defender for cloud

  1. Auto Agent Upgrade for Azure Arc: Policy-driven CMA updates (Public Preview)

    Microsoft has quietly moved another piece of hybrid management from "manual chore" to "policy-driven automation" with the public preview of Auto Agent Upgrade for Azure Arc–enabled servers — a feature that will automatically keep the Azure Connected Machine agent current across on‑premises...
  2. In-Place Trusted Launch Upgrades for Azure VMs and VMSS: Prereqs, Rollout, Risks

    Microsoft has started letting organizations turn on Trusted Launch for many existing Azure virtual machines and scale sets without rebuilding images or redeploying workloads — a move that lowers the operational bar for platform-rooted boot security while introducing a set of important...
  3. Azure Arc for Hyper-V: Practical Onboarding, VM Integration, and Trade-offs

    Azure Arc gives Hyper‑V administrators a new, cloud‑centric management plane that complements — not replaces — established tools like System Center Virtual Machine Manager (SCVMM), Windows Admin Center (WAC), Hyper‑V Manager and PowerShell, and this guide walks through practical onboarding...
  4. Trusted Launch in Azure: In-Place Upgrades for Secure Boot and vTPM

    Microsoft’s recent push to make Trusted Launch easier to adopt across Azure virtual infrastructure is a practical — and overdue — step toward raising the cloud security baseline for many organizations, but the rollout contains important caveats that IT teams must understand before flipping the...
  5. Enable Trusted Launch in-Place for Azure VMs: Secure Boot and vTPM

    Microsoft has quietly made one of the most practical security upgrades for Azure virtual infrastructure far easier to adopt: Trusted Launch can now be enabled in-place for many existing VMs and scale sets, reducing the migration friction that has kept foundational boot security from reaching...
  6. Azure Arc and Azure Update Manager: The WSUS Replacement for Hybrid Patch Management

    Azure Arc is becoming the practical replacement many enterprises need after Microsoft signaled the deprecation of Windows Server Update Services (WSUS), and for organizations that want to centralize patching across on-premises servers and Azure VMs the recommended route is to Arc‑enable servers...
  7. Security Copilot: AI-Driven Incident Response for Security Ops

    Microsoft’s Security Copilot arrives at a time when defenders are drowning in alerts, and the product’s promise is simple but consequential: apply generative AI to compress investigation time, automate routine triage, and translate dense telemetry into actionable decisions for security teams and...
  8. Understanding AI Security: Microsoft’s Advanced Solutions Against Emerging Threats

    AI security is evolving at breakneck speed, and what used to be a niche concern has rapidly become a critical enterprise issue. With the integration of artificial intelligence into nearly every facet of business operations—from administrative chatbots to mission-critical decision-making...
  9. Boosting Cloud Security: 8 Best Practices for Microsoft Azure

    As more organizations shift apps and workloads to cloud environments, robust security practices are no longer optional—they’re essential. Microsoft Azure, one of the world’s leading cloud platforms, has continuously evolved its security offerings to address the modern threat landscape. In this...
  10. Microsoft and Endor Labs Unite for Enhanced Security in Defender for Cloud

    In an exciting development for the cybersecurity landscape, Endor Labs has teamed up with Microsoft to enhance its Defender for Cloud platform. This collaboration, announced on November 19, 2024, integrates Endor Labs' advanced Software Composition Analysis (SCA) capabilities directly into the...