Fine-Tune Your Tailored Integration
How the Security Center Helps You Enhance Your Defense
A beautiful thing about the Microsoft Azure Security Advisor is that it's constantly evolving and improving as new threats arise. This service is packed into the offering the Microsoft Azure team has put together, so that your Azure eCommerce platform can turn on the Security Center functionality for a relatively low cost. The incredibly high volume of revenue that's passing through Azure demands the system to constantly develop, focusing on security and addressing common threats. This ability is really fundamental from a value-add perspective, because it allows you to take advantage of this rapid, real-time security protection.
Therefore, your Azure eCommerce platform can leverage the Security Center to dramatically improve baseline security opportunities. It specifically enables you to reduce threats and footprint for being exploited or misused (knowingly or unknowingly) with the data within your eCommerce application.
The Azure Security Center is constantly on duty and keeps watch across the entire set of resources, including:
- The Azure SQL database
- The Azure app services
- All of the networking and hard drives
- The overall infrastructure that is utilized to connect all of those resources together
The Security Center also monitors the settings and configuration for all the resources, for things like protocols in use for SSL and whether or not:
- Data is encrypted properly at rest and is following best practices
- Configurations are encrypted properly
- Best practices are used for open ports within the app services
- The equal database is properly secured per industry best practices
Not only is this really helpful from a physical security perspective, but it also helps significantly from the aspect of validation, customer satisfaction, as well as from a reporting and auditing perspective for PCI DSS compliance. We typically recommend not just stopping there with the Azure Security Center, but also going ahead and running PCI DSS scans against the eCommerce application.
At this point we would like to mention that most PCI DSS scans don't go as deep into the infrastructure as the Azure Security Center will. So if, for whatever reason, the application and the infrastructure were compromised, PCI DSS scans wouldn't be as thorough as the Azure Security Center but they will both partially overlap. We definitely encourage clients to utilize best practices for their particular expectations on the level of security they’re planning and looking to adhere to.