Your architecture diagram is not your resilience

Imported from official source

Cybersecurity Classified by Officially

This first article in our resilience series draws on a conversation with Mark Russinovich about how resilience is changing in the AI era and what it takes to continuously validate it at scale.

What surprises me most about resilience failures is how ordinary the drift is. A workload is deployed across availability zones, but a health probe still points to a single dependency. A database supports failover, but the application’s connection string is pinned to one region. Nothing looks broken. The architecture diagram still shows a resilient design even as the operational reality underneath it changes.

For years, resilience was something you set up once: configure disaster recovery, write a runbook, run the occasional failover test. That kept the lights on, but it treated resilience as a project with an end date rather than a property you maintain.

So, when an availability zone or a region has a bad day, the question is not whether a recovery plan exists on paper. It is whether resilience is still true today, and whether the team can prove it.

The dependency that breaks a workload is also changing. On Microsoft’s FY26 Q4 earnings call, Satya Nadella put it plainly: “For whatever reason, if a given model goes away, then you can’t be left high and dry. You need to be able to still continue your cyber operations.”

Traditional disaster recovery planning assumes the critical dependency is infrastructure. Increasingly it is an AI model, an inference endpoint, a retrieval pipeline, or a service operating under capacity constraints. A workload can be perfectly healthy from an infrastructure perspective and still fail its users because that dependency is unavailable, throttled, or economically impractical to run. That dependency rarely appears on the diagram at all.

This is an extract. The publication continues at the source.

Read the original at the source: https://azure.microsoft.com/en-us/blog/your-architecture-diagram-is-not-your-resilience/

Officially imported this from Microsoft Azure’s own source and shows an extract. If you work there, claiming the profile and verifying the domain lets you choose to show the full text here.

Provenance

Organization
Microsoft Azure — imported from official source
Official source
https://azure.microsoft.com/en-us/blog/feed/ RSS
Imported
September 24, 2026 20:00
Versions
1 recorded
Identity
https://azure.microsoft.com/en-us/blog/?p=53956

Officially records where a publication came from, not whether it is true. Imported records are reproduced from an organization's own official source.