About This Architecture
Zero-trust network security architecture on Azure with Azure Firewall and Application Gateway for layered traffic inspection, NSGs for micro-segmentation, Key Vault for secrets, Entra ID Conditional Access for identity verification, and Microsoft Defender with Security Center for threat detection. Monitored via Log Analytics. Fork this diagram on Diagrams.so to customize the segmentation zones or add DDoS Protection for your security posture. Source: https://learn.microsoft.com/en-us/azure/architecture/