Course Code: bspazure500
Duration: 21 hours
Prerequisites:

Before attending this accelerated course, you should have experience in:

  • Deploying Azure workloads
  • Windows and Linux operating systems and scripting languages

And an understanding of:

  • Security best practices and industry security requirements such as defence in depth, least privileged access, role-based access control, multi-factor authentication
  • Security protocols such as Virtual Private Networks (VPN), Internet Security Protocol (IPSec), Secure Socket Layer (SSL), disk and data encryption methods

Microsoft also recommend you take the Exam AZ-104.

Overview:

You will learn how to:

  • Implement enterprise governance strategies including role-based access control, Azure policies, and resource locks
  • Implement an Azure AD infrastructure including users, groups, and multi-factor authentication
  • Implement perimeter security strategies including Azure Firewall
  • Implement storage security strategies including shared access signatures, blob retention policies, and Azure Files authentication
Course Outline:
  • Module 1: Manage Identity and Access
    • Lab: Role-Based Access Control
    • Lab: Azure Policy
    • Lab: Resource Manager Locks
    • Lab: MFA, Conditional Access and AAD Identity Protection
    • Lab: Azure AD Privileged Identity Management
    • Lab: Implement Directory Synchronisation
  • Module 2: Implement Platform Protection
    • Lab: Configuring and Securing ACR and AKS
    • Lab: Azure Firewall
    • Lab: Network Security Groups and Application Security Groups
  • Module 3: Secure Data and Applications
    • Lab: Key Vault (Implementing Secure Data by setting up Always Encrypted)
    • Lab: Securing Azure SQL Database
    • Lab: Service Endpoints and Securing Storage
  • Module 4: Manage Security Operations
    • Lab: Azure Sentinel
    • Lab:  Azure Security Centre
    • Lab: Azure Monitor