• Create and configure network security groups (NSGs) and application security groups (ASGs)
  • Evaluate effective security rules
  • Implement Azure Bastion
  • Configure service endpoints on subnets
  • Configure private endpoints