Introduction
You can use Microsoft Defender for Cloud to assess the security configuration of your Azure virtual machine (VM) resources and the Windows Server operating system (OS) that’s running on each VM.
Scenario
Contoso is a medium-size financial services company in London with a branch office in New York. Contoso’s workloads run on virtual machines on Windows Server 2016 Hyper-V hosts. Contoso IT staff are in the process of migrating Contoso virtual machines and Hyper-V servers to Windows Server 2025.
Contoso’s IT director realizes that Contoso has an outdated operational model with limited automation and reliance on dated technology. The Contoso IT Engineering team is exploring Azure capabilities. They want to determine whether Azure services might assist with modernizing the current operational model through automation and virtualization.
As part of the initial design, the Contoso IT team asked you, their lead system engineer and server administrator, to set up a proof of concept environment. This environment must verify whether Azure services can help to modernize the IT infrastructure and meet business goals.
Securing VM resources both in Azure and on-premises is important to the IT staff at Contoso. In this module, you learn about Microsoft Defender for Cloud, Defender for Servers, and how to protect Windows Server computers in hybrid environments by using Azure Arc, Microsoft Defender for Endpoint, and Microsoft Defender Vulnerability Management. You’ll also learn about Microsoft Sentinel, security information and event management (SIEM), and security orchestration, automation, and response (SOAR).