Securing Azure DevOps

Follow these best practices to avoid any malicious attack on the platform.

  1. Disable the Admin Account on your Container Registry
  2. Authorization
  3. Role-Based Access Control
  4. Enable Azure Defender
  5. Make Use of Content Trust
  6. Build New Container Images
  7. Store sensitive configuration data in an Azure Key Vault
  8. Review Activity Logs for your Container Registry
  9. Use the Firewall