Azure Backup Center - Backups and Good Governance

Published 05-11-2021 12:00 AM 1,587 Views
Microsoft

Hello folks,

 

Today, there is increased scrutiny and demand for oversight on your data.  Furthermore, the requirements dictated by laws and regulations present a growing set of challenges to your organisation.

 

For example, the ISO/IEC 27001:2013(E) Information technology — Security techniques — Information security management systems — Requirements states in section A.12.3.1

 

“Backup copies of information, software and system images shall be taken and tested regularly in accordance with an agreed backup policy.”

 

abc govern 1.png

Therefore, if your enterprise is subject to that standard or is in the process of obtaining certification, you’ll need to prove to auditors that you have a process to validate compliance and remediate outliers.  Azure Backup Center (ABC) gives you those capabilities.

 

**Please consult your compliance officer for information on the requirements your enterprise is subject to.

 

 

ABC on top of providing you a way to see all the Protectable Datasources that remain unprotected, provides you with a single location to define, assign and track Azure policies for backup across all your supported resources in Azure. Bringing your organization to your desired backup goal state through seamless integration with Azure Policy. Azure Policy allows you to track compliance against policies and create remediations when resources get “Non-compliant”.

 

abc govern 2.png

Because ABC integrates so well with Azure Policy you can define and assign different policy to different scopes.  When going through the assignment process, you’ll be able to:

 

  • Select the scope.
  • pick a management group,
  • or select a specific subscription,
  • and optionally select a resource group.

 

abc govern 3.png

 

 

There are multiple built-in policies to cover backups, and multiple effects defined in these policies.  You need to decide what to do with your non-compliant resources.  Your compliance officer will help with this.  Each possible response to a non-compliant resource is called an effect. The effect controls if the non-compliant resource is logged, blocked, has data appended, or has a deployment associated to it for putting the resource back into a compliant state.  That way you have the control to verify compliance without making any changes.  At least you know where you stand.

 

The code for these policies are stored in Github, you can fork that repo and modify the policies to make your own as you please.

There you go.  The Azure Backup Center gives you the tools to protect your environment, to maintain and govern that protection across all your environments.

 

For more information, please see the documentation on docs.microsoft.com or using the links below.

 

 

And as always,

 

Cheers!

%3CLINGO-SUB%20id%3D%22lingo-sub-2318843%22%20slang%3D%22en-US%22%3EAzure%20Backup%20Center%20-%20Backups%20and%20Good%20Governance%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2318843%22%20slang%3D%22en-US%22%3E%3CP%3EHello%20folks%2C%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EToday%2C%20there%20is%20increased%20scrutiny%20and%20demand%20for%20oversight%20on%20your%20data.%26nbsp%3B%20Furthermore%2C%20the%20requirements%20dictated%20by%20laws%20and%20regulations%20present%20a%20growing%20set%20of%20challenges%20to%20your%20organisation.%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EFor%20example%2C%20the%20%3CEM%3EISO%2FIEC%2027001%3A2013(E)%20Information%20technology%20%E2%80%94%20Security%20techniques%20%E2%80%94%20Information%20security%20management%20systems%20%E2%80%94%20Requirements%3C%2FEM%3E%20states%20in%20section%20A.12.3.1%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%20class%3D%22lia-align-center%22%3E%E2%80%9CBackup%20copies%20of%20information%2C%20software%20and%20system%20images%20shall%20be%20taken%20and%20tested%20regularly%20in%20accordance%20with%20an%20agreed%20backup%20policy.%E2%80%9D%3C%2FP%3E%0A%3CP%20class%3D%22lia-align-left%22%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%3CSPAN%20class%3D%22lia-inline-image-display-wrapper%20lia-image-align-center%22%20image-alt%3D%22abc%20govern%201.png%22%20style%3D%22width%3A%20999px%3B%22%3E%3CIMG%20src%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fimage%2Fserverpage%2Fimage-id%2F277548iB50FAD0F28F6DDA8%2Fimage-size%2Flarge%3Fv%3Dv2%26amp%3Bpx%3D999%22%20role%3D%22button%22%20title%3D%22abc%20govern%201.png%22%20alt%3D%22abc%20govern%201.png%22%20%2F%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%E2%80%83%3C%2FP%3E%0A%3CP%3ETherefore%2C%20if%20your%20enterprise%20is%20subject%20to%20that%20standard%20or%20is%20in%20the%20process%20of%20obtaining%20certification%2C%20you%E2%80%99ll%20need%20to%20prove%20to%20auditors%20that%20you%20have%20a%20process%20to%20validate%20compliance%20and%20remediate%20outliers.%26nbsp%3B%20Azure%20Backup%20Center%20(ABC)%20gives%20you%20those%20capabilities.%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%3CEM%3E**Please%20consult%20your%20compliance%20officer%20for%20information%20on%20the%20requirements%20your%20enterprise%20is%20subject%20to.%3C%2FEM%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%3CEM%3E%3C%2FEM%3E%3C%2FP%3E%3CDIV%20class%3D%22video-embed-center%20video-embed%22%3E%3CIFRAME%20class%3D%22embedly-embed%22%20src%3D%22https%3A%2F%2Fcdn.embedly.com%2Fwidgets%2Fmedia.html%3Fsrc%3Dhttps%253A%252F%252Fwww.youtube.com%252Fembed%252Fm0FyPQm_HOo%253Ffeature%253Doembed%26amp%3Bdisplay_name%3DYouTube%26amp%3Burl%3Dhttps%253A%252F%252Fwww.youtube.com%252Fwatch%253Fv%253Dm0FyPQm_HOo%26amp%3Bimage%3Dhttps%253A%252F%252Fi.ytimg.com%252Fvi%252Fm0FyPQm_HOo%252Fhqdefault.jpg%26amp%3Bkey%3Db0d40caa4f094c68be7c29880b16f56e%26amp%3Btype%3Dtext%252Fhtml%26amp%3Bschema%3Dyoutube%22%20width%3D%22600%22%20height%3D%22337%22%20scrolling%3D%22no%22%20title%3D%22YouTube%20embed%22%20frameborder%3D%220%22%20allow%3D%22autoplay%3B%20fullscreen%22%20allowfullscreen%3D%22true%22%3E%3C%2FIFRAME%3E%3C%2FDIV%3E%3CP%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EABC%20on%20top%20of%20providing%20you%20a%20way%20to%20see%20all%20the%20%3CA%20href%3D%22https%3A%2F%2Fdocs.microsoft.com%2Fazure%2Fbackup%2Fbackup-center-govern-environment%3FWT.mc_id%3Dmodinfra-19990-pierrer%23protectable-datasources%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noreferrer%22%3EProtectable%20Datasources%3C%2FA%3E%20that%20remain%20unprotected%2C%20provides%20you%20with%20a%20single%20location%20to%20define%2C%20assign%20and%20track%20Azure%20policies%20for%20backup%20across%20all%20your%20%3CA%20href%3D%22https%3A%2F%2Fdocs.microsoft.com%2Fazure%2Fbackup%2Fbackup-center-support-matrix%3FWT.mc_id%3Dmodinfra-19990-pierrer%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noreferrer%22%3Esupported%20resources%20in%20Azure%3C%2FA%3E.%20Bringing%20your%20organization%20to%20your%20desired%20backup%20goal%20state%20through%20seamless%20integration%20with%20Azure%20Policy.%20Azure%20Policy%20allows%20you%20to%20track%20compliance%20against%20policies%20and%20create%20remediations%20when%20resources%20get%20%E2%80%9CNon-compliant%E2%80%9D.%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%3CSPAN%20class%3D%22lia-inline-image-display-wrapper%20lia-image-align-center%22%20image-alt%3D%22abc%20govern%202.png%22%20style%3D%22width%3A%20999px%3B%22%3E%3CIMG%20src%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fimage%2Fserverpage%2Fimage-id%2F277550i0C812201DA85986C%2Fimage-size%2Flarge%3Fv%3Dv2%26amp%3Bpx%3D999%22%20role%3D%22button%22%20title%3D%22abc%20govern%202.png%22%20alt%3D%22abc%20govern%202.png%22%20%2F%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%E2%80%83%3C%2FP%3E%0A%3CP%3EBecause%20ABC%20integrates%20so%20well%20with%20Azure%20Policy%20you%20can%20define%20and%20assign%20different%20policy%20to%20different%20scopes.%26nbsp%3B%20When%20going%20through%20the%20assignment%20process%2C%20you%E2%80%99ll%20be%20able%20to%3A%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CUL%3E%0A%3CLI%3ESelect%20the%20scope.%3C%2FLI%3E%0A%3CLI%3Epick%20a%20management%20group%2C%3C%2FLI%3E%0A%3CLI%3Eor%20select%20a%20specific%20subscription%2C%3C%2FLI%3E%0A%3CLI%3Eand%20optionally%20select%20a%20resource%20group.%3C%2FLI%3E%0A%3C%2FUL%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%3CSPAN%20class%3D%22lia-inline-image-display-wrapper%20lia-image-align-center%22%20image-alt%3D%22abc%20govern%203.png%22%20style%3D%22width%3A%20999px%3B%22%3E%3CIMG%20src%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fimage%2Fserverpage%2Fimage-id%2F277551i26A2F9C71A1F29C5%2Fimage-size%2Flarge%3Fv%3Dv2%26amp%3Bpx%3D999%22%20role%3D%22button%22%20title%3D%22abc%20govern%203.png%22%20alt%3D%22abc%20govern%203.png%22%20%2F%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EThere%20are%20multiple%20%3CA%20href%3D%22https%3A%2F%2Fdocs.microsoft.com%2Fazure%2Fbackup%2Fpolicy-reference%3FWT.mc_id%3Dmodinfra-19990-pierrer%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noreferrer%22%3Ebuilt-in%20policies%20to%20cover%20backups%3C%2FA%3E%2C%20and%20multiple%20effects%20defined%20in%20these%20policies.%26nbsp%3B%20You%20need%20to%20decide%20what%20to%20do%20with%20your%20non-compliant%20resources.%26nbsp%3B%20Your%20compliance%20officer%20will%20help%20with%20this.%26nbsp%3B%20Each%20possible%20response%20to%20a%20non-compliant%20resource%20is%20called%20an%20%3CA%20href%3D%22https%3A%2F%2Fdocs.microsoft.com%2Fazure%2Fgovernance%2Fpolicy%2Fconcepts%2Feffects%3FWT.mc_id%3Dmodinfra-19990-pierrer%23disabled%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noreferrer%22%3Eeffect%3C%2FA%3E.%20The%20effect%20controls%20if%20the%20non-compliant%20resource%20is%20logged%2C%20blocked%2C%20has%20data%20appended%2C%20or%20has%20a%20deployment%20associated%20to%20it%20for%20putting%20the%20resource%20back%20into%20a%20compliant%20state.%26nbsp%3B%20That%20way%20you%20have%20the%20control%20to%20verify%20compliance%20without%20making%20any%20changes.%26nbsp%3B%20At%20least%20you%20know%20where%20you%20stand.%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EThe%20code%20for%20these%20policies%20are%20stored%20in%20%3CA%20href%3D%22https%3A%2F%2Fgithub.com%2FAzure%2Fazure-policy%2Ftree%2Fmaster%2Fbuilt-in-policies%2FpolicyDefinitions%2FBackup%3FWT.mc_id%3Dmodinfra-19990-pierrer%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noreferrer%22%3EGithub%3C%2FA%3E%2C%20you%20can%20fork%20that%20repo%20and%20modify%20the%20policies%20to%20make%20your%20own%20as%20you%20please.%3C%2FP%3E%0A%3CP%3EThere%20you%20go.%26nbsp%3B%20The%20Azure%20Backup%20Center%20gives%20you%20the%20tools%20to%20protect%20your%20environment%2C%20to%20maintain%20and%20govern%20that%20protection%20across%20all%20your%20environments.%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EFor%20more%20information%2C%20please%20see%20the%20documentation%20on%20%3CA%20href%3D%22https%3A%2F%2Fdocs.microsoft.com%2Fazure%2Fbackup%2Fbackup-center-govern-environment%3FWT.mc_id%3Dmodinfra-19990-pierrer%23protectable-datasources%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noreferrer%22%3Edocs.microsoft.com%3C%2FA%3E%20or%20using%20the%20links%20below.%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CUL%3E%0A%3CLI%3E%3CA%20href%3D%22https%3A%2F%2Fdocs.microsoft.com%2Fazure%2Fbackup%2Fbackup-center-govern-environment%3FWT.mc_id%3Dmodinfra-19990-pierrer%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noreferrer%22%3EGovern%20your%20backup%20estate%20using%20Backup%20Center%3C%2FA%3E%3C%2FLI%3E%0A%3CLI%3E%3CA%20href%3D%22https%3A%2F%2Fdocs.microsoft.com%2Fazure%2Fbackup%2Fpolicy-reference%3FWT.mc_id%3Dmodinfra-19990-pierrer%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noreferrer%22%3EAzure%20Policy%20built-in%20definitions%20for%20Azure%20Backup%3C%2FA%3E%3C%2FLI%3E%0A%3CLI%3E%3CA%20href%3D%22https%3A%2F%2Fdocs.microsoft.com%2Fazure%2Fgovernance%2Fpolicy%2F%3FWT.mc_id%3Dmodinfra-19990-pierrer%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noreferrer%22%3EAzure%20Policy%20documentation%3C%2FA%3E%3C%2FLI%3E%0A%3C%2FUL%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EAnd%20as%20always%2C%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CUL%3E%0A%3CLI%3ELearn%20more%20and%20get%20started%20with%26nbsp%3B%3CA%20href%3D%22https%3A%2F%2Fdocs.microsoft.com%2Fazure%2Fbackup%2Fbackup-center-overview%3FWT.mc_id%3Dmodinfra-19990-pierrer%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noreferrer%22%3EBackup%20center%3C%2FA%3E.%3C%2FLI%3E%0A%3CLI%3ETell%20us%20how%20we%20can%26nbsp%3B%3CA%20href%3D%22https%3A%2F%2Ffeedback.azure.com%2Fforums%2F258995-azure-backup%3FWT.mc_id%3Dmodinfra-19990-pierrer%22%20target%3D%22_blank%22%20rel%3D%22nofollow%20noopener%20noreferrer%22%3Eimprove%20Azure%20Backup%3C%2FA%3E%26nbsp%3Bby%20contributing%20new%20ideas%20and%20voting%20up%20existing%20ones%20in%20the%20Azure%20Backup%20feedback%20forum.%3C%2FLI%3E%0A%3CLI%3EWrite%20to%26nbsp%3B%3CA%20href%3D%22mailto%3Amailto%3AAskAzureBackupTeam%40microsoft.com%22%20target%3D%22_blank%22%20rel%3D%22nofollow%20noopener%20noreferrer%22%3EAskAzureBackupTeam%40microsoft.com%3C%2FA%3E%26nbsp%3Bfor%20preview%20sign%20ups.%3C%2FLI%3E%0A%3C%2FUL%3E%0A%3CP%3ECheers!%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-TEASER%20id%3D%22lingo-teaser-2318843%22%20slang%3D%22en-US%22%3E%3CP%3EToday%2C%20there%20is%20increased%20scrutiny%20and%20demand%20for%20oversight%20on%20your%20data.%20Furthermore%2C%20the%20requirements%20dictated%20by%20laws%20and%20regulations%20present%20a%20set%20of%20growing%20challenges%20to%20your%20organization.%26nbsp%3B%26nbsp%3BTherefore%2C%20if%20your%20enterprise%20is%20subject%20to%20any%20regulated%20standards%20or%20is%20in%20the%20process%20of%20obtaining%20certification%2C%20you%E2%80%99ll%20need%20to%20prove%20to%20auditors%20that%20you%20have%20a%20process%20to%20validate%20compliance%20and%20remediate%20outliers.%20Azure%20Backup%20Center%20(ABC)%20gives%20you%20those%20capabilities.%3C%2FP%3E%3C%2FLINGO-TEASER%3E%3CLINGO-LABS%20id%3D%22lingo-labs-2318843%22%20slang%3D%22en-US%22%3E%3CLINGO-LABEL%3EAzure%3C%2FLINGO-LABEL%3E%3CLINGO-LABEL%3EAzure%20Backup%20Center%3C%2FLINGO-LABEL%3E%3CLINGO-LABEL%3EPierre%20Roman%3C%2FLINGO-LABEL%3E%3C%2FLINGO-LABS%3E
Co-Authors
Version history
Last update:
‎May 11 2021 12:00 AM
Updated by: