What is the mindset shift required in DevSecOps culture?
Assume breaches as well as prevent them
List key components of a security strategy.
What is the focus of DevSecOps practices?
Improving mean time to detection and mean time to recovery
Why is it important to assume system breaches?
It helps answer critical security questions proactively
What common questions should teams consider regarding security?
What does ‘defense in depth’ involve?
Minimizing exposure to attackers who have breached internal networks
What is a post-breach assessment?
Evaluating performance of security policies after a breach
What are some common threats that need to be mitigated?
Fill in the blank: All secrets must be stored in a _______.
[protected vault]
What is Microsoft Defender for Cloud?
A Cloud Native Application Protection Platform (CNAPP) for securing applications
What are the core components of Defender for Cloud?
What does the term ‘war game exercises’ refer to?
Security testing events where red and blue teams simulate attacks
Who comprises the red team in war game exercises?
Members simulating attackers to find security gaps
Who comprises the blue team in war game exercises?
Members testing their ability to detect and respond to attacks
True or False: War games should be a free-for-all.
False
What should be documented after security risks are identified?
A backlog of repair items
How often should teams practice war games?
Regularly, to enhance security posture and team readiness
What is a key lesson learned from Microsoft’s war games?
Phishing attacks are very effective and should be taken seriously
What is the purpose of the Cloud Security Posture Management (CSPM) component?
To check and improve the security posture of cloud resources
What type of threats does Defender for Storage protect against?
What is the benefit of using a hierarchy of vaults for secret management?
To eliminate duplication of secrets
What should be included in the report presented after a war game?
Lessons learned and vulnerabilities found
What is the role of Microsoft Defender for APIs?
To improve API security posture and detect real-time threats
What is the importance of multi-factor authentication in security?
It helps to limit access and enhance security