Skip to content

Commit e258215

Browse files
Merge pull request #311755 from msmbaldwin/update-mcsb-v2-refs
Update MCSB references to v2 and add SFI links
2 parents aa353d2 + 555e158 commit e258215

6 files changed

Lines changed: 83 additions & 65 deletions

articles/security/fundamentals/best-practices-and-patterns.md

Lines changed: 13 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -55,3 +55,16 @@ The [Microsoft cloud security benchmark (MCSB)](/security/benchmark/azure/introd
5555
- **Assess AI workloads**: Review the new Artificial Intelligence Security controls in Microsoft Cloud Security Benchmark v2 (preview) if deploying AI/ML workloads to ensure proper platform, application, and monitoring security
5656

5757
For a complete collection of high-impact security recommendations, see the [Microsoft cloud security benchmark](/security/benchmark/azure/introduction).
58+
59+
### Microsoft Secure Future Initiative (SFI)
60+
61+
The [Microsoft Secure Future Initiative (SFI)](/security/zero-trust/sfi/secure-future-initiative-overview) is a multiyear initiative that advances the way Microsoft designs, builds, tests, and operates its technology. SFI provides security best practices based on six engineering pillars aligned with Zero Trust principles and the NIST Cybersecurity Framework 2.0:
62+
63+
- **Protect identities and secrets**: Phishing-resistant MFA, managed identities, and centralized secrets management
64+
- **Protect tenants and isolate systems**: Strong tenant isolation and configuration governance
65+
- **Protect networks**: Granular network segmentation and identity-aware connectivity
66+
- **Protect engineering systems**: Secure software development lifecycle and supply chain protection
67+
- **Monitor and detect threats**: Unified telemetry and threat analytics
68+
- **Accelerate response and remediation**: Automated incident response and continuous learning
69+
70+
For guidance on adopting SFI best practices in your organization, see [Adopt Secure Future Initiative best practices](/security/zero-trust/sfi/secure-future-initiative-adoption).

articles/security/fundamentals/customer-lockbox-overview.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -151,7 +151,7 @@ Customer Lockbox request history, please use the Activity Log for subscription-s
151151

152152
## Customer Lockbox for Microsoft Azure integration with the Microsoft cloud security benchmark
153153

154-
We introduced a new baseline control ([PA-8: Determine access process for cloud provider support](/security/benchmark/azure/mcsb-privileged-access#pa-8-determine-access-process-for-cloud-provider-support)) in the Microsoft cloud security benchmark that covers Customer Lockbox applicability. Customers can now use the benchmark to review Customer Lockbox applicability for a service.
154+
We introduced a new baseline control ([PA-8: Determine access process for cloud provider support](/security/benchmark/azure/mcsb-v2-privileged-access#pa-8-determine-access-process-for-cloud-provider-support)) in the Microsoft cloud security benchmark that covers Customer Lockbox applicability. Customers can now use the benchmark to review Customer Lockbox applicability for a service.
155155

156156
## Exclusions
157157

0 commit comments

Comments
 (0)