Initial security settings for microsoft fabric

Microsoft Fabric integrates comprehensive security measures, including data encryption, access controls, and compliance certifications. It ensures secure data handling and storage across cloud services, safeguarding sensitive information and meeting regulatory requirements. Security features are continuously updated to protect against evolving threats and vulnerabilities.

Here are some security points which are necessary to cross check those are enabled.

Setting NameSetting Description
Azure Private LinkAzure Private Link in Microsoft Fabric ensures private, secure connectivity within the Microsoft backbone network.
Block Public Internet AccessIt prevents exposure of resources to the public internet, enhancing security within Microsoft Fabric.
Users are able to use Copilot and other features powered by Azure OpenAIUsers utilize Copilot and Azure OpenAI in Microsoft Fabric for enhanced productivity and AI-driven insights.
Service principals can use Fabric APIsService principals in Microsoft Fabric enable secure, automated access to Fabric APIs for managing resources.
External data sharing settingExternal data sharing in Microsoft Fabric allows secure, controlled sharing of data outside your organization.
Users can accept external data sharesIt allows users to receive and access shared external data securely within Microsoft Fabric.
Guest users can access Microsoft FabricIt allows external users to collaborate securely on projects within Microsoft Fabric, enhancing teamwork.
Allow shareable links to grant access to everyone in your organizationIt enables shareable links to provide organization-wide access to resources in Microsoft Fabric.
Users can access data stored in OneLake with apps external to FabricIt allows external apps to securely access and utilize data stored in OneLake within Microsoft Fabric.
Role assigned on workspace (Admin, member, and contributor)Role assignments in Microsoft Fabric workspaces manage user permissions and access to specific workspace resources.
Data with sensitivity labelsData with sensitivity labels in Microsoft Fabric helps manage and protect data access based on sensitivity.
Define workspace retention periodDefine workspace retention period in Microsoft Fabric controls how long data is retained before deletion.
Workspace shared with which user or a servicePrincipalSharing a workspace with users or service principals in Microsoft Fabric grants them access to resources.
Items shared and permission capability which are stored with in a workspaceItems shared and permissions in a Microsoft Fabric workspace manage access and collaboration within the workspace.
Guest users can view and navigate specific shared content within Microsoft FabricGuest users can access and navigate specific shared content in Microsoft Fabric without full system access.
Guest users have broader access to use the platform’s features and possibly create contentGuest users in Microsoft Fabric can access more features and create content, enhancing collaboration and flexibility.
Block ResourceKey AuthenticationBlock ResourceKey Authentication prevents unauthorized access by blocking unauthorized requests using resource keys in Microsoft Fabric.
Internal users can invite guest users to collaborate through item sharing and permissionsInternal users can invite guests to collaborate by sharing items and managing permissions in Microsoft Fabric.
Dremio SSOSingle Sign-On integration for accessing Dremio using Microsoft credentials.
Snowflake SSOSingle Sign-On integration for accessing Snowflake using Microsoft credentials.
Redshift SSOSingle Sign-On integration for accessing Amazon Redshift using Microsoft credentials.
Google BigQuery SSOSingle Sign-On integration for accessing Google BigQuery using Microsoft credentials.
For more security points check this fabric tenant setting api: Tenants – List Tenant Settings – REST API (Admin) | Microsoft Learn