Storage Layer Access Control: Detail the access structure, focusing on the hierarchy of Storage Accounts, Containers, and Folders, and how each layer is assigned specific user groups based on data access needs.
Role-Based Access Control (RBAC): Explain RBAC usage, such as granting Storage Blob Data Reader and Contributor roles at appropriate levels.
Access Control Lists (ACLs): If ACLs are used at the folder level, discuss how they are applied to restrict access, ensuring that users only see authorised folders within a container.
Data Security: Include encryption at rest, any integration with Active Directory, and conditional access policies.