Please enable JavaScript.
Coggle requires JavaScript to display documents.
Landing Zone Build - Coggle Diagram
Landing Zone Build
Identity and Access Management :checkered_flag:
Integrate AAD with AD DS :checkered_flag:
Deploy Azure AD Connect Sync :check:
Configure Synchronization :check:
Role Assignments :checkered_flag:
Create cloud-only admin accounts :check:
Assign Roles to Landing Zone Builders :check:
Managed Identities :checkered_flag:
Create User-Assigned MIs for Key Vault access :check:
Identity IaaS :checkered_flag:
Deploy AD DS Domain Controller VMs :check:
Network Topology and Connectivity :checkered_flag:
Network Topology :checkered_flag:
Configure peering and Routing :check:
Build VNets :check:
Security :checkered_flag:
Deploy Firewalls/NVAs :check:
Connectivity :checkered_flag:
On-prem to Azure Connectivity :checkered_flag:
Deploy ExpressRoute :check:
Deploy S2S VPN :check:
IaaS to PaaS Connectivity :checkered_flag:
Configure Private Endpoints :check:
VM Remote Access :checkered_flag:
Deploy Azure Bastion :check:
Name Resolution :checkered_flag:
Configure VNet DNS settings :check:
Deploy AD DS DNS :check:
Configure name resolution for Private Endpoints :check:
Security :checkered_flag:
Security Operations :checkered_flag:
Configure Resource Logging :check:
Configure SIEM Integration :check:
Enable Azure Defender for Cloud (basic) :check:
Deploy Vulnerability Mgmt. :check:
Access Control :checkered_flag:
Configure Firewall Rules :check:
Configure Baseline NSG Rules :check:
Configure Conditional Access Baseline Policies :check:
Secure Privileged Access :checkered_flag:
Configure PAM/PIM :check:
Encryption and Key Mgmt :checkered_flag:
Deploy Key Vault Infrastructure :check:
Deploy Disk Encryption Sets :check:
Deploy Keys
Configure Key Access :check:
Configure Key Rotation :check:
EA Setup :checkered_flag:
Configure Roles :check:
Setup Accounts :check:
Create Subscriptions :check:
Azure AD Tenant Creation :check:
Management :checkered_flag:
Inventory and Visibility :checkered_flag:
Configure Azure Monitor :checkered_flag:
Configure Alerting :check:
Configure Logging Sources :check:
Deploy Log Analytics Workspaces :check:
Configure NSG Flow Logs :check:
Configure Network Watcher :check:
Operational Compliance :checkered_flag:
Implement Baseline VM compliance policies :check:
Onboard VMs in patching :check:
Protection and Recovery :checkered_flag:
Backups :checkered_flag:
Onboard Backup Solution :check:
Disaster Recovery :checkered_flag:
Deploy ASR Recovery Vaults :check:
Configure VM replication :check:
Resource Organization :checkered_flag:
Deploy Management Groups :check:
Create and apply Tagging Policy :check:
Governance :checkered_flag:
Cost Management :checkered_flag: :silhouette:
Configure Cost Management Roles :check:
Configure Budgets :check:
Configure Cost Data Exports :check:
Resource Consistency :checkered_flag:
Apply Baseline Resource Policies for VMs :check:
Apply Baseline Policies for Network Topology :check: