Azure API Management should have a virtual network configured to ensure that any backend service access is handled securely.
In Azure Console -
In Terraform -
References:
https://learn.microsoft.com/en-us/azure/api-management/virtual-network-concepts?tabs=stv2
https://registry.terraform.io/providers/hashicorp/azurerm/latest/docs/resources/api_management#virtual_network_type