Azure Security Architect

Become a Azure Security Architect 

Start Date: MM-DD-YYYY

Virtual Session

31 Weeks

Live Demonstrations

Hands-On Projects

az-104: Microsoft Azure Administrator

This training outline is designed to prepare candidates for the AZ-104 exam, covering the core knowledge areas required for managing and administering Azure resources.

Module 1

Core Azure Concepts

2 Days

Learning Objectives: 

  • Understand core Azure concepts, including subscription, resource groups, regions, and availability zones. 
  • Describe Azure services and their use cases. 
  • Explain the Azure pricing models and cost management strategies. 
  • Learn about Azure security best practices and compliance standards. 
  • Azure Hybrid Benefit, Reserved Instances 
  • Set up a free Azure account and explore the Azure portal interface. 
  • Create a resource group in the Azure portal and understand its configuration. 
  • Explore different Azure regions and availability zones for deployment. 
  • Apply Azure Hybrid Benefit for cost savings on an existing virtual machine. 
  • Use the Azure pricing calculator to estimate the costs for a given project. 

Module 2

Azure Compute

2 Days

Learning Objectives: 

  • Manage virtual machines (VMs) using the Azure portal, Azure CLI, and PowerShell. 
  • Understand VM scale sets and their benefits. 
  • Deploy and manage containerized applications using Azure Kubernetes Service (AKS). 
  • Learn about Azure Functions and their use cases. 
  • Azure Container Registry (ACR), AKS management, ingress controllers 
  • Deploy and configure a virtual machine (VM) using the Azure portal. 
  • Manage networking, disks, and availability settings for the VM. 
  • Deploy a containerized application using Azure Kubernetes Service (AKS). 
  • Create and configure an Azure Function for serverless computing tasks. 
  • Use Azure Container Registry (ACR) to manage and deploy container images. 

Module 3

Azure Storage

1 Day

Learning Objectives: 

  • Understand different Azure storage services, including Blob storage, File storage, and Queue storage. 
  • Manage storage accounts and configure access control. 
  • Learn about data replication and disaster recovery options for Azure storage. 
  • Create and configure an Azure Storage account with the appropriate replication options. 
  • Use Azure Storage Explorer to upload and manage files in Blob storage. 
  • Implement encryption and configure redundancy settings for Azure storage. 
  • Set up lifecycle management policies for Azure Blob Storage. 

Module 4

Azure Networking

2 Days

Learning Objectives: 

  • Create and manage virtual networks, subnets, and network security groups. 
  • Configure virtual network peering and site-to-site VPN connections. 
  • Understand Azure DNS and its features. 
  • Learn about Azure Load Balancer and Application Gateway. 
  • Application Gateway Web Application Firewall (WAF) features 
  • Create a virtual network (VNet) and subnet in the Azure portal. 
  • Configure virtual network peering to allow communication between VNets. 
  • Set up a site-to-site VPN connection between on-premises and Azure. 
  • Deploy and configure Azure Load Balancer for traffic distribution. 
  • Implement an Application Gateway and configure Web Application Firewall (WAF). 

Module 5

Azure Monitoring and Logging

1 Days

Learning Objectives: 

  • Implement Azure Monitor to collect and analyze performance and health data. 
  • Configure alerts and notifications for critical events. 
  • Use Azure Log Analytics to analyze log data and troubleshoot issues. 
  • Log Analytics integration with Power BI 
  • Set up Azure Monitor to collect performance and health data from Azure resources. 
  • Create alert rules in Azure Monitor to notify on critical events. 
  • Use Azure Log Analytics to query and analyze log data from Azure services. 
  • Integrate Log Analytics with Power BI for advanced data visualization. 

Module 6

Azure Security

1 Days

Learning Objectives: 

  • Implement security best practices for Azure resources. 
  • Configure Azure Security Center to detect and respond to threats. 
  • Manage identities and access control using Azure Active Directory. 
  • Learn about Azure Key Vault and its use cases. 
  • Conditional Access, Privileged Identity Management (PIM)
  • Configure Azure Security Center to assess the security posture of resources. 
  • Enable threat protection features in Azure Security Center for proactive monitoring. 
  • Manage identities and access control using Azure Active Directory. 
  • Set up Azure Key Vault to manage secrets and keys securely. 
  • Implement Conditional Access policies for secure user access. 

Module 7

Azure Deployment and Automation

2 Days

Learning Objectives: 

  • Use Azure Resource Manager templates to deploy and manage Azure resources. 
  • Automate tasks using Azure Automation and Azure Functions. 
  • Implement continuous integration and continuous delivery (CI/CD) pipelines using Azure DevOps. 
  • Bicep for Infrastructure as Code (IaC) 
  • Automation of repetitive tasks using Azure Automation 
  • Deploy Azure resources using Azure Resource Manager (ARM) templates. 
  • Set up automation tasks using Azure Automation and runbooks. 
  • Implement CI/CD pipelines using Azure DevOps for automated deployments. 
  • Write Bicep scripts for Infrastructure as Code (IaC) and deploy resources. 
  • Automate repetitive tasks using Azure Automation to improve efficiency. 

Module 8

Lab Exercises

2 Days

Learning Objectives: 

  • Gain hands-on experience with Azure services through practical lab exercises. 
  • Apply the knowledge gained in previous modules to real-world scenarios. 
  • Troubleshoot common Azure issues. 
  • Perform hands-on exercises to apply concepts from all previous modules. 
  • Troubleshoot common Azure resource issues such as networking and compute problems. 
  • Implement and test monitoring, alerting, and logging solutions for resource management. 
  • Apply security measures and configure resources to meet organizational compliance. 
  • Simulate and resolve deployment issues using real-world scenarios. 

AZ-500: Microsoft Azure Security

This training outline is designed to prepare candidates for the AZ-500 exam, covering the core knowledge areas required for implementing, managing, and monitoring security controls across all phases of the cloud lifecycle. 

Module 1

Manage Identity and Access

2 Days

Learning Objectives: 

  • Understand identity and access management concepts in Azure. 
  • Manage user identities in Azure Active Directory (Azure AD). 
  • Implement multi-factor authentication (MFA) and conditional access policies. 
  • Manage application access and permissions. 
  • Integrate on-premises identities with Azure AD. 
  • Advanced authentication methods: Password protection and Verified ID. 
  • Role management: PIM configuration and Azure Permissions Management. 
  • Create and manage user accounts in Azure AD. 
  • Assign roles to users and configure group memberships. 
  • Set up and enforce MFA for users. 
  • Test MFA functionality for users. 
  • Create and configure a Conditional Access policy. 
  • Test policy enforcement on users. 

Module 2

Secure Networking

2 Days

Learning Objectives: 

  • Implement and manage virtual networks, subnets, and network security groups (NSGs). 
  • Configure virtual network peering and site-to-site VPN connections. 
  • Implement and manage Azure Firewall. 
  • Secure access to Azure resources using Azure Bastion and Azure Private Link. 
  • Understand and implement network security best practices. 
  • Monitoring network security: Network Watcher, NSG flow logging. 
  • Set up a virtual network and subnets. 
  • Implement NSGs to secure the network. 
  • Configure a Site-to-Site VPN connection. 
  • Implement virtual network peering between two VNets. 
  • Create and configure Azure Firewall. 
  • Set up rules to filter inbound and outbound traffic. 

Module 3

Secure Data and Applications

2 Day

Learning Objectives: 

  • Implement and manage encryption for data at rest and in transit. 
  • Secure data in Azure storage services. 
  • Implement and manage key vaults. 
  • Secure applications running in Azure. 
  • Implement and manage web application firewalls (WAFs). 
  • Data classification and masking using Microsoft Purview. 
  • Configure encryption for data at rest and in transit. 
  • Secure storage accounts using access policies. 
  • Set up a Key Vault and configure secrets. 
  • Integrate Key Vault with Azure services. 
  • Implement WAF on an Azure Application Gateway. 
  • Configure WAF rules for application security. 

Module 4

Implement and Manage Security Center

1 Day

Learning Objectives: 

  • Understand the capabilities of Azure Security Center. 
  • Configure and manage security assessments and recommendations. 
  • Detect and respond to threats using Security Center. 
  • Integrate Security Center with other Azure services. 
  • Compliance assessments with Defender for Cloud. 
  • Set up and configure Azure Security Center. 
  • Review and apply security recommendations. 
  • Use Azure Security Center to detect threats. 
  • Implement response actions for detected vulnerabilities. 

Module 5

Implement and Manage Information Protection

1 Day

Learning Objectives: 

  • Understand data classification and labeling in Azure. 
  • Implement data loss prevention (DLP) policies. 
  • Protect sensitive data using Azure Information Protection. 
  • Using custom initiatives and regulatory standards in Defender for Cloud. 
  • Implement data classification and labeling. 
  • Configure Azure Information Protection for data security. 
  • Create and apply data loss prevention policies. 
  • Monitor the enforcement of DLP policies. 

Module 6

Secure Azure Resources

1 Day

Learning Objectives: 

  • Implement and manage Azure Key Vault. 
  • Secure virtual machines (VMs) and virtual machine scale sets. 
  • Secure Azure Kubernetes Service (AKS) clusters. 
  • Implement and manage Azure Monitor for security. 
  • Advanced security for App Services and Function Apps. 
  • Configure Azure VM security settings. 
  • Enable Just-in-Time access to VMs. 
  • Deploy an AKS cluster. 
  • Implement security policies for the cluster. 

Module 7

Lab Exercises

2 Days

Learning Objectives: 

  • Gain hands-on experience with Azure security services through practical lab exercises. 
  • Apply the knowledge gained in previous modules to real-world scenarios. 
  • Troubleshoot common security issues. 
  • Work on a simulated case to apply identity and access management practices. 
  • Implement network security and data protection in a real-world setup. 
  • Identify and troubleshoot common security misconfigurations. 
  • Apply best practices to resolve security concerns. 

Azure Security Architect - Elevate Your Cybersecurity Expertise

Master the art of designing and implementing secure Azure environments. Learn to safeguard cloud infrastructures, detect vulnerabilities, and neutralize cyber threats with cutting-edge Microsoft security tools.

Join Our Program Today!