Session

Network Segmentation & Micro-Segmentation Strategies for Multi-Tier Applications

ne of the most consistent findings in cloud breach post-mortems is the same root cause: a compromised resource had far more network access than it needed. This session addresses that gap directly, focused on practical, implementable segmentation strategies for multi-tier applications.

We start with the "why" — explaining the blast radius concept and how flat networks amplify the impact of a single compromised resource. From there, we build up segmentation patterns layer by layer: using Network Security Groups for baseline traffic control, Application Security Groups for logical grouping that scales better than IP-based rules, and Azure Firewall Policies for centralized, auditable cross-segment traffic control.

Using a representative 3-tier application (web, application, and data layers), we'll design and implement segmentation live — isolating each tier so that a compromise in the web layer cannot directly reach the data layer. We'll test the enforcement in real time, showing blocked and allowed traffic paths. Attendees leave with a segmentation design checklist applicable to their own application architectures, regardless of specific tech stack.

Santhoshkumar Anandakrishnan

Lead Cloud Architect

Melbourne, Australia

Actions

Please note that Sessionize is not responsible for the accuracy or validity of the data provided by speakers. If you suspect this profile to be fake or spam, please let us know.

Jump to top