Azure IaaS: Defense in depth built on secure-by-design principles

By Dustin Ward

In this article Defense in depth as a system Secure by design: Engineering security into the platform Hardware and host-level trust Virtual machine-layer trust Secure by default: Protection enabled without friction Secure defaults across networking Encryption and data protection by default Compute protection defaults Secure in operation: Continuous protection at runtime Monitoring, detection, and signal…

Enforcing trust and transparency: Open-sourcing the Azure Integrated HSM

By Dustin Ward

As cloud workloads become more agentic and AI systems increasingly handle mission‑critical data, trust must be engineered into the infrastructure at every layer. At Microsoft, security is designed into the foundation of our cloud infrastructure, from silicon to services. With the Azure Integrated Hardware Security Module (HSM), Microsoft is redefining how cryptographic trust is delivered…