Azure Core Tenents

Microsoft Privacy Statement

๐Ÿ”น Defines how Microsoft collects, processes, and uses data across Azure services and hardware. ๐Ÿ”น Ensures transparency in handling personal and enterprise data. ๐Ÿ”น Covers data collection, purpose of use, and data retention policies.

Online Services Terms (OST)

๐Ÿ”น Defines the terms of use for Microsoftโ€™s cloud-based services (e.g., Azure, Microsoft 365). ๐Ÿ”น Essential for legal teams to review compliance obligations before adoption. ๐Ÿ”น Ensures businesses understand Microsoftโ€™s responsibilities and liabilities.

Data Protection Amendment (DPA)

๐Ÿ”น Provides details on how Microsoft protects customer data in Azure. ๐Ÿ”น Covers encryption, access controls, and security measures for safeguarding data. ๐Ÿ”น Ensures compliance with GDPR, HIPAA, ISO 27001, and other standards.

Microsoft Trust Center

๐Ÿ”น Centralized dashboard for all security, privacy, and compliance policies related to Azure. ๐Ÿ”น Offers guidance, certifications, and best practices for secure cloud adoption. ๐Ÿ”น Provides insights into threat protection, incident response, and governance.

Azure Compliance Documentation

๐Ÿ”น Contains Azure-specific compliance information. ๐Ÿ”น Covers industry and regional regulations applicable to Azure services. ๐Ÿ”น Ensures organizations can meet security frameworks like ISO 27001, PCI-DSS, and FedRAMP.

๐Ÿ“Œ Note: Other compliance frameworks apply across multiple cloud providers, but Azure Compliance Documents focus only on Azure-specific regulations.

Azure Sovereign Regions

๐Ÿ”น Designed for specific government and regional compliance needs. ๐Ÿ”น Operated separately from public Azure regions to meet data sovereignty requirements.

Examples of Azure Sovereign Cloud Offerings:

โœ… Azure US Government โ€“ Designed for US federal, state, and local agencies. โœ… Azure China โ€“ Operated by 21Vianet to comply with Chinese regulations.

Last updated