We Take Your Suggestions Seriously
Protect the Psychic Cloud sites from DDOS attacks and WAF https://www.cloudflare.com/learning/ddos/glossary/web-application-firewall-waf/#:~:text=A%20WAF%20or%20web%20application,and%20SQL%20injection%2C%20among%20others.
Per Demian from 10/17/2023: Enabling DDoS and WAF protection for the Psychic Cloud admin site would be done by having a provider like Imperva acting as the front-end for the site, and restricting the site in Azure to only allow connections from Imperva. The effort to set this up is relatively small (maybe a half-day from an I&O resource), but the site would need to be thoroughly QA tested to make sure that Imperva’s security controls don’t break any site functionality.