Ensure that outbound traffic is restricted to only that which is necessary, and all other traffic denied

Network Security groups provide stateful filtering of ingress/egress network traffic to Azure resources. It is recommended that no security group allows unrestricted egress access