Implement security for servers and virtual machines - Part 2
Details
In Part 2 of our server and virtual machine security series, we move beyond protecting Azure-native virtual machines to explore how organizations can extend security, governance, vulnerability management, and threat protection to hybrid and multicloud servers.
This session will focus on two important Microsoft security capabilities:
- Azure Arc-enabled Servers
- Microsoft Defender for Servers
Participants will learn how these technologies can work together to provide centralized visibility, governance, vulnerability management, endpoint protection, and security posture management across Azure, on-premises, and other cloud environments.
About the Session
Modern enterprise infrastructure rarely exists entirely within one cloud platform.
Organizations often operate a combination of:
- Azure virtual machines
- On-premises Windows and Linux servers
- Servers hosted in other cloud providers
- Legacy infrastructure
- Hybrid applications and workloads
This creates an important security challenge: How do you consistently govern and protect servers regardless of where they are running?
Azure Arc allows organizations to extend Azure management and governance capabilities to servers running outside Azure, while Microsoft Defender for Servers provides workload protection, vulnerability assessment, endpoint detection, and security monitoring.
During this session, we will explore how Cloud and AI Security Engineers can combine these technologies to build a more consistent security architecture across a distributed server estate.
What You Will Learn
By the end of this session, participants should understand how to:
- Explain the role of Azure Arc in hybrid and multicloud security
- Bring non-Azure servers under Azure governance
- Apply Azure RBAC to Arc-enabled servers
- Protect Azure Arc extensions from unauthorized changes
- Configure extension allow and block lists
- Apply Azure Policy to hybrid servers
- Use Machine Configuration to enforce operating system security baselines
- Monitor hybrid server security posture through Microsoft Defender for Cloud
- Compare Defender for Servers Plan 1 and Plan 2
- Onboard Azure VMs and Arc-enabled servers to Defender for Servers
- Configure vulnerability assessment
- Integrate Defender for Endpoint with server workloads
- Understand agentless machine scanning
- Monitor software inventory and vulnerabilities
- Detect exposed secrets and malware
- Configure File Integrity Monitoring
- Apply defense-in-depth principles to hybrid and multicloud servers
Who Should Attend?
This session is ideal for:
- Participants in the Cloud and AI Security Bootcamp
- Cloud Security Engineers
- Azure Security Engineers
- System Administrators
- Windows and Linux Server Administrators
- Infrastructure Engineers
- Cloud Architects
- Security Architects
- SOC Analysts
- Microsoft Defender administrators
- Azure Arc administrators
- Hybrid Cloud Engineers
- DevSecOps Engineers
- Security Operations professionals
- Professionals preparing for the SC-500 certification
- Anyone responsible for securing enterprise servers and virtual machines
Why You Should Attend
Enterprise server environments are becoming increasingly distributed.
Security teams can no longer rely on separate management and protection strategies for every environment. Organizations need a consistent security approach capable of protecting:
- Azure virtual machines
- On-premises servers
- Hybrid infrastructure
- Servers running in other clouds
This session will demonstrate how Azure Arc, Azure Policy, Microsoft Defender for Cloud, Microsoft Defender for Servers, Microsoft Defender Vulnerability Management, and Microsoft Defender for Endpoint can work together to provide unified governance and security across a distributed server estate.
Whether you are administering infrastructure, designing hybrid cloud environments, working in security operations, or preparing for the SC-500 Cloud and AI Security Engineer certification, this session will help strengthen your practical understanding of modern server security.
Come ready to learn, ask questions, and deepen your knowledge of securing hybrid and multicloud infrastructure.
Learn. Connect. Protect. Secure the Hybrid Cloud.
