AZ-500: Microsoft Azure Security Technologies
This course provides IT Security Professionals with the knowledge and skills needed to implement security controls, maintain an organization’s security posture, and identify and remediate security vulnerabilities. This course includes security for identity and access, platform protection, data and applications, and security operations.
Skills gained
- Implement enterprise governance strategies including role-based access control, Azure policies, and resource locks.
- Implement an Azure AD infrastructure including users, groups, and multi-factor authentication.
- Implement Azure AD Identity Protection including risk policies, conditional access, and access reviews.
- Implement Azure AD Privileged Identity Management including Azure AD roles and Azure resources.
- Implement Azure AD Connect including authentication methods and on-premises directory synchronization.
- Implement perimeter security strategies including Azure Firewall.
- Implement network security strategies including Network Security Groups and Application Security Groups.
- Implement host security strategies including endpoint protection, remote access management, update management, and disk encryption.
- Implement container security strategies including Azure Container Instances, Azure Container Registry, and Azure Kubernetes.
- Implement Azure Key Vault including certificates, keys, and secretes.
- Implement application security strategies including app registration, managed identities, and service endpoints.
- Implement storage security strategies including shared access signatures, blob retention policies, and Azure Files authentication.
- Implement database security strategies including authentication, data classification, dynamic data masking, and always encrypted.
- Implement Azure Monitor including connected sources, log analytics, and alerts.
- Implement Azure Security Center including policies, recommendations, and just in time virtual machine access.
- Implement Azure Sentinel including workbooks, incidents, and playbooks.
Koulutuksen toteutus
Koulutus pidetään suomeksi.Koulutusmateriaaleina käytetään Microsoftin virallisia materiaaleja, jotka toimitetaan osallistujalle sähköisesti.
Seuraavat toteutukset
Kohderyhmä
Students should have at least one year of hands-on experience securing Azure workloads and experience with security controls for workloads on Azure or AZ-103: Azure Administrator -training as a prerequisite.
Koulutuksen sisältö
Module 1: Manage Identity and Access
This module covers Azure Active Directory, Azure Identity Protection, Enterprise Governance, Azure AD PIM, and Hybrid Identity.Lessons
- Azure Active Directory
- Azure Identity Protection
- Enterprise Governance
- Azure AD Privileged Identity Management
- Hybrid Identity
Lab : Role-Based Access Control
Lab : Azure PolicyLab : Resource Manager Locks
Lab : MFA, Conditional Access and AAD Identity Protection
Lab : Azure AD Privileged Identity Management
Lab : Implement Directory Synchronization
Module 2: Implement Platform Protection
This module covers perimeter, network, host, and container security.Lessons
- Perimeter Security
- Network Security
- Host Security
- Container Security
Lab : Network Security Groups and Application Security Groups
Lab : Azure Firewall
Lab : Configuring and Securing ACR and AKS
After completing this module, students will be able to:
- Implement perimeter security strategies including Azure Firewall.
- Implement network security strategies including Network Security Groups and Application Security Groups.
- Implement host security strategies including endpoint protection, remote access management, update management, and disk encryption.
- Implement container security strategies including Azure Container Instances, Azure Container Registry, and Azure Kubernetes.
Module 3: Secure Data and Applications
This module covers Azure Key Vault, application security, storage security, and SQL database security.Lessons
- Azure Key Vault
- Application Security
- Storage Security
- SQL Database Security
Lab : Key Vault (Implementing Secure Data by setting up Always Encrypted)
Lab : Securing Azure SQL Database
Lab : Service Endpoints and Securing Storage
After completing this module, students will be able to:
- Implement Azure Key Vault including certificates, keys, and secretes.
- Implement application security strategies including app registration, managed identities, and service endpoints.
- Implement storage security strategies including shared access signatures, blob retention policies, and Azure Files authentication.
- Implement database security strategies including authentication, data classification, dynamic data masking, and always encrypted.
Module 4: Manage Security Operations
This module covers Azure Monitor, Azure Security Center, and Azure Sentinel.Lessons
- Azure Monitor
- Azure Security Center
- Azure Sentinel
Lab : Azure Monitor
Lab : Azure Security Center
Lab : Azure Sentinel
After completing this module, students will be able to:
- Implement Azure Monitor including connected sources, log analytics, and alerts.
- Implement Azure Security Center including policies, recommendations, and just in time virtual machine access.
- Implement Azure Sentinel including workbooks, incidents, and playbooks.
Kouluttaja
Markus Lintuala
Senior System Consultant
Pitkä ja laaja käytännön kokemus pilvipalveluista, Microsoft 365 ratkaisuista sekä Microsoftin loppukäyttäjä- ja infraratkaisuista.
- Microsoft Certified Azure Solutions Architect Expert
- Microsoft 365 Certified: Enterprise Administration Expert
- Microsoft Certified Trainer
Mika Vilpo
Senior System Consultant
Yli kymmenen vuoden kokemus pilvipalveluista ja identiteetinhallinnasta. Vahvaa osaamista Microsoftin tuotteista infranäkökulmasta.
- Microsoft Certified Azure Solutions Architect Expert
- MCSE Cloud Platform and Infrastructure
- Microsoft Certified Trainer
Kustannukset
Koulutuksen hinta on 3800 € (+ALV 25,5 %). Koulutuksen hintaan sisältyy opetuksen ja kurssimateriaalien lisäksi yksi yritys virallisessa sertifiointitestissä.
Ota yhteyttä
Elisa Santa Monica – Innovatiivinen ICT-osaamisen kehittäjä
Elisa Santa Monican koulutukset tarjoavat korkeatasoista opetusta yrityksesi ICT-asiantuntijoille. Valikoimastamme löytyy koulutuksia teknisistä perusteista syventäviin kursseihin ja sertifiointeihin asti. Koulutusten aihepiireinä ovat tietoverkot, tietoturva ja pilvipalvelut. Järjestämme koulutuksista kaikille avoimia sekä asiakkaan tarpeen mukaan räätälöityjä toteutuksia. Koulutuksiin voi osallistua etänä tai...
Lue lisää kouluttajasta Elisa Santa Monica ja katso koulutustarjonta täältä