
Christian Colin Askew introduces the Microsoft Azure Security Services course and outlines its structure. He shares over 10 years of information technology experience, cloud and security expertise, and relevant certifications.
Explore Microsoft Azure Security Services, understand the course structure, audience, prerequisites, and hands-on labs, including Azure Defender, Azure Security Center, and an Azure free trial setup, across five sections.
Create a free Azure trial subscription, sign up with a Microsoft account and credit card verification, and use provided pdf and json templates to deploy lab virtual machines.
Explore Azure security services, the shared responsibility model, and how Azure Security Center, Azure Policy, and Azure Blueprints protect assets across identity, network, compute, and data.
Explore Azure virtual networks, their isolation, and on-premises connectivity options like site-to-site, point-to-site, and express route, plus VNet peering for secure, scalable cloud networking.
Explore Azure network access control with NSGs, routing, and security appliances, and secure remote access options such as point-to-site VPN, site-to-site VPN, Express Route, and VNet peering.
Learn how Azure provided name resolution enables single-label hostnames within a network, and how Azure DNS private zones and public zones manage private and public domain resolution with Traffic Manager.
Explore virtual network peering in Azure, covering local and global types, gateway transit, and on-premises connectivity via the Azure backbone for seamless, low-latency networking.
Explore how Azure Network Watcher enables early threat detection through monitoring, packet capture, and logging; combine with Azure Security Center for unified visibility and policy-driven security across resources.
Examine how cloud adoption changes and dynamic cloud environments drive security and operations, covering cloud services, the shared responsibility model, and Azure Defender, Azure Backup, and Azure Log Analytics.
Examine the three cloud service models—saas, paas, and iaas—along with Azure compute, data, application, and network services, and understand the shared responsibility model.
Explain the shared responsibility model for Azure security, detailing Microsoft’s role in physical assets and infrastructure, the customer’s duties for data, VMs, and apps, plus Defender, Backup, and Log Analytics.
Discover how Azure Security Center, now Asia Defender, protects hybrid workloads with policy enforcement and intelligent threat detection. Learn to validate alerts and apply remediation through the portal.
Explore how Azure Defender and Azure Security Center detect a PowerShell-based credential-stealing attack. Implement remediation steps including strong password policies, reducing exposed endpoints, enabling network security groups, and just-in-time access.
Explore how Azure backup guards data against ransomware and human error by backing up file shares to a recovery services vault in Asia, with configurable policies and encryption.
Learn Azure Log Analytics overview, architecture, and log types, and integrate Azure Security Center alerts with Azure Log Analytics for centralized monitoring, querying, and analytics.
Explore Azure Application Gateway's layer seven load balancing, SSL offload, cookie-based session affinity, multi-site hosting, and integrated Web Application Firewall protection with monitoring across Azure Security Center and Log Analytics.
Learn to enable Azure disk encryption for Windows and Linux VMs, manage keys in Azure Key Vault, and secure data at rest and in transit with Always Encrypted and TDE.
Explore how the Azure SQL vulnerability assessment detects security issues, provides baselines, and guides remediation. Apply data security and encryption best practices, including encryption at rest and in transit.
Explore how Microsoft Intune manages mobile devices and apps, integrates with Azure Active Directory for conditional access, and enforces data protection and GDPR compliance across enterprise mobility.
Explore device health attestation in Azure security services, and how mdm and mam enable conditional access for high-value assets using health data.
Learn how Windows autopilot simplifies deploying Windows 10 devices with cloud-configured out-of-the-box setup. Automatically join Azure AD, auto-enroll in mobile device management, and reduce attack surface by avoiding admin accounts.
In this course, you will gain insights into Azure Security services to help secure your services and data within Azure.
You will learn Azure security best practice andunderstandthe terminology, tools, and techniques for creating a secure resilient cloud service. You will also learn about and use the additional security services offered in Azure and Intune.
This course is designed to get you started as quickly as possible. There are a variety of self-paced learning activities. You will get:
Video lectures on each topic explaining each concept thoroughly with examples (and Demonstrations where applicable)
Review questions (quizz) at the end of each section
Hands-on Lab at the end of the course in which you will practice at your own pace. You will have a step by step instruction file available to complete the Lab tasks like: creating Virtual Networks, implement VNet peering, Log Analytics and much more.
Final Exam at the end of the course - 20 questions to test your knowledge on the topics and concepts learned in the course
Links to official Microsoft resources/blogs/videos for further documentation.
This course is the 8th course from a series of 9 courses which address all aspects to become a Microsoft Cyber Security Professional . This cyber security track is designed to teach you, or fill in the knowledge gaps, all the aspects and technologies to become a successful cyber security professional. The entire track addresses mostly Microsoft security technologies, including the latest cloud services made available by Microsoft like: Microsoft Defender Suite, Office 365 security features and services, Microsoft Graph, Azure Active Directory Security and many more.
Microsoft, Windows, Microsoft 365 and Microsoft Azure are either registered trademarks or trademarks of Microsoft Corporation in the United States and/or other countries. This course is not certified, accredited, affiliated with, nor endorsed by Microsoft Corporation.