Skip to content

Commit 1c1db74

Browse files
authored
Merge pull request #270692 from ShawnJackson/azure-database-for-postresql-conceptual-articles
[AQ] edit pass: Azure Database for PostreSQL conceptual articles
2 parents 27c193c + e71d280 commit 1c1db74

16 files changed

+755
-650
lines changed

articles/postgresql/flexible-server/concepts-azure-ad-authentication.md

Lines changed: 78 additions & 77 deletions
Large diffs are not rendered by default.
Lines changed: 34 additions & 29 deletions
Original file line numberDiff line numberDiff line change
@@ -1,6 +1,6 @@
11
---
2-
title: Security and compliance certifications
3-
description: Learn about compliance in the Flexible Server deployment option for Azure Database for PostgreSQL - Flexible Server.
2+
title: Security and compliance certifications in Azure Database for PostgreSQL - Flexible Server
3+
description: Learn about compliance in the Flexible Server deployment option for Azure Database for PostgreSQL.
44
author: gennadNY
55
ms.author: gennadyk
66
ms.service: postgresql
@@ -15,43 +15,48 @@ ms.date: 01/23/2024
1515

1616
[!INCLUDE [applies-to-postgresql-flexible-server](../includes/applies-to-postgresql-flexible-server.md)]
1717

18+
Customers experience an increasing demand for highly secure and compliant solutions as they face data breaches along with requests from governments to access online customer information. Important regulatory requirements such as [General Data Protection Regulation (GDPR)](/compliance/regulatory/gdpr) and [Sarbanes-Oxley (SOX)](/compliance/regulatory/offering-sox) make selecting cloud services that help customers achieve trust, transparency, security, and compliance essential.
1819

19-
## Overview of Compliance Certifications on Microsoft Azure
20+
To help customers meet their compliance obligations across regulated industries and markets worldwide, Azure Database for PostgreSQL flexible server builds on the Microsoft Azure compliance offerings to provide rigorous compliance certifications. Azure maintains the largest compliance portfolio in the industry in terms of both breadth (total number of offerings) and depth (number of customer-facing services in the assessment scope).
2021

21-
Customers experience an increasing demand for highly secure and compliant solutions as they face data breaches along with requests from governments to access online customer information. Important regulatory requirements such as the [General Data Protection Regulation (GDPR)](/compliance/regulatory/gdpr) or [Sarbanes-Oxley (SOX)](/compliance/regulatory/offering-sox) make selecting cloud services that help customers achieve trust, transparency, security, and compliance essential. To help customers achieve compliance with national/regional and industry specific regulations and requirements Azure Database for PostgreSQL flexible server build upon Microsoft Azure’s compliance offerings to provide the most rigorous compliance certifications to customers at service general availability.
22-
To help customers meet their own compliance obligations across regulated industries and markets worldwide, Azure maintains the largest compliance portfolio in the industry both in terms of breadth (total number of offerings), as well as depth (number of customer-facing services in assessment scope). Azure compliance offerings are grouped into four segments: globally applicable, US government,
23-
industry specific, and region/country specific. Compliance offerings are based on various types of assurances, including formal certifications, attestations, validations, authorizations, and assessments produced by independent third-party auditing firms, as well as contractual amendments, self-assessments and customer guidance documents produced by Microsoft. More detailed information about Azure compliance offerings is available from the [Trust](https://www.microsoft.com/trust-center/compliance/compliance-overview) Center.
22+
Azure compliance offerings are grouped into four segments: globally applicable, US government, industry specific, and region/country specific. Compliance offerings are based on various types of assurances, including:
23+
24+
- Formal certifications, attestations, validations, authorizations, and assessments produced by independent auditing firms.
25+
- Contractual amendments, self-assessments, and customer guidance documents produced by Microsoft.
26+
27+
More detailed information about Azure compliance offerings is available from the [Microsoft Trust Center](https://www.microsoft.com/trust-center/compliance/compliance-overview).
2428

2529
## Azure Database for PostgreSQL flexible server compliance certifications
2630

27-
Azure Database for PostgreSQL flexible server has achieved a comprehensive set of national/regional and industry-specific compliance certifications in our Azure public cloud to help you comply with requirements governing the collection and use of your data.
31+
Azure Database for PostgreSQL flexible server has achieved a comprehensive set of national/regional and industry-specific compliance certifications in the Azure public cloud. These certifications help you comply with requirements that govern the collection and use of data.
2832

2933
> [!div class="mx-tableFixed"]
30-
> | **Certification**| **Applicable To** |
34+
> | Certification| Applicable to |
3135
> |------------------|-------------------|
32-
> |HIPAA and HITECH Act (U.S.) | Healthcare |
36+
> |HIPAA and HITECH Act (US) | Healthcare |
3337
> | HITRUST | Healthcare |
3438
> | CFTC 1.31 | Financial |
3539
> | DPP (UK) | Media |
36-
> | EU EN 301 549 | Accessibility |
37-
> | EU ENISA IAF | Public and private companies, government entities and not-for-profits |
38-
> | EU US Privacy Shield | Public and private companies, government entities and not-for-profits |
39-
> | SO/IEC 27018 | Public and private companies, government entities and not-for-profits that provides PII processing services via the cloud |
40-
> | EU Model Clauses | Public and private companies, government entities and not-for-profits that provides PII processing services via the cloud |
41-
> | FERPA | Educational Institutions |
42-
> | FedRAMP High | US Federal Agencies and Contractors |
40+
> | EN 301 549 (EU) | Accessibility |
41+
> | ENISA IAF (EU) | Public and private companies, government entities, and nonprofits |
42+
> | EU-US Privacy Shield | Public and private companies, government entities, and nonprofits |
43+
> | ISO/IEC 27018 | Public and private companies, government entities, and nonprofits that provide processing services for personal data via the cloud |
44+
> | EU Model Clauses | Public and private companies, government entities, and nonprofits that provide processing services for personal data via the cloud |
45+
> | FERPA | Educational institutions |
46+
> | FedRAMP High | US federal agencies and contractors |
4347
> | GLBA | Financial |
44-
> | ISO 27001:2013 | Public and private companies, government entities and not-for-profits |
45-
> | Japan My Number Act | Public and private companies, government entities and not-for-profits |
48+
> | ISO 27001:2013 | Public and private companies, government entities, and nonprofits |
49+
> | My Number Act (Japan) | Public and private companies, government entities, and nonprofits |
4650
> | TISAX | Automotive |
47-
> | NEN Netherlands 7510 | Healthcare |
48-
> | NHS IG Toolkit UK | Healthcare |
49-
> | BIR 2012 Netherlands | Public and private companies, government entities and not-for-profits |
50-
> | PCI DSS Level 1 | Payment processors and Financial |
51-
> | SOC 2 Type 2 | Public and private companies, government entities and not-for-profits |
52-
> | Sec 17a-4 | Financial |
53-
> | Spain DPA | Public and private companies, government entities and not-for-profits |
54-
55-
## Next Steps
56-
* [Azure Compliance on Trusted Cloud](https://azure.microsoft.com/explore/trusted-cloud/compliance/)
57-
* [Azure Trust Center Compliance](https://www.microsoft.com/en-us/trust-center/compliance/compliance-overview)
51+
> | NEN 7510 (Netherlands) | Healthcare |
52+
> | NHS IG Toolkit (UK) | Healthcare |
53+
> | BIR 2012 (Netherlands) | Public and private companies, government entities, and nonprofits |
54+
> | PCI DSS Level 1 | Payment processors and financial |
55+
> | SOC 2 Type 2 | Public and private companies, government entities, and nonprofits |
56+
> | SEC 17a-4 | Financial |
57+
> | Spanish DPA | Public and private companies, government entities, and nonprofits |
58+
59+
## Next steps
60+
61+
- [Azure compliance](https://azure.microsoft.com/explore/trusted-cloud/compliance/)
62+
- [Managing compliance in the cloud (Microsoft Trust Center)](https://www.microsoft.com/en-us/trust-center/compliance/compliance-overview)

0 commit comments

Comments
 (0)