SlideShare a Scribd company logo
Azure Security and Management
Azure Security and Management
Azure Security and Management
Azure Security and Management
SECURE
Azure Security and Management
Azure Security and Management
Microsoft Azure
Azure Security and Management
Azure Security and Management
Azure Security and Management
Azure Security and Management
Azure Security Center
Azure Security and Management
Azure Security and Management
You need all three
High availability
When your applications
have a catastrophic failure,
run a second instance
Disaster recovery
When your applications have a
catastrophic failure, run them in
Azure or a secondary datacenter
Backup
When your data is corrupted,
deleted or lost you can restore it
Any OSWindows Linux
Site to Azure Site to Site
High availability mode
AvailabilitySetAvailabilitySetAvailabilitySet
 Multi-tiered with Availability Set
 Load balancers
 Public IP connectivity
 SQL Always On
AvailabilitySetAvailabilitySetAvailabilitySet
Enable Replication
App1 App2
Web1 Web2
Failover
AvailabilitySetAvailabilitySet
Azure Security and Management
Desired State Configuration (DSC)
- Proactively respond to configuration
drift by defining a baseline for your
environment
- Deliver Infrastructure as code
- Flexible Delivery
• Apply and monitor
• Apply and autocorrect
- Detailed reporting and diagnostics at a
per resource level
- Available for both Windows & Linux
Change Tracking & Inventory
- Track changes made to your system
- Valuable for root-cause analysis
- Collect & search inventory and history
- Available for both Windows & Linux
- Windows
• Software
• Services
• Files
• Registry
- Linux
• Software (Packages)
• Daemons
• Files
Key Features
 Configure any cloud or on
premise machine
 Windows & Linux
 Desired State Configuration
 Change Tracking
 Inventory
On-
Premises
Datacenter
Azure
AWS &
Service
Providers
View snapshots for:
• Software
• Files
• Daemons/services
• Registry values
Key Features:
• Spans across Windows & Linux
• Use data to create computer
groups
• Browse historical data
Azure Security and Management
View changes for:
• Software
• Files
• daemons/services
• registry values
• Azure activity log (New*)
Scenarios:
• Identify unauthorized changes
• Correlate configuration changes with
monitoring events
• Create an alert & remediate on change
• Reporting for package/software updates
• Browse historical changes for diagnosis and
forensics
Azure Security and Management
Automated configuration management from the cloud
• Manage physical hosts and VMs in any cloud or on-premises
• Windows or Linux
• Configuration setting and reporting
• Easily attach Azure VMs from portal, ARM Template, or extension
Powered by PowerShell DSC
PowerShell (PS) DSC configuration, node configuration (MOF), node, and
resource management
• Import configurations & modules (from PS Gallery or custom)
• Author
• Compile
• Distribute to nodes
• View granular and high-level configuration compliance reports
• Easy node onboarding
Deploy, enforce, and monitor configuration compliance
standards-based
managed elements”
Azure Security and Management
Configuration
(script)
DSC
Resources
Authoring
Azure VM Physical
server
On-prem
VM
MOF
MOF
Node
Configuration
(MOF)
Zip
Zip
Zip
Rest Endpoint
Staging
Reports
Azure Security and Management
ARM Template
CloudFormation
synced with source control
imported compiled
Azure Security and Management
Unified visibility and deploymentReliable, highly available, scalable
- Flexible scheduling options
- ConfigMgr
 Update Azure & non-Azure
 Windows & Linux
 Update Insights
 Update Deployments
Azure
Update
Management
AWS&
Service
Providers
Hyper-V
VMWare
OpenStack
On-Premises
Azure Security and Management
omsagent
Omsconfig (DSC)
Linux
vendor
s
• Advanced reporting (classification, severity, CVE, bulletinURL etc)
• Consolidation of the package classification
2
1
Amazon Linux
• 2015.09 – 2017.09
Debian GNU/Linux
• 6 (x86/x64)
• 7 (x86/x64)
• 8 (x86/x64)
Oracle Linux
• 5 (x86/x64)
• 6 (x86/x64)
• 7 (x64)
Red Hat Ent. Linux
• 5 (x86/x64)
• 6 (x86/x64)
• 7 (x64)
SUSE Linux Enterprise Server
• 11 (x86/x64)
• 12 (x64)
Ubuntu Server
• 12.04 LTS (x86/x64)
• 14.04 LTS (x86/x64)
• 15.10 (x86/x64)
• 16.04 (x86/x64)
CentOS
• 5 (x86/x64)
• 6 (x86/x64)
• 7 (x64)
(Currently supported)
(future planned)
Legend
Azure Security and Management
Monitoring and Logging
AZURE:
• Performs monitoring & alerting of security
events for the platform
• Enables security data collection via
Monitoring Agent or Windows Event
Forwarding
CUSTOMER:
• Configures monitoring
• Exports events to SQL Database,
HDInsight or a SIEM for analysis
• Monitors alerts & reports
• Responds to incidents
Azure
Storage
Customer
Admin
Guest VM Cloud Services
Customer VMs
Portal
Smart API
Guest VM
Enable Monitoring Agent
Events
Extract event information to SIEM or
other Reporting System
Event ID Computer Event Description Severity DateTime
1150 Machine1 Example security event
4 04/29/2014
2002 Machine2 Signature Updated Successfully
4 04/29/2014
5007 Machine3 Configuration Applied
4 04/29/2014
1116 Machine2 Example security event
1 04/29/2014
1117 Machine2 Access attempted
1 04/29/2014
SIEM Admin View
Alerting & reporting
HDInsight
Microsoft Azure
https://www.microsoft.com/en-us/trustcenter/security/auditingandlogging
Full Stack Monitoring & Analytics across Apps and Infra
Application Insights
Scenario Specific Monitoring – Customized Data Ingestion & Diagnostics
Log Analytics
Service Map Container Health
…Network Performance Monitor
Monitoring Fundamentals – Available out of the box with Azure Platform
Activity LogsDiagnostic Logs Service HealthMetrics
Dashboards Alerts Action Groups Autoscale
Unified pricing model
Only pay what you use
Data ingestion per GB
Detect
Triage
Diagnose
Operationalize
• Diagnosing across app stack is
hard unless various
perspectives connected
• New and powerful big data
query engine for all your app
telemetry and root-cause
analysis
• Ad-hoc queries and full-text
search helps answer tough
questions instantly
• Simple, powerful SQL like language
much easier for complex queries
• Filter, join and correlate data to gain
performance & usage insights
• Extract and extend your data to
create new calculated data fields
• Generate statistical aggregations
and powerful visualizations instantly
Visual Studio 2015 (Update 2)
Visual Studio Team Services
• Open Source SDKs to power
insights for any web app
• Continuously export data to
Azure Blob Storage or SQL
• Visualize data with Power BI
Content Pack
• Data access via REST APIs*
Azure Security and Management

More Related Content

PPTX
PPT Azure Firewall vs 3rd Party NVA Comparison v1.0.pptx
PDF
Azure Arc - Managing Hybrid and Multi-Cloud Platforms
PPTX
Implementing Zero Trust strategy with Azure
PPTX
Azure Security Fundamentals
PDF
Azure security architecture
PDF
Azure Security Overview
PDF
Azure vmware solutions para partners
PPTX
Introducing Azure Arc
PPT Azure Firewall vs 3rd Party NVA Comparison v1.0.pptx
Azure Arc - Managing Hybrid and Multi-Cloud Platforms
Implementing Zero Trust strategy with Azure
Azure Security Fundamentals
Azure security architecture
Azure Security Overview
Azure vmware solutions para partners
Introducing Azure Arc

What's hot (20)

PDF
Microsoft Azure Security Overview
PDF
Introduction to Azure
PPTX
48. Azure Active Directory - Part 1
PDF
Microsoft Defender and Azure Sentinel
PPTX
Full stack monitoring across apps & infrastructure with Azure Monitor
PPTX
Azure security and Compliance
PPTX
Azure App Service Deep Dive
PDF
TechnicalTerraformLandingZones121120229238.pdf
PPTX
CAF presentation 09 16-2020
PDF
Microsoft Azure Sentinel
PPTX
Microsoft Cloud Adoption Framework for Azure: Governance Conversation
PDF
Microsoft Azure Fundamentals
PDF
Microsoft 365 Enterprise Security with E5 Overview
PDF
[Azure Governance] Lesson 4 : Azure Policy
PPTX
Azure Identity and access management
PPTX
Azure Security Overview
PPTX
Power of the cloud - Introduction to azure security
PPTX
Understanding Azure Disaster Recovery
PPTX
Microsoft Azure Technical Overview
PPTX
Breakdown of Microsoft Purview Solutions
Microsoft Azure Security Overview
Introduction to Azure
48. Azure Active Directory - Part 1
Microsoft Defender and Azure Sentinel
Full stack monitoring across apps & infrastructure with Azure Monitor
Azure security and Compliance
Azure App Service Deep Dive
TechnicalTerraformLandingZones121120229238.pdf
CAF presentation 09 16-2020
Microsoft Azure Sentinel
Microsoft Cloud Adoption Framework for Azure: Governance Conversation
Microsoft Azure Fundamentals
Microsoft 365 Enterprise Security with E5 Overview
[Azure Governance] Lesson 4 : Azure Policy
Azure Identity and access management
Azure Security Overview
Power of the cloud - Introduction to azure security
Understanding Azure Disaster Recovery
Microsoft Azure Technical Overview
Breakdown of Microsoft Purview Solutions
Ad

Similar to Azure Security and Management (20)

PPTX
Server update management optimization
PDF
Microsoft Azure Cloud Services
PPTX
Azure System Management
PDF
Gill C. Configuring Windows Server Hybrid Advanced Services Exam Ref AZ-801 2...
PDF
Azure Virtual Machines Deployment Scenarios
PDF
PowerShell DSC - State of the Art & Community by Gael Colas
PDF
Azure Arc Overview from Microsoft
PPTX
Azure Resource Monitoring cloud talk_20161128
PDF
KoprowskiT_SQLSatDenmark_WASDforBeginners
PPTX
Primend Pilvekonverents - Azure Infrastruktuur
PDF
KoprowskiT_SQLSatMoscow_WASDforBeginners
PDF
Llunitebe2018 best of_two_worlds-manage.your.servers.the.azure.or.configmgr.way
PDF
7.habits.every.azure.admin.must.have.v082020
PPTX
Introduction-to-Microsoft-AzurePowerShell Module.pptx
PPTX
Azure Global Bootcamp 2018 Paris Keynote
PPTX
Cnam cours azure iaas
PPTX
ECS19 - Mustafa Toroman, Sasa Kranjac - SOUP TO NUTS: MICROSOFT AZURE POWERCLASS
PPTX
Azure IaaS
PPTX
Azure Nights Melbourne July 2017 Meetup
PPTX
Microsoft Operations Management Suite
Server update management optimization
Microsoft Azure Cloud Services
Azure System Management
Gill C. Configuring Windows Server Hybrid Advanced Services Exam Ref AZ-801 2...
Azure Virtual Machines Deployment Scenarios
PowerShell DSC - State of the Art & Community by Gael Colas
Azure Arc Overview from Microsoft
Azure Resource Monitoring cloud talk_20161128
KoprowskiT_SQLSatDenmark_WASDforBeginners
Primend Pilvekonverents - Azure Infrastruktuur
KoprowskiT_SQLSatMoscow_WASDforBeginners
Llunitebe2018 best of_two_worlds-manage.your.servers.the.azure.or.configmgr.way
7.habits.every.azure.admin.must.have.v082020
Introduction-to-Microsoft-AzurePowerShell Module.pptx
Azure Global Bootcamp 2018 Paris Keynote
Cnam cours azure iaas
ECS19 - Mustafa Toroman, Sasa Kranjac - SOUP TO NUTS: MICROSOFT AZURE POWERCLASS
Azure IaaS
Azure Nights Melbourne July 2017 Meetup
Microsoft Operations Management Suite
Ad

Recently uploaded (20)

PPTX
Big Data Technologies - Introduction.pptx
PDF
Building Integrated photovoltaic BIPV_UPV.pdf
PDF
Spectral efficient network and resource selection model in 5G networks
PDF
Shreyas Phanse Resume: Experienced Backend Engineer | Java • Spring Boot • Ka...
PPTX
Understanding_Digital_Forensics_Presentation.pptx
PDF
How UI/UX Design Impacts User Retention in Mobile Apps.pdf
PDF
Network Security Unit 5.pdf for BCA BBA.
PDF
CIFDAQ's Market Insight: SEC Turns Pro Crypto
PDF
TokAI - TikTok AI Agent : The First AI Application That Analyzes 10,000+ Vira...
PDF
Reach Out and Touch Someone: Haptics and Empathic Computing
PDF
NewMind AI Monthly Chronicles - July 2025
PDF
KodekX | Application Modernization Development
PDF
Empathic Computing: Creating Shared Understanding
PDF
cuic standard and advanced reporting.pdf
PDF
Encapsulation theory and applications.pdf
PPTX
VMware vSphere Foundation How to Sell Presentation-Ver1.4-2-14-2024.pptx
PPTX
KOM of Painting work and Equipment Insulation REV00 update 25-dec.pptx
PDF
7 ChatGPT Prompts to Help You Define Your Ideal Customer Profile.pdf
PDF
Bridging biosciences and deep learning for revolutionary discoveries: a compr...
PDF
Blue Purple Modern Animated Computer Science Presentation.pdf.pdf
Big Data Technologies - Introduction.pptx
Building Integrated photovoltaic BIPV_UPV.pdf
Spectral efficient network and resource selection model in 5G networks
Shreyas Phanse Resume: Experienced Backend Engineer | Java • Spring Boot • Ka...
Understanding_Digital_Forensics_Presentation.pptx
How UI/UX Design Impacts User Retention in Mobile Apps.pdf
Network Security Unit 5.pdf for BCA BBA.
CIFDAQ's Market Insight: SEC Turns Pro Crypto
TokAI - TikTok AI Agent : The First AI Application That Analyzes 10,000+ Vira...
Reach Out and Touch Someone: Haptics and Empathic Computing
NewMind AI Monthly Chronicles - July 2025
KodekX | Application Modernization Development
Empathic Computing: Creating Shared Understanding
cuic standard and advanced reporting.pdf
Encapsulation theory and applications.pdf
VMware vSphere Foundation How to Sell Presentation-Ver1.4-2-14-2024.pptx
KOM of Painting work and Equipment Insulation REV00 update 25-dec.pptx
7 ChatGPT Prompts to Help You Define Your Ideal Customer Profile.pdf
Bridging biosciences and deep learning for revolutionary discoveries: a compr...
Blue Purple Modern Animated Computer Science Presentation.pdf.pdf

Azure Security and Management

  • 16. You need all three High availability When your applications have a catastrophic failure, run a second instance Disaster recovery When your applications have a catastrophic failure, run them in Azure or a secondary datacenter Backup When your data is corrupted, deleted or lost you can restore it
  • 17. Any OSWindows Linux Site to Azure Site to Site
  • 18. High availability mode AvailabilitySetAvailabilitySetAvailabilitySet  Multi-tiered with Availability Set  Load balancers  Public IP connectivity  SQL Always On
  • 21. Desired State Configuration (DSC) - Proactively respond to configuration drift by defining a baseline for your environment - Deliver Infrastructure as code - Flexible Delivery • Apply and monitor • Apply and autocorrect - Detailed reporting and diagnostics at a per resource level - Available for both Windows & Linux Change Tracking & Inventory - Track changes made to your system - Valuable for root-cause analysis - Collect & search inventory and history - Available for both Windows & Linux - Windows • Software • Services • Files • Registry - Linux • Software (Packages) • Daemons • Files Key Features  Configure any cloud or on premise machine  Windows & Linux  Desired State Configuration  Change Tracking  Inventory On- Premises Datacenter Azure AWS & Service Providers
  • 22. View snapshots for: • Software • Files • Daemons/services • Registry values Key Features: • Spans across Windows & Linux • Use data to create computer groups • Browse historical data
  • 24. View changes for: • Software • Files • daemons/services • registry values • Azure activity log (New*) Scenarios: • Identify unauthorized changes • Correlate configuration changes with monitoring events • Create an alert & remediate on change • Reporting for package/software updates • Browse historical changes for diagnosis and forensics
  • 26. Automated configuration management from the cloud • Manage physical hosts and VMs in any cloud or on-premises • Windows or Linux • Configuration setting and reporting • Easily attach Azure VMs from portal, ARM Template, or extension Powered by PowerShell DSC PowerShell (PS) DSC configuration, node configuration (MOF), node, and resource management • Import configurations & modules (from PS Gallery or custom) • Author • Compile • Distribute to nodes • View granular and high-level configuration compliance reports • Easy node onboarding Deploy, enforce, and monitor configuration compliance
  • 31. ARM Template CloudFormation synced with source control imported compiled
  • 33. Unified visibility and deploymentReliable, highly available, scalable - Flexible scheduling options - ConfigMgr  Update Azure & non-Azure  Windows & Linux  Update Insights  Update Deployments Azure Update Management AWS& Service Providers Hyper-V VMWare OpenStack On-Premises
  • 35. omsagent Omsconfig (DSC) Linux vendor s • Advanced reporting (classification, severity, CVE, bulletinURL etc) • Consolidation of the package classification 2 1
  • 36. Amazon Linux • 2015.09 – 2017.09 Debian GNU/Linux • 6 (x86/x64) • 7 (x86/x64) • 8 (x86/x64) Oracle Linux • 5 (x86/x64) • 6 (x86/x64) • 7 (x64) Red Hat Ent. Linux • 5 (x86/x64) • 6 (x86/x64) • 7 (x64) SUSE Linux Enterprise Server • 11 (x86/x64) • 12 (x64) Ubuntu Server • 12.04 LTS (x86/x64) • 14.04 LTS (x86/x64) • 15.10 (x86/x64) • 16.04 (x86/x64) CentOS • 5 (x86/x64) • 6 (x86/x64) • 7 (x64) (Currently supported) (future planned) Legend
  • 38. Monitoring and Logging AZURE: • Performs monitoring & alerting of security events for the platform • Enables security data collection via Monitoring Agent or Windows Event Forwarding CUSTOMER: • Configures monitoring • Exports events to SQL Database, HDInsight or a SIEM for analysis • Monitors alerts & reports • Responds to incidents Azure Storage Customer Admin Guest VM Cloud Services Customer VMs Portal Smart API Guest VM Enable Monitoring Agent Events Extract event information to SIEM or other Reporting System Event ID Computer Event Description Severity DateTime 1150 Machine1 Example security event 4 04/29/2014 2002 Machine2 Signature Updated Successfully 4 04/29/2014 5007 Machine3 Configuration Applied 4 04/29/2014 1116 Machine2 Example security event 1 04/29/2014 1117 Machine2 Access attempted 1 04/29/2014 SIEM Admin View Alerting & reporting HDInsight Microsoft Azure https://www.microsoft.com/en-us/trustcenter/security/auditingandlogging
  • 39. Full Stack Monitoring & Analytics across Apps and Infra Application Insights Scenario Specific Monitoring – Customized Data Ingestion & Diagnostics Log Analytics Service Map Container Health …Network Performance Monitor Monitoring Fundamentals – Available out of the box with Azure Platform Activity LogsDiagnostic Logs Service HealthMetrics Dashboards Alerts Action Groups Autoscale Unified pricing model Only pay what you use Data ingestion per GB
  • 41. • Diagnosing across app stack is hard unless various perspectives connected • New and powerful big data query engine for all your app telemetry and root-cause analysis • Ad-hoc queries and full-text search helps answer tough questions instantly
  • 42. • Simple, powerful SQL like language much easier for complex queries • Filter, join and correlate data to gain performance & usage insights • Extract and extend your data to create new calculated data fields • Generate statistical aggregations and powerful visualizations instantly
  • 43. Visual Studio 2015 (Update 2) Visual Studio Team Services
  • 44. • Open Source SDKs to power insights for any web app • Continuously export data to Azure Blob Storage or SQL • Visualize data with Power BI Content Pack • Data access via REST APIs*

Editor's Notes

  • #5: 25% of VMs on Azure are already using Azure Backup. Only 10% are secure! Only 10% are monitored
  • #6: Azure can help by reducing the challenges of cost and complexity, while helping add coverage and compliance. Let’s drill into more details. Microsoft Azure provides customers peace of mind knowing their workloads are protected from any disaster without having to build and maintain a secondary datacenter or relying on backup. Azure delivers cloud services that extend to your datacenter to protect your infrastructure, transforming your business with a true hybrid solution. Reducing costs Customers do not have to pay for infrastructure, the power to run and cool machines, or IT personnel to manage machines, saving customers from paying to maintain a secondary data center Managing complexity Customers can leverage automation to enable the true power of recovery plans and allow you to failover your workloads with a click of a button, removing the guest work and stress involved in a disaster Ensuring compliance Disaster recovery is no longer constrained by geographical barriers. The disaster recovery site can be from any one of our Azure regions around the world. (Or asking for something like the quick restoration of workloads allows customers to gather necessary information to meet compliance deadlines) Scaling protection ASR provides rich capabilities to quickly replicate virtual and physical machines a customer’s own secondary on-premises site or Azure
  • #7: Azure can help by reducing the challenges of cost and complexity, while helping add coverage and compliance. Let’s drill into more details. Microsoft Azure provides customers peace of mind knowing their workloads are protected from any disaster without having to build and maintain a secondary datacenter or relying on backup. Azure delivers cloud services that extend to your datacenter to protect your infrastructure, transforming your business with a true hybrid solution. Reducing costs Customers do not have to pay for infrastructure, the power to run and cool machines, or IT personnel to manage machines, saving customers from paying to maintain a secondary data center Managing complexity Customers can leverage automation to enable the true power of recovery plans and allow you to failover your workloads with a click of a button, removing the guest work and stress involved in a disaster Ensuring compliance Disaster recovery is no longer constrained by geographical barriers. The disaster recovery site can be from any one of our Azure regions around the world. (Or asking for something like the quick restoration of workloads allows customers to gather necessary information to meet compliance deadlines) Scaling protection ASR provides rich capabilities to quickly replicate virtual and physical machines a customer’s own secondary on-premises site or Azure
  • #8: Gain visibility into health, performance and utilization of your platform, apps, and workloads, no matter where they reside and get time back to focus on the initiatives that matter the most to you and your organization. Azure provides monitoring and analytics as a SaaS offering, so you can get started quickly without any infrastructure overhead. It is designed to manage your development and IT operations workflows through a unified experience. It can connect to any data source and leverage your existing management tools, both on-premises and in the cloud. You will bridge the gap between app and infrastructure with the automated discovery and mapping of the dependencies across servers, processes, and 3rd party services. You can query at cloud scale and gain immediate insight by correlating and analyzing petabytes of machine data. With built-in solutions and machine learning algorithms baked into the service, you can detect and fix issues, before it impacts users - no matter what type of platform, or which public cloud service you use. Key benefits Collect and correlate data from multiple sources, enabling integrated monitoring and diagnostics of the cloud and on-premises environment, across multi-vendor solutions Discover application components and map their connections across servers, processes, and ports, for complete visibility of multi-tier services Visualize and alert on the health, performance and utilization of your resources, no matter where they reside and accelerate troubleshooting of issues Detect and respond to issues before they impact your users, with continuous monitoring across development and IT operations workflows. Learn, iterate, and improve the performance and usability of your apps and services using real-time insights with machine learning and ad-hoc analytics
  • #9: Talk through the investments of what MSFT/Azure sees as important for enterprise cloud management platform The combination together is powerful. Truly integrated capabilities SaaS management and security. To be successful in the Cloud era, enterprises must have visibility/metrics and controls on every component to pinpoint issues efficiently, optimize and scale effectively, while having the assurance the security, compliance and polices are in place to ensure the velocity. Native Security and Management in Azure Enterprise grade capabilities natively from the cloud provider Azure Integrated and interconnected across data and experiences Management capabilities included with the flexibility to increase or choose 3rd party Can make the point that for those familiar with OMS these were the foundation for what we now have natively within Azure. 5 main areas: Secure: While Azure is trusted and secure platform, you as a customer have your own security settings you need to manage. You also need to be able to protect your individual machines against threats and monitor the security posture of your system. Protect: Your VMs and applications in the cloud need to be backed up and protected in the event of data loss. With disaster recovery from on-prem to the cloud, or from one cloud to another, you can avoid downtime and keep your applications up and running. Monitor: Every operations manager and every developer needs to be able to see the health and performance of their applications, infrastructure, and network. And seeing insights across all three together in a single dashboard can save time and resources in troubleshooting and preventing issues in the future. Configure: For managing Azure and hybrid workloads at scale, automation and configuration capabilities help you create runbooks to automate tasks, manage the configuration settings and track changes, and monitor and deploy missing updates. Additionally in Azure you can use PowerShell and Cloud Shell for command line scripting. Govern: Many customers need a way to look across cloud resources to assess and enforce enterprise-wide standards and policy compliance for security and management. In addition, they need to manage and monitor costs for the cloud. We recently acquired Cloudyn, a multi-cloud cost management solution to help our customers with this challenge.
  • #14: Key investment themes
  • #18: Site Recovery Benefits: Automated VM level Replication RPO of seconds and RTO of minutes No impact DR Drills with Test Failover Planned and unplanned failover Orchestrated Recovery Plans for Disaster Recovery Failback support Migrate to Azure from anywhere Create on-demand test copies in Azure
  • #40: 39
  • #41: There are a bunch of interesting new capabilities so lets get started with the first area: Intelligent APM As modern app developers, we all know how crucial it is to detect, triage and diagnose problems before they start affecting our customers. With Application Insights you get all the tools to make your diagnostics experience smarter and find and fix problems before your customers know it! Detect: One of the most crucial things is to be able to detect issues as soon as they happen, and be alerted instantaneously. However, the issue with alerts is that it requires you to have a threshold and more often than not, you don’t have any idea. Moreover, in the complexity of modern app architecture, even an army of analysts sitting in front of a dashboard cannot detect all the different things that can go wrong. That is where proactive diagnostics come into play. With our Machine Learning based technology, you can be alerted on real time service disruptions and anomalous patterns in your app performance and behavior, with thresholds constantly evolving based on your app architecture and performance patterns. With dashboards you can pin all the charts and KPIs across your Azure resources at a single place and share with your colleagues. You can also take advantage of the new live stream metrics to see what is going on with your application metrics at this right very moment. Triage: Once you detect an issue, the next thing is to figure out its impact and whether it is priority enough to solve right now. With Application insights you can find out the real user impact of any exception and take decisions accordingly. With the new Application Map you can automatically detect your application topology across dependencies and client & server side components. You can find the impact assessment and click through to underlying Azure resources to find the right information. Diagnose: Once you decide to fix an issue, you need all the context to solve it, and with our out-of-the box telemetry collection, you will have all the data you need. What’s more, if you are developing Azure Cloud Services or App Services, you can get much deeper diagnostics information, covering some of the role lifecycle issues and other performance problems. Operationalize: Once you have been through the Detect, Triage & Diagnose cycle, you can set up your own custom alerts based on the thresholds you discovered and keep being on top of things!
  • #42: OK! So, lets get to our next area: Analytics As we mentioned in the beginning, Analytics is a new capability in Application Insights we just announced at Build. And, I should say it is one of my most favorites. In a modern app architecture with various tiers and components, it is often very difficult to diagnose problems or gaps across the entire app stack unless you can connect the various perspectives. With our new big data query engine, you can do that very easily and find all the answers to do the root-cause analyses. You can ask ad-hoc queries across your entire app telemetry and even do full text search to discover the right data sets.
  • #43: What powers the Analytics experience is a powerful query language we launched as well. Read through the points… And the best thing with Application Insights is that since we collect telemetry across your application stack, you can correlate data across your Service Performance, Business Metrics and Customer Experience and generate unique insights helping you answer tough questions almost instantly. To put it in perspective, some very high scale Microsoft services are using it today sending us Terabytes of data over which they can get answers to their queries in as little as a few seconds. E.g. internally the service ingests over 1 trillion events and 600TB a day of log data across hundreds of Microsoft cloud services.  Yes, 600TB a day – that’s many petabytes of retained log storage in just one month.
  • #44: Lets switch gears to our 3rd area: DevOps. As developers we would be using one or the other dev environment and have some DevOps workflows that we would be using! Having the diagnostics experience integrated with our existing practices makes it so very easy and useful! If you use Visual Studio or Visual Studio Team Services, there are a bunch of integration points that you can take advantage of.
  • #45: What also makes Application Insights powerful is how it is designed to be flexible and extensible to help you get insights suited to your particular needs.