EPISODE · May 23, 2026 · 23 MIN
Keys to the Kingdom, Part Two: Building the Vault the Right Way
from Dark Perimeter: True Cybersecurity Stories
Part Two of the Azure Key Vault series goes into the architecture. The specific decisions. The configuration that separates a deployment that is genuinely secure from one that looks right on a diagram but has gaps. Cole Drayden covers: provisioning and naming conventions that matter, why Azure RBAC at the secret scope is the right access model and how to implement it, managed identity wiring in implementation detail, soft delete and purge protection, diagnostic logging configuration and the queries that prove it works, network access control and the case for private endpoints, infrastructure as code as a security control, secret rotation in practice, and the six most common Key Vault misconfigurations. Closes with the complete sign-off checklist for CISO acceptance — and the case for why AI service credentials are a new category of high-value secret that deserve the same rigor as your most sensitive organizational credentials. Dark Perimeter: Security, AI, and the Edge of What's Coming.Support the show
Embed this episode
What this episode covers
Part Two of the Azure Key Vault series goes into the architecture. The specific decisions. The configuration that separates a deployment that is genuinely secure from one that looks right on a diagram but has gaps. Cole Drayden covers: provisioning and naming conventions that matter, why Azure RBAC at the secret scope is the right access model and how to implement it, managed identity wiring in implementation detail, soft delete and purge protection, diagnostic logging configuration and the ...
NOW PLAYING
Keys to the Kingdom, Part Two: Building the Vault the Right Way
No transcript for this episode yet
Similar Episodes
No similar episodes found.
Similar Podcasts
No similar podcasts found.