
Discover how to manage app and resource access with Azure Active Directory groups, using group-based permissions, direct vs group assignment, dynamic membership rules, and external authority assignments.
Explore external identities in Azure AD by inviting guest users, managing access via groups and roles, and assigning enterprise applications through the portal, PowerShell, or CLI.
Explore how Azure AD administrative units segment permissions by creating scoped containers, assigning roles, and managing users, groups, and devices via portal, Graph API, or PowerShell with Premium P1 licensing.
Learn how built-in Azure AD roles combine permissions for Azure Active Directory and how to assign them to users or groups using the portal, PowerShell, or Graph API.
Explore how the Azure application gateway delivers layer seven web traffic load balancing with optional web application firewall, and how to create and configure it using quick start templates.
Explore how Azure private endpoints extend service endpoints by providing private IP connectivity from your VNet, peered networks, and on-premises via private link and DNS.
Learn to implement Azure DDoS protection standard plan, bind it to a virtual network, and protect up to 100 public IPs with 24/7 monitoring and adaptive, multilayer defense.
Configure endpoint protection for virtual machines in Azure using Microsoft Defender for Cloud, install Defender for Endpoint, and leverage Log Analytics and EDR to harden VMs.
Configure security for Azure functions and other serverless compute using defense-in-depth, RBAC and managed identities, key vault access, SAS tokens, secure networking, secrets, and monitoring.
Explore Microsoft threat modeling tool to visualize data flows, identify threats, and determine mitigations using ready-made templates for Azure threat modeling, medical devices, and software development life cycle.
Explore how alerts become incidents in Microsoft Sentinel, using analytics rules and data connectors to automate incident generation and enable efficient incident response.
Learn to control storage account access in Azure using Azure Active Directory authentication or storage keys, with role based access control and portal, PowerShell, and Azure CLI demonstrations.
Configure Azure AD authentication for Azure Storage and Azure Files using SMB and Azure AD DS.
The Microsoft Azure Security Technologies (AZ-500) course is designed to equip learners with the knowledge and skills required to implement security controls, maintain the security posture, and identify and remediate vulnerabilities in Microsoft Azure. The course covers the following topics:
1. Identity and Access Management: Learners will learn how to manage access to Azure resources by implementing Azure AD identities, role-based access control (RBAC), and Azure AD Privileged Identity Management.
2. Platform Protection: Learners will learn how to protect Azure resources by implementing various security controls, including network security, Azure Security Center, and Azure DDoS Protection.
3. Data and Application Protection: Learners will learn how to protect data and applications in Azure by implementing Azure Backup and Azure Site Recovery, and by configuring security settings for Azure Storage and Azure SQL Database.
4. Security Operations: Learners will learn how to monitor and respond to security events in Azure by implementing Azure Monitor and Azure Log Analytics, and by creating custom alerts and queries.
5. Governance and Compliance: Learners will learn how to maintain compliance with industry regulations and internal policies by implementing Azure Policy and Azure Blueprints, and by configuring auditing and logging.
The prerequisites are not mandatory, but they are recommended to ensure that learners can keep up with the course content and have the necessary skills and knowledge to succeed in securing and administering Microsoft 365 effectively. Learners who do not meet these prerequisites can still benefit from the course but may need to invest additional time and effort to understand some of the more advanced concepts covered in the course.