced attacks in hybrid environments to:<\/p>\n<ul>\n<li>Monitor users, entity behavior, and activities with learning-based analytics<\/li>\n<li>Protect user identities and credentials stored in Active Directory<\/li>\n<li>Identify and investigate suspicious user activities and advanced attacks throughout the kill chain<\/li>\n<li>Provide clear incident information on a simple timeline for fast triage<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<p><strong>How it works<\/strong><\/p>\n<p><img decoding=\"async\" class=\"alignnone wp-image-19028\" src=\"http:\/\/devblogs.microsoft.com\/azuregov\/wp-content\/uploads\/sites\/43\/2020\/03\/SecurityBlog-AzureATPArch-Image1.png\" alt=\"Image SecurityBlog AzureATPArch Image1\" width=\"725\" height=\"475\" srcset=\"https:\/\/devblogs.microsoft.com\/azuregov\/wp-content\/uploads\/sites\/43\/2020\/03\/SecurityBlog-AzureATPArch-Image1.png 969w, https:\/\/devblogs.microsoft.com\/azuregov\/wp-content\/uploads\/sites\/43\/2020\/03\/SecurityBlog-AzureATPArch-Image1-300x197.png 300w, https:\/\/devblogs.microsoft.com\/azuregov\/wp-content\/uploads\/sites\/43\/2020\/03\/SecurityBlog-AzureATPArch-Image1-768x503.png 768w\" sizes=\"(max-width: 725px) 100vw, 725px\" \/><i><\/i><\/p>\n<p><em><span style=\"font-size: 10pt;\">Azure ATP sensors are installed on your domain controllers to access required event logs. These logs are parsed and sent to Azure ATP cloud service for action.<\/span><\/em><\/p>\n<p><strong>ATP resources<\/strong><\/p>\n<ul>\n<li><a href=\"https:\/\/azure.microsoft.com\/features\/azure-advanced-threat-protection\/\">Azure ATP product page<\/a><\/li>\n<li><a href=\"https:\/\/docs.microsoft.com\/en-us\/azure-advanced-threat-protection\/atp-us-govt-gcc-high\">Azure ATP for US Government<\/a><\/li>\n<li><a href=\"https:\/\/docs.microsoft.com\/en-us\/azure-advanced-threat-protection\">Azure ATP 5-minute quick-start tutorials and documentation<\/a><\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<p><span style=\"font-size: 14pt;\"><strong>Microsoft Cloud App Security<\/strong><\/span><\/p>\n<p><a href=\"https:\/\/docs.microsoft.com\/en-us\/cloud-app-security\/what-is-cloud-app-security\">Microsoft Cloud App Security<\/a> helps you elevate your security posture with enhanced visibility of your cloud environment and integration with Azure ATP. Cloud App Security is a multimode Cloud Access Security Broker (CASB). It provides rich visibility, control over data travel and sophisticated analytics to combat threats across all your cloud services.<\/p>\n<p><a href=\"https:\/\/docs.microsoft.com\/en-us\/azure-advanced-threat-protection\/atp-mcas-integration\">Accessing Azure ATP using the Microsoft Cloud App Security portal<\/a> provides capabilities to detect and alert on sensitive data exfiltration while creating actionable policies. This hybrid offering analyzes activity based on User and Entity Behavior Analytics (UEBA) to determine risky behaviors while providing investigation priority scoring to streamline incident response.<\/p>\n<p>&nbsp;<\/p>\n<p><strong>How it works<\/strong><\/p>\n<p><img decoding=\"async\" class=\"alignnone wp-image-19029\" src=\"http:\/\/devblogs.microsoft.com\/azuregov\/wp-content\/uploads\/sites\/43\/2020\/03\/SecurityBlog-CloudAppSec-Image2.png\" alt=\"Image SecurityBlog CloudAppSec Image2\" width=\"742\" height=\"655\" srcset=\"https:\/\/devblogs.microsoft.com\/azuregov\/wp-content\/uploads\/sites\/43\/2020\/03\/SecurityBlog-CloudAppSec-Image2.png 1216w, https:\/\/devblogs.microsoft.com\/azuregov\/wp-content\/uploads\/sites\/43\/2020\/03\/SecurityBlog-CloudAppSec-Image2-300x265.png 300w, https:\/\/devblogs.microsoft.com\/azuregov\/wp-content\/uploads\/sites\/43\/2020\/03\/SecurityBlog-CloudAppSec-Image2-1024x904.png 1024w, https:\/\/devblogs.microsoft.com\/azuregov\/wp-content\/uploads\/sites\/43\/2020\/03\/SecurityBlog-CloudAppSec-Image2-768x678.png 768w\" sizes=\"(max-width: 742px) 100vw, 742px\" \/><\/p>\n<p><span style=\"font-size: 10pt;\"><em>Cloud app security helps map and identify resources in all of your cloud environments providing enhanced management over settings, policy and potentially rogue applications.<\/em><\/span><\/p>\n<p><strong>Cloud App Security resources<\/strong><\/p>\n<ul>\n<li><a href=\"https:\/\/docs.microsoft.com\/en-us\/cloud-app-security\/\"><span style=\"font-family: 'Segoe UI',sans-serif;\">Microsoft Cloud App Security documentation<\/span><\/a><\/li>\n<li><span style=\"font-family: 'Segoe UI',sans-serif;\"><a href=\"https:\/\/go.microsoft.com\/fwlink\/p\/?linkid=2099429\">Cloud App Security proof of concept guide<\/a> <\/span><\/li>\n<li><a href=\"https:\/\/docs.microsoft.com\/en-us\/cloud-app-security\/e-books\"><span style=\"font-family: 'Segoe UI',sans-serif;\">Cloud App Security e-book<\/span><\/a><\/li>\n<\/ul>\n<p><span style=\"font-size: 14pt;\"><strong>Azure Web Application Firewall<\/strong><\/span><\/p>\n<p><a href=\"https:\/\/azure.microsoft.com\/en-us\/services\/web-application-firewall\/\">Azure Web Application Firewall<\/a> helps protect web apps from malicious attacks and common web vulnerabilities, such as SQL injection and cross-site scripting. The Azure Web Application Firewall (WAF) is a cloud service that deploys in minutes and you only pay for what you use.<\/p>\n<p><strong>How it works<\/strong><\/p>\n<p><img decoding=\"async\" class=\"alignnone wp-image-19030\" src=\"http:\/\/devblogs.microsoft.com\/azuregov\/wp-content\/uploads\/sites\/43\/2020\/03\/SecurityBlog-AzureFirewall-Image3.png\" alt=\"Image SecurityBlog AzureFirewall Image3\" width=\"741\" height=\"500\" srcset=\"https:\/\/devblogs.microsoft.com\/azuregov\/wp-content\/uploads\/sites\/43\/2020\/03\/SecurityBlog-AzureFirewall-Image3.png 567w, https:\/\/devblogs.microsoft.com\/azuregov\/wp-content\/uploads\/sites\/43\/2020\/03\/SecurityBlog-AzureFirewall-Image3-300x203.png 300w\" sizes=\"(max-width: 741px) 100vw, 741px\" \/><i><\/i><\/p>\n<p><em><span style=\"font-size: 10pt;\">Centralized management of Web Application Firewalls expedite threat response, management and web application defense.<\/span> <\/em><\/p>\n<p><strong>WAF Resources<\/strong><\/p>\n<ul>\n<li><span style=\"font-family: 'Segoe UI',sans-serif;\"><a href=\"https:\/\/docs.microsoft.com\/en-us\/azure\/web-application-firewall\/\"><b><\/b>Web Application Firewall documentation<\/a> <\/span><\/li>\n<li><a href=\"https:\/\/docs.microsoft.com\/en-us\/azure\/web-application-firewall\/ag\/ag-overview\"><span style=\"font-family: 'Segoe UI',sans-serif;\">Web Application Firewall on Azure Application Gateway<\/span><\/a><\/li>\n<li><a href=\"https:\/\/docs.microsoft.com\/en-us\/azure\/web-application-firewall\/afds\/afds-overview\"><span style=\"font-family: 'Segoe UI',sans-serif;\">Web Application Firewall on Azure Front Door Service<\/span><\/a><\/li>\n<\/ul>\n<p><span style=\"font-size: 14pt;\"><strong>Azure IoT security<\/strong><\/span><\/p>\n<p>Unblock IoT innovation with confidence with <a href=\"https:\/\/azure.microsoft.com\/en-us\/overview\/iot\/security\/\">Azure IoT security<\/a>.\u00a0 Azure IoT is built for security.\u00a0 Simplify the complexity of your IoT security solution with built-in protection at each stage of your deployment (including your cloud services and devices) and minimize security weaknesses wherever they exist.\u00a0 Stay ahead of risks with intelligent monitoring tools built with powerful AI.<\/p>\n<p><strong>IoT Security Resources<\/strong><\/p>\n<ul>\n<li><a href=\"https:\/\/docs.microsoft.com\/en-us\/azure\/iot-fundamentals\/iot-security-best-practices\"><span style=\"font-family: 'Segoe UI',sans-serif;\"><b><\/b>IoT security best practices<\/span><\/a><\/li>\n<li><a href=\"https:\/\/docs.microsoft.com\/en-us\/azure\/iot-fundamentals\/iot-security-architecture\"><span style=\"font-family: 'Segoe UI',sans-serif;\">IoT security architecture<\/span><\/a><\/li>\n<li><a href=\"https:\/\/azure.microsoft.com\/en-us\/overview\/iot\/security\/\"><span style=\"font-family: 'Segoe UI',sans-serif;\">IoT security page<\/span><\/a><\/li>\n<\/ul>\n<p><b>To learn more about ways to enhance your security posture, check out these additional resources:<\/b><\/p>\n<p><strong>Videos<\/strong><\/p>\n<ul>\n<li><a href=\"https:\/\/www.youtube.com\/watch?v=u8zsilCQe1U&amp;list=PLLasX02E8BPA5IgCPjqWms5ne5h4briK7&amp;index=38\">How to setup a secure environment on Azure Government &#8211; part 1<\/a><\/li>\n<li><a href=\"https:\/\/www.youtube.com\/watch?v=hG8doSJVPTQ&amp;list=PLLasX02E8BPA5IgCPjqWms5ne5h4briK7&amp;index=37\">How to setup a secure environment on Azure Government &#8211; part 2<\/a><\/li>\n<li><a href=\"https:\/\/www.youtube.com\/watch?v=fJnBNIGnbzQ&amp;list=PLOONVrYRytUgQv0dFUBfhexh1bqbPS1Wl&amp;index=3&amp;t=0s\"><span style=\"font-family: 'Segoe UI',sans-serif;\">Azure Security Center \u2013 Azure Government meetup presentation<\/span><\/a><\/li>\n<li><a href=\"https:\/\/www.youtube.com\/watch?v=HEVycqwbqFE&amp;list=PLOONVrYRytUgQv0dFUBfhexh1bqbPS1Wl&amp;index=3\"><span style=\"font-family: 'Segoe UI',sans-serif;\">Government cybersecurity in the era of cloud \u2013 Azure Government meetup panel<\/span><\/a><\/li>\n<\/ul>\n<p><strong>Zero Trust with Microsoft Azure blog series<\/strong><\/p>\n<ul>\n<li><a href=\"https:\/\/devblogs.microsoft.com\/azuregov\/implementing-zero-trust-with-microsoft-azure-identity-and-access-management-1-of-6\/\" target=\"_blank\" rel=\"noopener noreferrer\"><span style=\"font-family: 'Segoe UI',sans-serif;\"><b><\/b>Implementing Zero Trust with Microsoft Azure: Identity and Access Management (1 of 6)<\/span><\/a><\/li>\n<li><a href=\"https:\/\/devblogs.microsoft.com\/azuregov\/protecting-cloud-workloads-for-zero-trust-with-azure-security-center-2-of-6\/\" target=\"_blank\" rel=\"noopener noreferrer\"><span style=\"font-family: 'Segoe UI',sans-serif;\">Protecting Cloud Workloads for Zero Trust with Azure Security Center (2 of 6)<\/span><\/a><\/li>\n<li><a href=\"https:\/\/devblogs.microsoft.com\/azuregov\/monitoring-cloud-security-for-zero-trust-with-azure-sentinel-3-of-6\/\" target=\"_blank\" rel=\"noopener noreferrer\"><span style=\"font-family: 'Segoe UI',sans-serif;\">Monitoring Cloud Security for Zero Trust with Azure Sentinel (3 of 6)<\/span><\/a><\/li>\n<li><a href=\"https:\/\/devblogs.microsoft.com\/azuregov\/enforcing-policy-for-zero-trust-with-azure-policy-4-of-6\/\" target=\"_blank\" rel=\"noopener noreferrer\"><span style=\"font-family: 'Segoe UI',sans-serif;\">Enforcing Policy for Zero Trust with Azure Policy (4 of 6)<\/span><\/a><\/li>\n<li><a href=\"https:\/\/devblogs.microsoft.com\/azuregov\/insider-threat-monitoring-for-zero-trust-with-microsoft-azure-5-of-6\/\" target=\"_blank\" rel=\"noopener noreferrer\"><span style=\"font-family: 'Segoe UI',sans-serif;\">Insider Threat Monitoring for Zero Trust with Microsoft Azure (5 of 6)<\/span><\/a><\/li>\n<li><a href=\"https:\/\/devblogs.microsoft.com\/azuregov\/supply-chain-risk-management-for-zero-trust-with-microsoft-azure-6-of-6\/\" target=\"_blank\" rel=\"noopener noreferrer\"><span style=\"font-family: 'Segoe UI',sans-serif;\">Supply Chain Risk Management for Zero Trust with Microsoft Azure (6 of 6)<\/span><\/a><\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>Azure Government continues to invest in delivering new cloud capabilities to government customers at a rapid pace. Over the next few weeks, we\u2019ll highlight a wide range of new services along with how-to resources to help you accelerate modernization initiatives. On the security side, we\u2019ve recently added several new services to give you greater choice [&hellip;]<\/p>\n","protected":false},"author":1804,"featured_media":19734,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[2],"tags":[95,502],"class_list":["post-19026","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-announcements","tag-azure-government","tag-security"],"acf":[],"blog_post_summary":"<p>Azure Government continues to invest in delivering new cloud capabilities to government customers at a rapid pace. Over the next few weeks, we\u2019ll highlight a wide range of new services along with how-to resources to help you accelerate modernization initiatives. On the security side, we\u2019ve recently added several new services to give you greater choice [&hellip;]<\/p>\n","_links":{"self":[{"href":"https:\/\/devblogs.microsoft.com\/azuregov\/wp-json\/wp\/v2\/posts\/19026","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/devblogs.microsoft.com\/azuregov\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/devblogs.microsoft.com\/azuregov\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/devblogs.microsoft.com\/azuregov\/wp-json\/wp\/v2\/users\/1804"}],"replies":[{"embeddable":true,"href":"https:\/\/devblogs.microsoft.com\/azuregov\/wp-json\/wp\/v2\/comments?post=19026"}],"version-history":[{"count":0,"href":"https:\/\/devblogs.microsoft.com\/azuregov\/wp-json\/wp\/v2\/posts\/19026\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/devblogs.microsoft.com\/azuregov\/wp-json\/wp\/v2\/media\/19734"}],"wp:attachment":[{"href":"https:\/\/devblogs.microsoft.com\/azuregov\/wp-json\/wp\/v2\/media?parent=19026"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/devblogs.microsoft.com\/azuregov\/wp-json\/wp\/v2\/categories?post=19026"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/devblogs.microsoft.com\/azuregov\/wp-json\/wp\/v2\/tags?post=19026"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}