SlideShare a Scribd company logo
1 of 71
Cloud Valley CTO
P-TSP Azure
Microsoft MVP
asaf@cloudvalley.io
About me
35, Married from Yavne, Israel
Cloud Valley CTO
P-TSP Azure
Microsoft MVP
Asaf Nakash
asaf@cloudvalley.io
https://il.linkedin.com/in/nakash
https://www.facebook.com/nakashon
https://github.com/nakashon/
US
DoD West
US
DoD East
West Europe
Germany Northeast**
Germany Central**
United Kingdom West United Kingdom South
North Europe
"Microsoft’s comprehensive hybrid
story, which spans applications and
platforms as well as infrastructure, is
highly attractive to many companies,
drawing them towards the cloud in
general.”
LYDIA LEONG,
GARTNER
Industry
validation
Microsoft a Leader in Gartner Magic Quadrants
Public Cloud IaaS (May 2015) Cloud Storage (June 2015) Enterprise Application PaaS (Jan 2014) X86 Server Virtualization (July 2014)
Azure Compliance
Azure has the largest compliance portfolio in the industry
United
States
HIPAA /
HITECH
FedRAMP
JAB P-ATO
FIPS 140-2 FERPA DISA Level 2 ITAR-readyCJIS21 CFR
Part 11
IRS 1075 Section
508 VPAT
Industry
ISO 27001 PCI DSS Level 1SOC 1 Type 2 SOC 2 Type 2 ISO 27018Cloud Controls
Matrix
Content Delivery and
Security Association
Shared
Assessments
Regional
European Union
Model Clauses
United
Kingdom
G-Cloud
Singapore
MTCS Level 3
Australian
Signals
Directorate
Japan
Financial
Services
China Multi
Layer Protection
Scheme
China
CCCPPF
New
Zealand
GCIO
China
GB 18030
ENISA
IAF
>90,000
New Azure customer
subscriptions/month
1.5Trillion
Messages per month
processed by Azure IoT
>500Million
Users in
Azure Active Directory
777Trillion
Storage Transactions
per day
>1.5Million
SQL Databases
running on Azure
>40%
Revenue from
Start-ups and ISVs
Azure momentum
A cloud you
can trust
“Businesses and users are
going to embrace technology
only if they can trust it.”
At Microsoft, we never take your
trust for granted
• We are serious about our
commitment to protect customers in
a cloud first world.
• We live by standards and practices
designed to earn your confidence.
• We collaborate with industry and
governments to build trust in the
cloud ecosystem.
– Satya Nadella
Cloud computing patterns
 Azure Automation
 Operational Insights
 Direct DSC and PowerShell
 Migration and DR
 Identity
INTERNET
Internet IP addresses and load balancing
LB
Reserved IPs can move!
User Defined Routes (UDR)
Multiple NICs in Azure VMs
Connect via an encrypted link over
public internet
CUSTOMER
SITE
INTERNET / VPN GATEWAYS
MICROSOFT
CLOUD
PUBLIC
INTERNET
EXCHANGE PROVIDER
PUBLIC
INTERNET
MICROSOFT
CLOUD
NETWORK SERVICE PROVIDER
WAN
MICROSOFT
CLOUD
VPN Gateways for virtual network
VIRTUAL NETWORK
GATEWAY SKU
EXPRESSROUTE GW
THROUGHPUT
VPN GW
EXPRESSROUTE
COEXISTENCE
VPN GW
THROUGHPUT
VPN GW
MAX IPSEC TUNNELS
COST (USD) / HOUR
BASIC 500 MBPS NO 100 MBPS 10 $0.04
STANDARD 1000 MBPS YES 100 MBPS 10 $0.19
PERFORMANCE 2000 MBPS YES 200 MBPS 30 $0.49
NOT
Network Security Groups
INTERNET
 




VIRTUAL NETWORK
VIRTUAL NETWORK
VIRTUAL NETWORK
Blobs
Simple named files
along with metadata
for the file.
Microsoft Azure Storage
Highly durable and scalable
Multiple copies of your data
Financially backed SLAs
Storage for objects, tables, drives
Supports REST APIs
Availability and DR: Local Redundancy
West DCEast DC > 400 miles
Microsoft Azure Storage
Defend against regional disasters.
Geo replication
Availability and DR: Geo-replication
Azure storage types
Locally Redundant
Storage (LRS)
Zone Redundant
Storage (ZRS)
Geographically
Redundant Storage
(GRS)
Read-Access
Geographically
Redundant Storage
(RA-GRS)
How it works Makes multiple
synchronous copies
of your data within
a single datacenter
Stores three copies
of data across multiple
datacenters within
or across regions.
For block blobs only
Same as LRS, plus
multiple asynchronous
copies to a second
datacenter hundreds
of miles away
Same as GRS, plus read
access to the secondary
datacenter
Total copies 3 3 6 6
Why use it For economical
local storage or data
governance compliance
An economical, higher
durability option for
block blob storage
For protection against
a major datacenter
outage or disaster
Provides read access to
data during an outage,
for maximum data
availability and durability
Availability SLA 99.9% read/write 99.9% read/write 99.9% read/write 99.9% write
99.99% read
https://azure.microsoft.com/en-us/pricing/details/storage/
Premium storage
Virtual machine
Disk
provisioning
Disk
provisioning
SSD provisioning
VM/network provisioning Server SSD
Premium storage
blobs
Temporary drive guidance
http://blogs.technet.com/b/dataplatforminsider/archive/2014/
09/25/using-ssds-in-azure-vms-to-store-sql-server-tempdb-
and-buffer-pool-extensions.aspx
Azure virtual machine
C:
OS disk
E:,F:, etc.
data disks
D:
temporary disk
Disk cache
Oracle CouchDBDB2Postgres MongoDBCassandra
RavenDB
Azure data management offerings
MySQL RedisDocument
DB
Relational No-SQL
MySQL
Postgrese
SQL DB
Introducing: Azure Security Center
Enable security
at cloud speed
Gain visibility
and control
Detect cyber
threats
Integrate partner
solutions
Provides a unified view of security across all your Azure subscriptions
Makes it easy to understand your security posture, including vulnerabilities and
threats detected
Integrates security event logging and monitoring, including events from partners
APIs, SIEM connector and Power BI dashboards make it easy to access, integrate,
and analyze security information using existing tools
Gain visibility and control
Set security policies
for subscriptions
and resource
groups
Monitor the
security state of
resources –
quickly identify
vulnerabilities
Gain insight into
the security state
of subscriptions in
Power BI
Access security data
in near real-time
from your Security
Information and
Event Management
(SIEM)
Public Preview
Export Logs
Log
Analytics/
SIEM
Azure
Diagnostics
Azure
Storage
Rehydrate:
“Forwarded Events”
Flat files (IIS Logs)
CEF formatted logs
Azure Log
Integration
Standard Log
Connector
(ArcSigt, Splunk, etc)
Azure APIs
Enable agility with security
Tailors security recommendations based on the security policy defined for the
subscription or resource group
Guides users through the process of remediating security vulnerabilities
Enables rapidly deployment of security services and appliances from Microsoft
and partners (firewalls, endpoint protection, and more)
Prioritized
recommendations
take the
guesswork out of
security for
resource owners
Integrate partner
solutions
Recommends and streamlines provisioning of partner solutions
Integrates signals for centralized alerting and advanced detection, including fusion
Leverages Azure Marketplace for commerce and billing
Closes security gaps created by disconnected point solutions
Easily deploy
security solutions
from partners and
automatically
integrate logs
Continuously analyzes security data from your Azure virtual machines, Azure
services (like Azure SQL databases), the network, and connected partner solutions
Leverages security intelligence and advanced analytics to detect threats more
quickly and reduce false positives
Creates prioritized security alerts that provide insight into the attack and
recommendations on how to remediate
Detect cyber threats
Prioritized security
alerts provide
details about the
threat detected
and suggests steps
to remediate
Alerts that
conform to kill
chain patterns
are fused into a
single incident
In-memory malware and exploit detected using crash analysis
Outbound SPAM detected using machine learning and threat intelligence
Resource groups
What is RBAC
•Allows secure access with granular permissions to
resources
•Assignable to users, groups or service principals
•Built-in roles make it easy to get started
Role Definitions
• Describes the set of permissions (e.g. read actions)
• Can be used in multiple assignments
Role Assignments
• Associate role definitions with an identity (e.g.
user/group) at a scope (e.g. resource group)
• Always inherited – subscription assignments
apply to all resources
MICROSOFT ANALYTICS
THIRD PARTY
OR ON-PREM
TOOLS
ANALYZEDOWNLOAD
VIRTUAL NETWORK
Thank you!
Cloud Valley CTO
P-TSP Azure
Microsoft MVP
Asaf Nakash
asaf@cloudvalley.io
https://il.linkedin.com/in/nakash
https://www.facebook.com/nakashon
https://github.com/nakashon/

More Related Content

What's hot

Microsoft Azure cloud services
Microsoft Azure cloud servicesMicrosoft Azure cloud services
Microsoft Azure cloud servicesNajeeb Khan
 
Improving Application Security With Azure
Improving Application Security With AzureImproving Application Security With Azure
Improving Application Security With AzureSoftchoice Corporation
 
Azure 101: Shared responsibility in the Azure Cloud
Azure 101: Shared responsibility in the Azure CloudAzure 101: Shared responsibility in the Azure Cloud
Azure 101: Shared responsibility in the Azure CloudPaulo Renato
 
Introduction to Azure
Introduction to AzureIntroduction to Azure
Introduction to AzureRobert Crane
 
Azure Penetration Testing
Azure Penetration TestingAzure Penetration Testing
Azure Penetration TestingCheah Eng Soon
 
What's New In Microsoft System Center 2016 & OMS
What's New In Microsoft System Center 2016 & OMSWhat's New In Microsoft System Center 2016 & OMS
What's New In Microsoft System Center 2016 & OMSAsaf Nakash
 
Level up your SQL and Azure, by using Rubrik
Level up your SQL and Azure, by using RubrikLevel up your SQL and Azure, by using Rubrik
Level up your SQL and Azure, by using RubrikJaap Brasser
 
Massive Lift & Shift Migrations to Microsoft Azure with the Microsoft Migrati...
Massive Lift & Shift Migrations to Microsoft Azure with the Microsoft Migrati...Massive Lift & Shift Migrations to Microsoft Azure with the Microsoft Migrati...
Massive Lift & Shift Migrations to Microsoft Azure with the Microsoft Migrati...Morgan Simonsen
 
The Layman's Guide to Microsoft Azure
The Layman's Guide to Microsoft AzureThe Layman's Guide to Microsoft Azure
The Layman's Guide to Microsoft AzureAptera Inc
 
Azure Security Fundamentals
Azure Security FundamentalsAzure Security Fundamentals
Azure Security FundamentalsLorenzo Barbieri
 
Cisco integrated system for microsoft azure stack
Cisco integrated system for microsoft azure stackCisco integrated system for microsoft azure stack
Cisco integrated system for microsoft azure stackAymen Mami
 
Cloud computing and the Windows Azure Services Platform (KU Leuven)
Cloud computing and the Windows Azure Services Platform (KU Leuven)Cloud computing and the Windows Azure Services Platform (KU Leuven)
Cloud computing and the Windows Azure Services Platform (KU Leuven)Maarten Balliauw
 
Azure Security Center- Zero to Hero
Azure Security Center-  Zero to HeroAzure Security Center-  Zero to Hero
Azure Security Center- Zero to HeroKasun Rajapakse
 
Azure security and Compliance
Azure security and ComplianceAzure security and Compliance
Azure security and ComplianceKarina Matos
 
Windowsazureplatform Overviewlatest
Windowsazureplatform OverviewlatestWindowsazureplatform Overviewlatest
Windowsazureplatform Overviewlatestrajramab
 
Getting Started with Azure Security Center
Getting Started with Azure Security CenterGetting Started with Azure Security Center
Getting Started with Azure Security CenterCheah Eng Soon
 
Monitoring Your AWS Cloud Infrastructure
Monitoring Your AWS Cloud InfrastructureMonitoring Your AWS Cloud Infrastructure
Monitoring Your AWS Cloud InfrastructureNewvewm
 

What's hot (20)

Microsoft Azure cloud services
Microsoft Azure cloud servicesMicrosoft Azure cloud services
Microsoft Azure cloud services
 
Improving Application Security With Azure
Improving Application Security With AzureImproving Application Security With Azure
Improving Application Security With Azure
 
Azure 101: Shared responsibility in the Azure Cloud
Azure 101: Shared responsibility in the Azure CloudAzure 101: Shared responsibility in the Azure Cloud
Azure 101: Shared responsibility in the Azure Cloud
 
Introduction to Azure
Introduction to AzureIntroduction to Azure
Introduction to Azure
 
Azure operational insights
Azure operational insightsAzure operational insights
Azure operational insights
 
Azure Penetration Testing
Azure Penetration TestingAzure Penetration Testing
Azure Penetration Testing
 
What's New In Microsoft System Center 2016 & OMS
What's New In Microsoft System Center 2016 & OMSWhat's New In Microsoft System Center 2016 & OMS
What's New In Microsoft System Center 2016 & OMS
 
Level up your SQL and Azure, by using Rubrik
Level up your SQL and Azure, by using RubrikLevel up your SQL and Azure, by using Rubrik
Level up your SQL and Azure, by using Rubrik
 
Massive Lift & Shift Migrations to Microsoft Azure with the Microsoft Migrati...
Massive Lift & Shift Migrations to Microsoft Azure with the Microsoft Migrati...Massive Lift & Shift Migrations to Microsoft Azure with the Microsoft Migrati...
Massive Lift & Shift Migrations to Microsoft Azure with the Microsoft Migrati...
 
The Layman's Guide to Microsoft Azure
The Layman's Guide to Microsoft AzureThe Layman's Guide to Microsoft Azure
The Layman's Guide to Microsoft Azure
 
Introduction to Microsoft Azure 101
Introduction to Microsoft Azure 101Introduction to Microsoft Azure 101
Introduction to Microsoft Azure 101
 
Azure Security Fundamentals
Azure Security FundamentalsAzure Security Fundamentals
Azure Security Fundamentals
 
Microsoft Azure Overview
Microsoft Azure OverviewMicrosoft Azure Overview
Microsoft Azure Overview
 
Cisco integrated system for microsoft azure stack
Cisco integrated system for microsoft azure stackCisco integrated system for microsoft azure stack
Cisco integrated system for microsoft azure stack
 
Cloud computing and the Windows Azure Services Platform (KU Leuven)
Cloud computing and the Windows Azure Services Platform (KU Leuven)Cloud computing and the Windows Azure Services Platform (KU Leuven)
Cloud computing and the Windows Azure Services Platform (KU Leuven)
 
Azure Security Center- Zero to Hero
Azure Security Center-  Zero to HeroAzure Security Center-  Zero to Hero
Azure Security Center- Zero to Hero
 
Azure security and Compliance
Azure security and ComplianceAzure security and Compliance
Azure security and Compliance
 
Windowsazureplatform Overviewlatest
Windowsazureplatform OverviewlatestWindowsazureplatform Overviewlatest
Windowsazureplatform Overviewlatest
 
Getting Started with Azure Security Center
Getting Started with Azure Security CenterGetting Started with Azure Security Center
Getting Started with Azure Security Center
 
Monitoring Your AWS Cloud Infrastructure
Monitoring Your AWS Cloud InfrastructureMonitoring Your AWS Cloud Infrastructure
Monitoring Your AWS Cloud Infrastructure
 

Viewers also liked

GoAzure 2015 Azure AD for Developers
GoAzure 2015 Azure AD for DevelopersGoAzure 2015 Azure AD for Developers
GoAzure 2015 Azure AD for Developerskekekekenta
 
Oracle OpenWorld - A quick take on all 22 press releases of Day #1 - #3
Oracle OpenWorld - A quick take on all 22 press releases of Day #1 - #3Oracle OpenWorld - A quick take on all 22 press releases of Day #1 - #3
Oracle OpenWorld - A quick take on all 22 press releases of Day #1 - #3Holger Mueller
 
Developers Summit 2012 16-E-1
Developers Summit 2012 16-E-1Developers Summit 2012 16-E-1
Developers Summit 2012 16-E-1Kohei Kumazawa
 
EMC Enterprise Hybrid Cloud 2.5.1, Federation SDDC Edition: Foundation Infras...
EMC Enterprise Hybrid Cloud 2.5.1, Federation SDDC Edition: Foundation Infras...EMC Enterprise Hybrid Cloud 2.5.1, Federation SDDC Edition: Foundation Infras...
EMC Enterprise Hybrid Cloud 2.5.1, Federation SDDC Edition: Foundation Infras...EMC
 
Cyberlaw and Cybercrime
Cyberlaw and CybercrimeCyberlaw and Cybercrime
Cyberlaw and CybercrimePravir Karna
 
Vasilis Bankov & Calin Iliescu AEGON
Vasilis Bankov & Calin Iliescu AEGONVasilis Bankov & Calin Iliescu AEGON
Vasilis Bankov & Calin Iliescu AEGONBigDataExpo
 
E learning: kansen en risico's
E learning: kansen en risico'sE learning: kansen en risico's
E learning: kansen en risico'sJurgen Gaeremyn
 
Pre-Con Ed: Discover the New CA App Experience Analytics 16.3 - The Omnichann...
Pre-Con Ed: Discover the New CA App Experience Analytics 16.3 - The Omnichann...Pre-Con Ed: Discover the New CA App Experience Analytics 16.3 - The Omnichann...
Pre-Con Ed: Discover the New CA App Experience Analytics 16.3 - The Omnichann...CA Technologies
 
Cassandra Talk: Austin JUG
Cassandra Talk: Austin JUGCassandra Talk: Austin JUG
Cassandra Talk: Austin JUGStu Hood
 
Silicon Valley Grade IT and Cloud Maturity Assessment for Startup Ecosystem i...
Silicon Valley Grade IT and Cloud Maturity Assessment for Startup Ecosystem i...Silicon Valley Grade IT and Cloud Maturity Assessment for Startup Ecosystem i...
Silicon Valley Grade IT and Cloud Maturity Assessment for Startup Ecosystem i...Engin Deveci, Ph.D.
 
Node.JS error handling best practices
Node.JS error handling best practicesNode.JS error handling best practices
Node.JS error handling best practicesYoni Goldberg
 
How to Collect and Process Data Under GDPR?
How to Collect and Process Data Under GDPR?How to Collect and Process Data Under GDPR?
How to Collect and Process Data Under GDPR?Piwik PRO
 
Gaining visibility into your Openshift application container platform with Dy...
Gaining visibility into your Openshift application container platform with Dy...Gaining visibility into your Openshift application container platform with Dy...
Gaining visibility into your Openshift application container platform with Dy...Dynatrace
 
Fontys eric van tol
Fontys eric van tolFontys eric van tol
Fontys eric van tolBigDataExpo
 
Red Hat Storage Server Roadmap & Integration With Open Stack
Red Hat Storage Server Roadmap & Integration With Open StackRed Hat Storage Server Roadmap & Integration With Open Stack
Red Hat Storage Server Roadmap & Integration With Open StackRed_Hat_Storage
 

Viewers also liked (20)

GoAzure 2015 Azure AD for Developers
GoAzure 2015 Azure AD for DevelopersGoAzure 2015 Azure AD for Developers
GoAzure 2015 Azure AD for Developers
 
Oracle OpenWorld - A quick take on all 22 press releases of Day #1 - #3
Oracle OpenWorld - A quick take on all 22 press releases of Day #1 - #3Oracle OpenWorld - A quick take on all 22 press releases of Day #1 - #3
Oracle OpenWorld - A quick take on all 22 press releases of Day #1 - #3
 
ecdevday7
ecdevday7ecdevday7
ecdevday7
 
Developers Summit 2012 16-E-1
Developers Summit 2012 16-E-1Developers Summit 2012 16-E-1
Developers Summit 2012 16-E-1
 
EMC Enterprise Hybrid Cloud 2.5.1, Federation SDDC Edition: Foundation Infras...
EMC Enterprise Hybrid Cloud 2.5.1, Federation SDDC Edition: Foundation Infras...EMC Enterprise Hybrid Cloud 2.5.1, Federation SDDC Edition: Foundation Infras...
EMC Enterprise Hybrid Cloud 2.5.1, Federation SDDC Edition: Foundation Infras...
 
Cyberlaw and Cybercrime
Cyberlaw and CybercrimeCyberlaw and Cybercrime
Cyberlaw and Cybercrime
 
Vasilis Bankov & Calin Iliescu AEGON
Vasilis Bankov & Calin Iliescu AEGONVasilis Bankov & Calin Iliescu AEGON
Vasilis Bankov & Calin Iliescu AEGON
 
Oracle Cloud Café IOT 12 avril 2016
Oracle Cloud Café IOT 12 avril 2016Oracle Cloud Café IOT 12 avril 2016
Oracle Cloud Café IOT 12 avril 2016
 
E learning: kansen en risico's
E learning: kansen en risico'sE learning: kansen en risico's
E learning: kansen en risico's
 
Pre-Con Ed: Discover the New CA App Experience Analytics 16.3 - The Omnichann...
Pre-Con Ed: Discover the New CA App Experience Analytics 16.3 - The Omnichann...Pre-Con Ed: Discover the New CA App Experience Analytics 16.3 - The Omnichann...
Pre-Con Ed: Discover the New CA App Experience Analytics 16.3 - The Omnichann...
 
Fun git hub
Fun git hubFun git hub
Fun git hub
 
Cassandra Talk: Austin JUG
Cassandra Talk: Austin JUGCassandra Talk: Austin JUG
Cassandra Talk: Austin JUG
 
Silicon Valley Grade IT and Cloud Maturity Assessment for Startup Ecosystem i...
Silicon Valley Grade IT and Cloud Maturity Assessment for Startup Ecosystem i...Silicon Valley Grade IT and Cloud Maturity Assessment for Startup Ecosystem i...
Silicon Valley Grade IT and Cloud Maturity Assessment for Startup Ecosystem i...
 
Node.JS error handling best practices
Node.JS error handling best practicesNode.JS error handling best practices
Node.JS error handling best practices
 
GDPR. Et alors?
GDPR. Et alors?GDPR. Et alors?
GDPR. Et alors?
 
Rb wilmer peres
Rb wilmer peresRb wilmer peres
Rb wilmer peres
 
How to Collect and Process Data Under GDPR?
How to Collect and Process Data Under GDPR?How to Collect and Process Data Under GDPR?
How to Collect and Process Data Under GDPR?
 
Gaining visibility into your Openshift application container platform with Dy...
Gaining visibility into your Openshift application container platform with Dy...Gaining visibility into your Openshift application container platform with Dy...
Gaining visibility into your Openshift application container platform with Dy...
 
Fontys eric van tol
Fontys eric van tolFontys eric van tol
Fontys eric van tol
 
Red Hat Storage Server Roadmap & Integration With Open Stack
Red Hat Storage Server Roadmap & Integration With Open StackRed Hat Storage Server Roadmap & Integration With Open Stack
Red Hat Storage Server Roadmap & Integration With Open Stack
 

Similar to Cloud Camp: Infrastructure as a service advance workloads

Azure Compute, Networking and Storage Overview
Azure Compute, Networking and Storage OverviewAzure Compute, Networking and Storage Overview
Azure Compute, Networking and Storage OverviewAzure Riyadh User Group
 
Introduction to Azure Cloud Storage
Introduction to Azure Cloud StorageIntroduction to Azure Cloud Storage
Introduction to Azure Cloud StorageGanga R Jaiswal
 
Map Services on Amazon AWS, Microsoft Azure and Google Cloud Platform
Map Services on Amazon AWS, Microsoft Azure and Google Cloud PlatformMap Services on Amazon AWS, Microsoft Azure and Google Cloud Platform
Map Services on Amazon AWS, Microsoft Azure and Google Cloud Platform문기 박
 
Windows Azure: Lessons From The Field
Windows Azure: Lessons From The FieldWindows Azure: Lessons From The Field
Windows Azure: Lessons From The FieldRob Gillen
 
The Hive Think Tank - The Microsoft Big Data Stack by Raghu Ramakrishnan, CTO...
The Hive Think Tank - The Microsoft Big Data Stack by Raghu Ramakrishnan, CTO...The Hive Think Tank - The Microsoft Big Data Stack by Raghu Ramakrishnan, CTO...
The Hive Think Tank - The Microsoft Big Data Stack by Raghu Ramakrishnan, CTO...The Hive
 
Azure Storage
Azure StorageAzure Storage
Azure StorageMustafa
 
Microsoft Azure Offerings and New Services
Microsoft Azure Offerings and New Services Microsoft Azure Offerings and New Services
Microsoft Azure Offerings and New Services Mohamed Tawfik
 
To the Cloud and beyond (Nantes, Rebuild 2018)
To the Cloud and beyond (Nantes, Rebuild 2018)To the Cloud and beyond (Nantes, Rebuild 2018)
To the Cloud and beyond (Nantes, Rebuild 2018)Alex Danvy
 
Azure Data Explorer deep dive - review 04.2020
Azure Data Explorer deep dive - review 04.2020Azure Data Explorer deep dive - review 04.2020
Azure Data Explorer deep dive - review 04.2020Riccardo Zamana
 
Integrating Cloudera & Microsoft Azure
Integrating Cloudera & Microsoft AzureIntegrating Cloudera & Microsoft Azure
Integrating Cloudera & Microsoft AzureXpand IT
 
Understanding The Azure Platform November 09
Understanding The Azure Platform   November 09Understanding The Azure Platform   November 09
Understanding The Azure Platform November 09DavidGristwood
 
AWS 101, London - September 2014
AWS 101, London - September 2014AWS 101, London - September 2014
AWS 101, London - September 2014Ian Massingham
 
Microsoft Azure News - 2018 April
Microsoft Azure News - 2018 AprilMicrosoft Azure News - 2018 April
Microsoft Azure News - 2018 AprilDaniel Toomey
 
Microsoft Partner Roadshow - To the Cloud
Microsoft Partner Roadshow  - To the CloudMicrosoft Partner Roadshow  - To the Cloud
Microsoft Partner Roadshow - To the CloudNigel Watson
 
AWS Summit Atlanta Keynote
AWS Summit Atlanta KeynoteAWS Summit Atlanta Keynote
AWS Summit Atlanta KeynoteKristana Kane
 
Azure Data.pptx
Azure Data.pptxAzure Data.pptx
Azure Data.pptxFedoRam1
 

Similar to Cloud Camp: Infrastructure as a service advance workloads (20)

Prestashop and Azure
Prestashop and AzurePrestashop and Azure
Prestashop and Azure
 
Azure Cloud Services
Azure Cloud ServicesAzure Cloud Services
Azure Cloud Services
 
Azure Compute, Networking and Storage Overview
Azure Compute, Networking and Storage OverviewAzure Compute, Networking and Storage Overview
Azure Compute, Networking and Storage Overview
 
Introduction to Azure Cloud Storage
Introduction to Azure Cloud StorageIntroduction to Azure Cloud Storage
Introduction to Azure Cloud Storage
 
Map Services on Amazon AWS, Microsoft Azure and Google Cloud Platform
Map Services on Amazon AWS, Microsoft Azure and Google Cloud PlatformMap Services on Amazon AWS, Microsoft Azure and Google Cloud Platform
Map Services on Amazon AWS, Microsoft Azure and Google Cloud Platform
 
Windows Azure: Lessons From The Field
Windows Azure: Lessons From The FieldWindows Azure: Lessons From The Field
Windows Azure: Lessons From The Field
 
The Hive Think Tank - The Microsoft Big Data Stack by Raghu Ramakrishnan, CTO...
The Hive Think Tank - The Microsoft Big Data Stack by Raghu Ramakrishnan, CTO...The Hive Think Tank - The Microsoft Big Data Stack by Raghu Ramakrishnan, CTO...
The Hive Think Tank - The Microsoft Big Data Stack by Raghu Ramakrishnan, CTO...
 
Azure Storage
Azure StorageAzure Storage
Azure Storage
 
Microsoft Azure Offerings and New Services
Microsoft Azure Offerings and New Services Microsoft Azure Offerings and New Services
Microsoft Azure Offerings and New Services
 
To the Cloud and beyond (Nantes, Rebuild 2018)
To the Cloud and beyond (Nantes, Rebuild 2018)To the Cloud and beyond (Nantes, Rebuild 2018)
To the Cloud and beyond (Nantes, Rebuild 2018)
 
Azure Data Explorer deep dive - review 04.2020
Azure Data Explorer deep dive - review 04.2020Azure Data Explorer deep dive - review 04.2020
Azure Data Explorer deep dive - review 04.2020
 
Azure 10 major services
Azure 10 major servicesAzure 10 major services
Azure 10 major services
 
Integrating Cloudera & Microsoft Azure
Integrating Cloudera & Microsoft AzureIntegrating Cloudera & Microsoft Azure
Integrating Cloudera & Microsoft Azure
 
Understanding The Azure Platform November 09
Understanding The Azure Platform   November 09Understanding The Azure Platform   November 09
Understanding The Azure Platform November 09
 
AWS 101, London - September 2014
AWS 101, London - September 2014AWS 101, London - September 2014
AWS 101, London - September 2014
 
AWS 101 December 2014
AWS 101 December 2014AWS 101 December 2014
AWS 101 December 2014
 
Microsoft Azure News - 2018 April
Microsoft Azure News - 2018 AprilMicrosoft Azure News - 2018 April
Microsoft Azure News - 2018 April
 
Microsoft Partner Roadshow - To the Cloud
Microsoft Partner Roadshow  - To the CloudMicrosoft Partner Roadshow  - To the Cloud
Microsoft Partner Roadshow - To the Cloud
 
AWS Summit Atlanta Keynote
AWS Summit Atlanta KeynoteAWS Summit Atlanta Keynote
AWS Summit Atlanta Keynote
 
Azure Data.pptx
Azure Data.pptxAzure Data.pptx
Azure Data.pptx
 

Recently uploaded

Advanced Computer Architecture – An Introduction
Advanced Computer Architecture – An IntroductionAdvanced Computer Architecture – An Introduction
Advanced Computer Architecture – An IntroductionDilum Bandara
 
Gen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdfGen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdfAddepto
 
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptx
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptxMerck Moving Beyond Passwords: FIDO Paris Seminar.pptx
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptxLoriGlavin3
 
WordPress Websites for Engineers: Elevate Your Brand
WordPress Websites for Engineers: Elevate Your BrandWordPress Websites for Engineers: Elevate Your Brand
WordPress Websites for Engineers: Elevate Your Brandgvaughan
 
SAP Build Work Zone - Overview L2-L3.pptx
SAP Build Work Zone - Overview L2-L3.pptxSAP Build Work Zone - Overview L2-L3.pptx
SAP Build Work Zone - Overview L2-L3.pptxNavinnSomaal
 
Scanning the Internet for External Cloud Exposures via SSL Certs
Scanning the Internet for External Cloud Exposures via SSL CertsScanning the Internet for External Cloud Exposures via SSL Certs
Scanning the Internet for External Cloud Exposures via SSL CertsRizwan Syed
 
Connect Wave/ connectwave Pitch Deck Presentation
Connect Wave/ connectwave Pitch Deck PresentationConnect Wave/ connectwave Pitch Deck Presentation
Connect Wave/ connectwave Pitch Deck PresentationSlibray Presentation
 
Streamlining Python Development: A Guide to a Modern Project Setup
Streamlining Python Development: A Guide to a Modern Project SetupStreamlining Python Development: A Guide to a Modern Project Setup
Streamlining Python Development: A Guide to a Modern Project SetupFlorian Wilhelm
 
How to write a Business Continuity Plan
How to write a Business Continuity PlanHow to write a Business Continuity Plan
How to write a Business Continuity PlanDatabarracks
 
"LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks...
"LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks..."LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks...
"LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks...Fwdays
 
TrustArc Webinar - How to Build Consumer Trust Through Data Privacy
TrustArc Webinar - How to Build Consumer Trust Through Data PrivacyTrustArc Webinar - How to Build Consumer Trust Through Data Privacy
TrustArc Webinar - How to Build Consumer Trust Through Data PrivacyTrustArc
 
Human Factors of XR: Using Human Factors to Design XR Systems
Human Factors of XR: Using Human Factors to Design XR SystemsHuman Factors of XR: Using Human Factors to Design XR Systems
Human Factors of XR: Using Human Factors to Design XR SystemsMark Billinghurst
 
Vertex AI Gemini Prompt Engineering Tips
Vertex AI Gemini Prompt Engineering TipsVertex AI Gemini Prompt Engineering Tips
Vertex AI Gemini Prompt Engineering TipsMiki Katsuragi
 
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)Mark Simos
 
What's New in Teams Calling, Meetings and Devices March 2024
What's New in Teams Calling, Meetings and Devices March 2024What's New in Teams Calling, Meetings and Devices March 2024
What's New in Teams Calling, Meetings and Devices March 2024Stephanie Beckett
 
"ML in Production",Oleksandr Bagan
"ML in Production",Oleksandr Bagan"ML in Production",Oleksandr Bagan
"ML in Production",Oleksandr BaganFwdays
 
Unraveling Multimodality with Large Language Models.pdf
Unraveling Multimodality with Large Language Models.pdfUnraveling Multimodality with Large Language Models.pdf
Unraveling Multimodality with Large Language Models.pdfAlex Barbosa Coqueiro
 
Hyperautomation and AI/ML: A Strategy for Digital Transformation Success.pdf
Hyperautomation and AI/ML: A Strategy for Digital Transformation Success.pdfHyperautomation and AI/ML: A Strategy for Digital Transformation Success.pdf
Hyperautomation and AI/ML: A Strategy for Digital Transformation Success.pdfPrecisely
 
H2O.ai CEO/Founder: Sri Ambati Keynote at Wells Fargo Day
H2O.ai CEO/Founder: Sri Ambati Keynote at Wells Fargo DayH2O.ai CEO/Founder: Sri Ambati Keynote at Wells Fargo Day
H2O.ai CEO/Founder: Sri Ambati Keynote at Wells Fargo DaySri Ambati
 

Recently uploaded (20)

Advanced Computer Architecture – An Introduction
Advanced Computer Architecture – An IntroductionAdvanced Computer Architecture – An Introduction
Advanced Computer Architecture – An Introduction
 
Gen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdfGen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdf
 
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptx
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptxMerck Moving Beyond Passwords: FIDO Paris Seminar.pptx
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptx
 
WordPress Websites for Engineers: Elevate Your Brand
WordPress Websites for Engineers: Elevate Your BrandWordPress Websites for Engineers: Elevate Your Brand
WordPress Websites for Engineers: Elevate Your Brand
 
E-Vehicle_Hacking_by_Parul Sharma_null_owasp.pptx
E-Vehicle_Hacking_by_Parul Sharma_null_owasp.pptxE-Vehicle_Hacking_by_Parul Sharma_null_owasp.pptx
E-Vehicle_Hacking_by_Parul Sharma_null_owasp.pptx
 
SAP Build Work Zone - Overview L2-L3.pptx
SAP Build Work Zone - Overview L2-L3.pptxSAP Build Work Zone - Overview L2-L3.pptx
SAP Build Work Zone - Overview L2-L3.pptx
 
Scanning the Internet for External Cloud Exposures via SSL Certs
Scanning the Internet for External Cloud Exposures via SSL CertsScanning the Internet for External Cloud Exposures via SSL Certs
Scanning the Internet for External Cloud Exposures via SSL Certs
 
Connect Wave/ connectwave Pitch Deck Presentation
Connect Wave/ connectwave Pitch Deck PresentationConnect Wave/ connectwave Pitch Deck Presentation
Connect Wave/ connectwave Pitch Deck Presentation
 
Streamlining Python Development: A Guide to a Modern Project Setup
Streamlining Python Development: A Guide to a Modern Project SetupStreamlining Python Development: A Guide to a Modern Project Setup
Streamlining Python Development: A Guide to a Modern Project Setup
 
How to write a Business Continuity Plan
How to write a Business Continuity PlanHow to write a Business Continuity Plan
How to write a Business Continuity Plan
 
"LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks...
"LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks..."LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks...
"LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks...
 
TrustArc Webinar - How to Build Consumer Trust Through Data Privacy
TrustArc Webinar - How to Build Consumer Trust Through Data PrivacyTrustArc Webinar - How to Build Consumer Trust Through Data Privacy
TrustArc Webinar - How to Build Consumer Trust Through Data Privacy
 
Human Factors of XR: Using Human Factors to Design XR Systems
Human Factors of XR: Using Human Factors to Design XR SystemsHuman Factors of XR: Using Human Factors to Design XR Systems
Human Factors of XR: Using Human Factors to Design XR Systems
 
Vertex AI Gemini Prompt Engineering Tips
Vertex AI Gemini Prompt Engineering TipsVertex AI Gemini Prompt Engineering Tips
Vertex AI Gemini Prompt Engineering Tips
 
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
 
What's New in Teams Calling, Meetings and Devices March 2024
What's New in Teams Calling, Meetings and Devices March 2024What's New in Teams Calling, Meetings and Devices March 2024
What's New in Teams Calling, Meetings and Devices March 2024
 
"ML in Production",Oleksandr Bagan
"ML in Production",Oleksandr Bagan"ML in Production",Oleksandr Bagan
"ML in Production",Oleksandr Bagan
 
Unraveling Multimodality with Large Language Models.pdf
Unraveling Multimodality with Large Language Models.pdfUnraveling Multimodality with Large Language Models.pdf
Unraveling Multimodality with Large Language Models.pdf
 
Hyperautomation and AI/ML: A Strategy for Digital Transformation Success.pdf
Hyperautomation and AI/ML: A Strategy for Digital Transformation Success.pdfHyperautomation and AI/ML: A Strategy for Digital Transformation Success.pdf
Hyperautomation and AI/ML: A Strategy for Digital Transformation Success.pdf
 
H2O.ai CEO/Founder: Sri Ambati Keynote at Wells Fargo Day
H2O.ai CEO/Founder: Sri Ambati Keynote at Wells Fargo DayH2O.ai CEO/Founder: Sri Ambati Keynote at Wells Fargo Day
H2O.ai CEO/Founder: Sri Ambati Keynote at Wells Fargo Day
 

Cloud Camp: Infrastructure as a service advance workloads

  • 1. Cloud Valley CTO P-TSP Azure Microsoft MVP asaf@cloudvalley.io
  • 2. About me 35, Married from Yavne, Israel Cloud Valley CTO P-TSP Azure Microsoft MVP Asaf Nakash asaf@cloudvalley.io https://il.linkedin.com/in/nakash https://www.facebook.com/nakashon https://github.com/nakashon/
  • 3.
  • 4.
  • 5.
  • 6.
  • 8. West Europe Germany Northeast** Germany Central** United Kingdom West United Kingdom South North Europe
  • 9.
  • 10.
  • 11. "Microsoft’s comprehensive hybrid story, which spans applications and platforms as well as infrastructure, is highly attractive to many companies, drawing them towards the cloud in general.” LYDIA LEONG, GARTNER Industry validation Microsoft a Leader in Gartner Magic Quadrants Public Cloud IaaS (May 2015) Cloud Storage (June 2015) Enterprise Application PaaS (Jan 2014) X86 Server Virtualization (July 2014)
  • 12. Azure Compliance Azure has the largest compliance portfolio in the industry United States HIPAA / HITECH FedRAMP JAB P-ATO FIPS 140-2 FERPA DISA Level 2 ITAR-readyCJIS21 CFR Part 11 IRS 1075 Section 508 VPAT Industry ISO 27001 PCI DSS Level 1SOC 1 Type 2 SOC 2 Type 2 ISO 27018Cloud Controls Matrix Content Delivery and Security Association Shared Assessments Regional European Union Model Clauses United Kingdom G-Cloud Singapore MTCS Level 3 Australian Signals Directorate Japan Financial Services China Multi Layer Protection Scheme China CCCPPF New Zealand GCIO China GB 18030 ENISA IAF
  • 13. >90,000 New Azure customer subscriptions/month 1.5Trillion Messages per month processed by Azure IoT >500Million Users in Azure Active Directory 777Trillion Storage Transactions per day >1.5Million SQL Databases running on Azure >40% Revenue from Start-ups and ISVs Azure momentum
  • 14. A cloud you can trust “Businesses and users are going to embrace technology only if they can trust it.” At Microsoft, we never take your trust for granted • We are serious about our commitment to protect customers in a cloud first world. • We live by standards and practices designed to earn your confidence. • We collaborate with industry and governments to build trust in the cloud ecosystem. – Satya Nadella
  • 16.
  • 17.  Azure Automation  Operational Insights  Direct DSC and PowerShell  Migration and DR  Identity
  • 18.
  • 19.
  • 21. Internet IP addresses and load balancing LB
  • 24. Multiple NICs in Azure VMs
  • 25.
  • 26. Connect via an encrypted link over public internet CUSTOMER SITE INTERNET / VPN GATEWAYS MICROSOFT CLOUD PUBLIC INTERNET EXCHANGE PROVIDER PUBLIC INTERNET MICROSOFT CLOUD NETWORK SERVICE PROVIDER WAN MICROSOFT CLOUD
  • 27. VPN Gateways for virtual network VIRTUAL NETWORK GATEWAY SKU EXPRESSROUTE GW THROUGHPUT VPN GW EXPRESSROUTE COEXISTENCE VPN GW THROUGHPUT VPN GW MAX IPSEC TUNNELS COST (USD) / HOUR BASIC 500 MBPS NO 100 MBPS 10 $0.04 STANDARD 1000 MBPS YES 100 MBPS 10 $0.19 PERFORMANCE 2000 MBPS YES 200 MBPS 30 $0.49 NOT
  • 28. Network Security Groups INTERNET      
  • 30.
  • 31. Blobs Simple named files along with metadata for the file.
  • 32. Microsoft Azure Storage Highly durable and scalable Multiple copies of your data Financially backed SLAs Storage for objects, tables, drives Supports REST APIs Availability and DR: Local Redundancy
  • 33. West DCEast DC > 400 miles Microsoft Azure Storage Defend against regional disasters. Geo replication Availability and DR: Geo-replication
  • 34. Azure storage types Locally Redundant Storage (LRS) Zone Redundant Storage (ZRS) Geographically Redundant Storage (GRS) Read-Access Geographically Redundant Storage (RA-GRS) How it works Makes multiple synchronous copies of your data within a single datacenter Stores three copies of data across multiple datacenters within or across regions. For block blobs only Same as LRS, plus multiple asynchronous copies to a second datacenter hundreds of miles away Same as GRS, plus read access to the secondary datacenter Total copies 3 3 6 6 Why use it For economical local storage or data governance compliance An economical, higher durability option for block blob storage For protection against a major datacenter outage or disaster Provides read access to data during an outage, for maximum data availability and durability Availability SLA 99.9% read/write 99.9% read/write 99.9% read/write 99.9% write 99.99% read https://azure.microsoft.com/en-us/pricing/details/storage/
  • 35. Premium storage Virtual machine Disk provisioning Disk provisioning SSD provisioning VM/network provisioning Server SSD Premium storage blobs
  • 37. Oracle CouchDBDB2Postgres MongoDBCassandra RavenDB Azure data management offerings MySQL RedisDocument DB Relational No-SQL MySQL Postgrese SQL DB
  • 38.
  • 39.
  • 40. Introducing: Azure Security Center Enable security at cloud speed Gain visibility and control Detect cyber threats Integrate partner solutions
  • 41. Provides a unified view of security across all your Azure subscriptions Makes it easy to understand your security posture, including vulnerabilities and threats detected Integrates security event logging and monitoring, including events from partners APIs, SIEM connector and Power BI dashboards make it easy to access, integrate, and analyze security information using existing tools Gain visibility and control
  • 42. Set security policies for subscriptions and resource groups
  • 43. Monitor the security state of resources – quickly identify vulnerabilities
  • 44. Gain insight into the security state of subscriptions in Power BI
  • 45. Access security data in near real-time from your Security Information and Event Management (SIEM) Public Preview Export Logs Log Analytics/ SIEM Azure Diagnostics Azure Storage Rehydrate: “Forwarded Events” Flat files (IIS Logs) CEF formatted logs Azure Log Integration Standard Log Connector (ArcSigt, Splunk, etc) Azure APIs
  • 46. Enable agility with security Tailors security recommendations based on the security policy defined for the subscription or resource group Guides users through the process of remediating security vulnerabilities Enables rapidly deployment of security services and appliances from Microsoft and partners (firewalls, endpoint protection, and more)
  • 47. Prioritized recommendations take the guesswork out of security for resource owners
  • 48. Integrate partner solutions Recommends and streamlines provisioning of partner solutions Integrates signals for centralized alerting and advanced detection, including fusion Leverages Azure Marketplace for commerce and billing Closes security gaps created by disconnected point solutions
  • 49. Easily deploy security solutions from partners and automatically integrate logs
  • 50. Continuously analyzes security data from your Azure virtual machines, Azure services (like Azure SQL databases), the network, and connected partner solutions Leverages security intelligence and advanced analytics to detect threats more quickly and reduce false positives Creates prioritized security alerts that provide insight into the attack and recommendations on how to remediate Detect cyber threats
  • 51. Prioritized security alerts provide details about the threat detected and suggests steps to remediate
  • 52. Alerts that conform to kill chain patterns are fused into a single incident
  • 53.
  • 54.
  • 55.
  • 56.
  • 57. In-memory malware and exploit detected using crash analysis
  • 58.
  • 59. Outbound SPAM detected using machine learning and threat intelligence
  • 60.
  • 61.
  • 63. What is RBAC •Allows secure access with granular permissions to resources •Assignable to users, groups or service principals •Built-in roles make it easy to get started Role Definitions • Describes the set of permissions (e.g. read actions) • Can be used in multiple assignments Role Assignments • Associate role definitions with an identity (e.g. user/group) at a scope (e.g. resource group) • Always inherited – subscription assignments apply to all resources
  • 64.
  • 65.
  • 66.
  • 67.
  • 68. MICROSOFT ANALYTICS THIRD PARTY OR ON-PREM TOOLS ANALYZEDOWNLOAD
  • 70.
  • 71. Thank you! Cloud Valley CTO P-TSP Azure Microsoft MVP Asaf Nakash asaf@cloudvalley.io https://il.linkedin.com/in/nakash https://www.facebook.com/nakashon https://github.com/nakashon/

Editor's Notes

  1. Technology is omnipresent. It’s shaping how businesses plan for innovation and growth within their markets. The importance of digital transformation is urgent; Since 2000, 52% of Fortune 500 companies are gone due to digital disruption. We see companies responding by creating digital strategies across four core areas: engaging their customers, empowering their employees, optimizing their operations, and transforming their products. Everyone is aware of how important this is. Look at a company like Uber for example. They’ve created a digital model for the taxi industry that has allowed them to surpass every other taxi company by double or more, recently valued at $62.5 Billion. They’ve created a significant shift in an industry that has been largely untouched for decades.
  2. Why is this transformation important? Let’s take a look at the next few years before us… In 2020, 1 million new devices are expected to come online every hour. The connectivity between people and data is creating billions of new relationships that are driven not only by data but by algorithms that keep customers engaged and buying.* In 2020, the average age of a S&P 500 corporation is expected to be 12 years old. Compare that to the S&P 500 in 1960 when the average age was 60 years old.** By the year 2025, at least 60 percent of computing will be cloud-based, due to “everything-as-a-service” shifting fundamental changes in the IT industry.*** For digital transformation, mobility is the universal catalyst and cloud is the great enabler. How are you planning for digital transformation? Do you have the right people and the right technology in place to build your digital vision? How can you use technology to shape your future? *http://www.gartner.com/newsroom/id/3142917 **http://upstart.bizjournals.com/resources/author/2015/06/04/fortune-500-must-disrupt-or-die-writes-r-ray-wang.html?page=all ***http://www.emersonnetworkpower.com/en-US/Latest-Thinking/Data-Center-2025/Documents/002401_DataCenter2025Report_HR_INTERACTIVE.PDF
  3. The Azure Security Center will provide unified security and vulnerability management for all your Azure resources.
  4. Why this Slide: <Insert underlying reason for including this> Key Points: Point 1 Talk Track: Point 1 Transition to NEXT Slide: <Summary/lead-in to next slide>
  5. – The largest compliance portfolio in the industry, including those that FSI cares about – SOC, PCI and many others. - This means you can do away with auditing your own physical data center and let Microsoft’s do that work for you. - We provide you with our 3rd party certifications and detailed audit reports, letting you focus on the application you build. - Microsoft takes care of our data center security. Microsoft takes care of our data centers’ compliance.
  6. Trust: reliance on the integrity, strength, ability, surety of a person or thing; confidence. Why is it so challenging? Cybersecurity incidents, data breaches, social hacking, there’s a pervasive threat. Risk versus benefits, might be a lot easier to embrace the status quo Confidence/Trust -> Consumption! In each and every conversation I’ve had about cloud, the conversation has focused on trust. Customers have come to rely upon and trust their environments and get nervous when you suggest that they change. So it’s key that we be able to describe how seriously we take our commitment to trust , at the highest level and throughout our organization.
  7. There are three major cloud computing patterns in play today—and Microsoft Azure supports all of them. Infrastructure-as-a-Service allows development teams to lift and shift all infrastructure building blocks to the cloud by provisioning, configuring, and managing virtual infrastructure. We will host your infrastructure but you manage it. With Platform-as-a-Service we provide application building blocks and cloud services that allow developers to quickly implement application features without building from scratch. By assembling cloud services, developers can speed up creation and delivery of custom applications and increase efficiency. Visual Studio Online offers innovative cloud services for developers that enable teams to scale quickly and easily by extending ALM workloads to the cloud and enable new scenarios that are not possible with physical infrastructure. Visual Studio Online offers a complete set of developer services, accessible from anywhere—anytime.
  8. Virtual Machines – select storage, network, OS (or Template), specify the Size and Go! Cloud Services – Package your solution to deploy onto a standardized O/S as highly-available, infinitely-scalable applications and APIs – focus on Apps enabling Autoscale, Deploy 1000s instances in minutes, integrated monitor & loadbalancing, automatic OS and Application patching Web Sites - Deploy and scale modern websites and web apps in seconds (Built-in AutoScale + Loadbalancing) supports Continuous Deployment with Git, TFS, Github, SQL, NoSQL, DocumentDB, Search, MongoDB. CMD Wordpress, Umbraco, Drupal Developer and Operational Efficiency with Automation, Insight, Temaplates, Tools, and thanks Identity – Extend your Active Directory to Azure and provide Role Based Access Control with the same identity you use on-premises. Assign ability to see and modify resources with single identity.
  9. Azure Virtual Network https://azure.microsoft.com/en-us/services/virtual-network/ Virtual Network Documentation https://azure.microsoft.com/en-us/documentation/services/virtual-network/
  10. Instance Level Public IP Overview https://azure.microsoft.com/en-us/documentation/articles/virtual-networks-instance-level-public-ip/
  11. Reserved IP addresses for Cloud Services & Virtual Machines https://azure.microsoft.com/en-us/blog/reserved-ip-addresses/ Azure Datacenter IP Address Ranges https://msdn.microsoft.com/en-us/library/azure/dn175718.aspx
  12. Azure DNS https://azure.microsoft.com/en-us/services/dns/
  13. User Defined Routes and IP Forwarding https://azure.microsoft.com/en-us/documentation/articles/virtual-networks-udr-overview/
  14. Multiple VM NICs and Network Virtual Appliances in Azure https://azure.microsoft.com/en-us/blog/multiple-vm-nics-and-network-virtual-appliances-in-azure/ Create a Multi-NIC VM with a Public IP in Azure http://blogs.msdn.com/b/rslaten/archive/2014/11/18/create-a-multi-nic-vm-with-a-public-ip-in-azure.aspx Create a VM with multiple NICs https://azure.microsoft.com/en-us/documentation/articles/virtual-networks-multiple-nics/
  15. About VPN Devices and Gateways for Virtual Network Connectivity https://msdn.microsoft.com/en-us/library/azure/jj156075.aspx ExpressRoute https://azure.microsoft.com/en-us/services/expressroute/ ExpressRoute Pricing https://azure.microsoft.com/en-us/pricing/details/expressroute/ New Networking features and partnerships for Enterprise scenarios https://azure.microsoft.com/en-us/blog/networking-enterprise/
  16. Azure Standard VPN Gateway https://azure.microsoft.com/en-us/updates/azure-standard-vpn-gateway/
  17. Network Security Groups https://azure.microsoft.com/en-us/blog/network-security-groups/ What is a Network Security Group (NSG)? https://azure.microsoft.com/en-us/documentation/articles/virtual-networks-nsg/
  18. Key talking points: Virtual networking peering allows direct connectivity between two virtual networks in the same region The mechanism offers significant improvement on Bandwidth and latency since it avoids tunneling or gateways in the path. High bandwidth: (no caps other than the ones that come with VM size), low latency connection between resources in two virtual networks.
  19. We make 3 copies of data for durability and availability. So if a rack or server goes down, you data is available and accessible. We provide 99.9% SLA for storage. Windows Azure Storage system is the underpinning to everything in Azure that requires storage. The Windows Azure storage system provides a solid robust data platform for different services that make use of it – Blobs, Tables and Drives. Use Blob service for storing large amounts of unstructured data that can be accessed from anywhere in the world via HTTP or HTTPS. A single blob can be hundreds of gigabytes in size, and a single storage account can contain up to 100TB of blobs. Common uses of Blob storage include: Serving images or documents directly to a browser, Storing files for distributed access, Streaming video and audio, Performing secure backup and disaster recovery, Storing data for analysis by an on-premises or Windows Azure-hosted service Tables is a NoSQL datastore which is ideal for storing structured, non-relational data. Common uses of the Table service include: Storing TBs of structured data capable of serving web scale applications, or storing datasets that don’t require a full fledged relational DB. Drives are what are attached to VMs. They automatically provide get the same durability and availability. This differentiates us from other competitive offerings (like AWS) that have less reliable and durable storage systems for their VM instances.
  20. Additionally, data is asynchronously copied to another datacenter that’s at least 400 miles away. So you can be sure that every piece of data that you store in the Azure Blob is available as well as protected against regional disasters (we call this geo-replication).   Geo replication is a unique feature, that differentiates us from competition.
  21. How Azure pricing works https://azure.microsoft.com/en-us/pricing/details/storage/
  22. Premium Storage: High-Performance Storage for Azure Virtual Machine Workloads% https://azure.microsoft.com/en-us/documentation/articles/storage-premium-storage-preview-portal/ You can use Premium Storage for Disks in one of two ways: Create a new premium storage account first and then use it when creating the VM Create a new DS-series or GS-series VM While creating the VM, you can select a previously created Premium Storage account, create a new one, or let the Azure Portal to create a default premium account Tip: To leverage the benefit of Premium Storage, create a Premium Storage account using an account type of Premium_LRS first. To do this, you can use the Microsoft Azure Preview Portal, Azure PowerShell, or the Service Management REST API Azure uses the storage account as a container for your operating system (OS) and data disks If you create an Azure DS-series or GS-series VM and select an Azure Premium Storage account, your operating system and data disks are stored in that storage account
  23. Virtual Machines Documentation https://azure.microsoft.com/en-us/documentation/services/virtual-machines/
  24. Key talking points: Managed disks is a new feature that is cross cutting. You will see different aspects of it when we discuss security and flexibility improvements later in the presentation. Managed disks simplifies scale by taking away the need for the administrator to know about service limits of storage accounts and ensure that IOPS and throughput capabilities are easy to understand. Managed disks also integrate directly with virtual machine scale sets to automatically scale the front end compute and the backend storage.
  25. Gain visibility and control Get a central view of the security state of all your Azure resources. At a glance, you could verify that the appropriate security controls are in place. And, you could quickly identify any resources that require attention.   Enable secure DevOps Say ‘Yes’ to agility by enabling DevOps with policy-driven recommendations that guide resource owners through the process of implementing required controls – taking the guesswork out of cloud security.   Stay ahead of threats Stay ahead of current and emerging threats with an integrated and analytics-driven approach. Detect actual threats earlier and reduce false alarms.
  26. Key talking points: Today disk management is a fairly complex process. Users must understand service limits of storage accounts and directly manage page blobs in one or more storage accounts to ensure they have enough storage capacity and IOPs. Availability is also an issue as a storage account could potentially be a single point of failure. Managed disks solves the availability problem by ensuring the disks are created on physically separate stamps of storage when provisioned with VMs in an availability set.
  27. Key talking points: Improved diagnostics and the Network Watcher service will enable monitoring and diagnostics at the network level for virtual machines. These capabilities spread across the spectrum of resource health monitoring, metrics and alerting, diagnostic APIs, a new network monitoring service. Everything geared towards providing you the ability to monitor and diagnose your network infrastructure in Azure.   VPN Gateway and Tunnel Health We are announcing the addition of Virtual Private Network (VPN) Gateway and VPN Tunnel resource health, this will provide you real time health information about these resources to gain actionable information on health and outages related to your resource. Application Gateway Metrics We are announcing server performance metrics for Application Gateway, this metric will provide you an aggregated view of the health of your gateway hosts. Enabling you to get a single unified view with total request count, average latency, total failed request count, total throughput, min of unhealthy and healthy host count.   NSG and UDR Diagnostics   We are also glad to announce improvements to Network Security Group (NSG) and User-Defined Routes (UDR) diagnostics, to troubleshoot network traffic flows on your Virtual Machine (VM)/Network Interface Card (NIC). You can now view all the effective security rules impacting a given VM/NIC, irrespective of whether the NSGs are applied at NIC and/or Subnet. You can also view the full list of effective routes, including system routes, impacting given NIC traffic. All of these APIs will be available in Azure Resource Manager (ARM) and can be managed via REST APIs, .NET SDK, PowerShell cmdlets, command-line interface and Azure portal. Learn more about NSG and UDR diagnostics. Learn more about NSG and UDR Diagnostics .   Network Watcher We are also pleased to announce Network Watcher, a service that will enable you to monitor and diagnose conditions at a network scenario level, besides the above mentioned resource level monitoring and diagnostics capabilities. Network diagnostic and visualization tools available with Network Watcher will enable you to take packet captures on a Virtual Machine (VM), help you understand if an IP flow is allowed or denied on your VM, find where your packet will be routed from a VM and gain insights to your network topology. Packet capture capability available to you in Network Watcher will help you diagnose network fault conditions, to monitor your network for security and compliance needs. You will be able fine tune your packet captures by specifying the protocol (TCP, UDP or both), IP address and port ranges, size of capture and storage location to save the capture.  Packet captures are stored in a standard PCAP file format to facilitate usage of third party tools to analyze the output. You can store these captures either on the attached VM disk or specify your own blob storage location.   Network watcher comes with a tight integration with existing Azure services like OMS. You can now configure OMS hub as one of the destination for storing metric and logs, this will enable you to utilize the existing capabilities of OMS to do analyze and present your metrics and logs.
  28. Key talking points: Today for all Internet facing Virtual Machines that have two or more instances deployed in the same Availability Set, we guarantee you will have external connectivity at least 99.9% of the time. Azure will offer a service level agreement for a single virtual machine when the virtual machine is deployed with SSD backed premium storage.