This is a recorded version of a presentation reviewing considerations and best practices for planning a secure and scalable Power BI Enterprise Architecture. This full-length version of the presentation reviews Securing Power BI Tools such as Power BI Desktop and Gateways, planning Azure Active Directory based authentication and Workspace Architectures, Row Level Security (RLS) and Object Level Security (OLS), Microsoft Information Protection (MIP), Microsoft Cloud App Security (MCAS), vNets / Private Links and Azure Data Lake integration.
Chapters:
0:00 Introduction
0:29 Sensitive Data Scope
1:36 Agenda & Security Overview Links
2:20 Secure Power BI Tools (Desktop, Gateways, etc)
8:20 Identity Management via AAD and Security Groups
11:35 Workspace-based Security Architectures
15:00 Build, Read, Re-Share Permissions
16:57 My Workspace Security Considerations
18:27 Row Level Security
23:00 Object Level Security
24:30 Data Source Credentials (SSO vs Stored)
26:50 Microsoft Information Protection and Cloud App Security
29:11 vNet and Private Links
30:04 Azure Data Lake Integration
32:09 Examples of Protection when Mistakes Happen
34:16 Example Solution Architectures using Available Tools