From the course: Microsoft Azure Cosmos DB Developer Specialty (DP-420) Cert Prep: 5 Maintain an Azure Cosmos DB Solution by Microsoft Press

Learning objective

- [Instructor] Welcome to Lesson 17: Implement Security for an Azure Cosmos DB Solution. We begin this lesson by choosing between service-managed and customer-managed encryption keys. We'll also configure network-level access control for Cosmos DB, we'll configure data encryption and manage control plane access by using Azure role-based access control or RBAC. After that, we'll turn to data plane access by using Azure Active Directory, and then configure Cross-Origin Resource Sharing or CORS settings. Finally, you'll manage account keys by using Azure Key Vault, implement customer-managed keys for encryption, and implement Always Encrypted. This is a big lesson, so let's get started.

Contents