Microsoft Azure Security Technologies (AZ-500)

Paths

Microsoft Azure Security Technologies (AZ-500)

Authors: Tim Warner, Michael Brown, Sahil Malik, Ned Bellavance

This learning path is intended to help learners start their preparation to take the Microsoft Azure Security Technologies (AZ-500) certification exam. Microsoft Azure Security... Read more

What you will learn

  • Manage identity and access
  • Implement platform protection
  • Manage security operations
  • Secure data and applications

Pre-requisites

According to Microsoft, candidates for the AZ-500 Microsoft Azure Security Technologies (AZ-500) exam should be familiar with scripting and automation, and should have a deep understanding of networking and virtualization. Further, a candidate should also have a strong familiarity with cloud capabilities, Azure products and services, and other Microsoft products and services.

Manage Identity and Access in Microsoft Azure

This section of the path covers the objectives found in the Manage Identity and Access section of the exam guide, including:

  • Manage Azure Active Directory identities
  • Configure secure access by using Azure AD
  • Manage application access
  • Manage access control

Microsoft Azure Security Engineer: Manage Azure Active Directory Identities

by Tim Warner

Dec 15, 2020 / 1h 40m

1h 40m

Start Course
Description

The Azure Active Directory (Azure AD) tenant is your home base for authentication, authorization, and accounting in your Microsoft Azure environment. In this course, Microsoft Azure Security Engineer: Manage Azure Active Directory Identities, you’ll learn to manage your Azure identities and keep them secure. First, you’ll explore Azure user and group management. Next, you’ll discover the inner details of Azure AD authentication. Finally, you’ll learn how to transfer Azure resources between resource groups, subscriptions, and Azure AD tenants. When you’re finished with this course, you’ll have the skills and knowledge of Azure AD identity needed to keep your environment secure. You'll also be well on your way to passing Exam AZ-500, Microsoft Azure Security Technologies

Table of contents
  1. Manage Azure AD Users and Groups
  2. Manage Azure AD Authentication
  3. Transfer Microsoft Azure Resources

Microsoft Azure Security Engineer: Configure Secure Access Using Azure AD

by Tim Warner

Nov 4, 2020 / 56m

56m

Start Course
Description

Least-privilege security is hard work, especially in a cloud environment you don’t own. In this course, Microsoft Azure Security Engineer: Configure Secure Access Using Azure AD, you’ll learn how to secure authentication and authorization for your Azure subscriptions. First, you’ll explore role-based access control (RBAC) configuration with Azure AD Privileged Identity Management (PIM). Next, you’ll discover how to conduct access reviews alone or with your teammates. Finally, you’ll learn how to implement Azure AD Identity Protection and Conditional Access to shape your users’ authentication environment for cloud applications.. When you’re finished with this course, you’ll have the skills and knowledge of least-privilege security needed to keep your Azure users and resources secure.

Table of contents
  1. Monitor Privileged Access in Microsoft Azure
  2. Conduct Access Reviews in Microsoft Azure
  3. Implement Conditional Access and Azure AD Identity Protection

Microsoft Azure Security Engineer: Manage Application Access

by Tim Warner

Dec 15, 2020 / 42m

42m

Start Course
Description

You need to help your developers secure their Azure AD-protected apps. In this course, Microsoft Azure Security Engineer: Manage Application Access, you’ll learn to protect Azure AD app registrations and their APIs. First, you’ll explore the app registration process. Next, you’ll discover how to connect to remote APIs. Finally, you’ll learn how to expose your own Azure AD-hosted API to be consumed by yet other apps. When you’re finished with this course, you’ll have the skills and knowledge of Azure application security needed to secure your Azure AD app infrastructure. You'll also be well on your way to pass Microsoft Exam AZ-500, Microsoft Azure Security Technologies.

Table of contents
  1. Configure App Registrations in Microsoft Azure
  2. Manage API Access to Microsoft Azure Resources

Microsoft Azure Security Engineer: Manage Access Control

by Tim Warner

Dec 1, 2020 / 45m

45m

Start Course
Description

Your business’ success in Azure relies on least-privilege authorization for users and service principals. In this course, Microsoft Azure Security Engineer: Manage Access Control, you’ll learn to apply role-based access control (RBAC) to your Azure AD tenant and your subscription resources. First, you’ll explore how Azure implements authentication and authorization. Next, you’ll discover how to use the built-in RBAC roles in Azure. Finally, you’ll learn how to define custom RBAC roles. When you’re finished with this course, you’ll have the skills and knowledge of least-privilege authorization needed to secure your Azure environment. This course covers some of the objectives from Exam AZ-500, Microsoft Azure Security Technologies.

Table of contents
  1. Implement RBAC in Microsoft Azure
  2. Define Custom RBAC Roles in Microsoft Azure

Exam Alert: Manage Identity and Access in Microsoft Azure

by Tim Warner

Dec 1, 2020 / 17m

17m

Start Course
Description

Knowing what content to study is as important as knowing what content to ignore in your Microsoft certification exam preparation. In this course, Exam Alert: Manage Identity and Access in Microsoft Azure, you’ll learn to sharpen your certification study strategy. First, you’ll explore what Azure security content is mostly likely to appear on your AZ-500 exam. Next, you’ll discover the content areas you can safely ignore. Finally, you’ll learn how to gain the conceptual knowledge, hands-on skills, and computer-based exam techniques to clear your AZ-500 exam with confidence. When you’re finished with this course, you’ll have the skills and knowledge of Azure identity and access needed to answer related questions correctly on exam AZ-500.

Table of contents
  1. Azure Security “Need to Know” Information

Implement Platform Protection in Microsoft Azure

This section of the path covers the objectives found in the Implement Platform Protection section of the exam guide, including:

  • Implement advanced network security
  • Configure advanced security for compute

Coming Soon

Microsoft Azure Security Engineer: Implement Advanced Network Security

Coming Soon

by Gabriel McNeilly

Microsoft Azure Security Engineer: Configure Advanced Security for Compute

by Michael Brown

Dec 22, 2020 / 1h 41m

1h 41m

Start Course
Description

In today’s cloud-first world, you are faced with an ever-growing number of threats that can be targeted against your Azure compute services. In this course, Microsoft Azure Security Engineer: Configure Advanced Security for Compute, you’ll learn the key security services available in Azure to secure your compute workloads with an emphasis on those services relevant for the AZ-500 exam. First, you’ll explore update management of Azure virtual machines. Next, you’ll discover the power of the Endpoint Protection service and how it protects us from viruses and malware. Finally, you’ll learn how to secure your container workloads running in Azure. When you’re finished with this course, you’ll have the skills and knowledge of Advanced Compute Security needed to be a productive member of a compute security team and have the knowledge required to attempt compute security questions on the AZ-500 certification exam.

Table of contents
  1. Configuring Monitoring and Updates for Virtual Machines
  2. Configuring Endpoint Protection and Vulnerability Management for Virtual Machines
  3. Configuring Encryption in Azure
  4. Configuring Authentication and Security for Azure App Services
  5. Configuring Authentication and Security for Azure Containers
  6. Configuring Security for Azure Kubernetes Service

Exam Alert: Implement Platform Protection in Microsoft Azure

by Michael Brown

Dec 7, 2020 / 31m

31m

Start Course
Description

It can be a real challenge to identify key exam topics. In this course, Exam Alert: Implement Platform Protection in Microsoft Azure, you’ll learn which Azure features are key to exam success. First, you’ll explore advanced networking security features. Next, you’ll discover key exam features related to compute security. Finally, you’ll learn how to apply the features you have reviewed to exam questions. When you’re finished with this course, you’ll have the skills and knowledge of platform protection needed to help you successfully answer platform protection questions in the AZ-500 exam.

Table of contents
  1. Understanding Platform Protection Content on the AZ-500 Exam
  2. Understanding Platform Protection Questions on the AZ-500 Exam

Manage Security Operations in Microsoft Azure

This section of the path covers the objectives found in the Manage Security Operations section of the exam guide, including:

  • Monitor security by using Azure Monitor
  • Monitor security by using Azure Security Center
  • Monitor security by using Azure Sentinel
  • Configure security policies

Microsoft Azure Security Engineer: Monitor Security Using Azure Monitor

by Sahil Malik

Dec 4, 2020 / 51m

51m

Start Course
Description

Azure Monitor is a comprehensive solution for collecting, analyzing, and acting on telemetry from your cloud and on-premises environment. In this course, monitor security using azure monitor, you’ll learn to use the various facilities of azure monitor First, you’ll explore how to set up alerts on VMs and explore the recorded alerts. Next, you’ll discover how to set up diagnostic logging. Finally, you’ll learn how to manage costs using log retention. When you’re finished with this course, you’ll have the skills and knowledge of Azure monitor, needed to secure your infrastructure and applications.

Table of contents
  1. Manage Alerts
  2. Configure Diagnostic Logging
  3. Configure Log Retention

Microsoft Azure Security Engineer: Monitor Security Using Azure Security Center

by Ned Bellavance

Dec 9, 2020 / 44m

44m

Start Course
Description

Azure Security Center helps to give you a dashboard view of your security posture in Microsoft Azure and beyond. In this course, Microsoft Azure Security Engineer: Monitor Security Using Azure Security Center, you’ll learn to use Security Center to monitor and manage resources in Azure. First, you’ll explore configuring security and compliance policies in Security Center. Next, you’ll discover how to enable Just in Time VM Access for Azure VMs. Finally, you’ll learn how to configure vulnerability scans and review the results. When you’re finished with this course, you’ll have the skills and knowledge of Azure Security Center needed to take and pass the AZ-500 exam.

Table of contents
  1. Managing Policies in Azure Security Center
  2. Managing Compliance in Azure Security Center
  3. Configuring Just in Time VM Access
  4. Evaluating Vulnerability Scans

Microsoft Azure Security Engineer: Monitor Security Using Azure Sentinel

by Sahil Malik

Dec 4, 2020 / 48m

48m

Start Course
Description

Azure Sentinel is a critical part of the Azure security infrastructure. In this course, Microsoft Azure Security Engineer: Monitor Security Using Azure Sentinel, you’ll learn the features and capabilities of Azure sentinel. First, you’ll explore how to set up data sources and alerts. Next, you’ll discover exploring threats using those alerts. Finally, you’ll learn how to automate and respond to common threats. When you’re finished with this course, you’ll have the skills and knowledge of Azure sentinel needed to secure your infrastructure and applications.

Table of contents
  1. Explore Data Sources
  2. Evaluate Results
  3. Use Automation

Microsoft Azure Security Engineer: Configure Security Policies

by Ned Bellavance

Dec 7, 2020 / 1h 33m

1h 33m

Start Course
Description

Applying consistent security settings across your Azure environment is a challenge for security engineers. In this course, Microsoft Azure Security Engineer: Configure Security Policies, you’ll learn to use Azure Policy to achieve your security goals. First, you’ll explore applying security settings through Azure Policy. Next, you’ll discover how Azure Blueprints use Policies and RBAC to automate security for new deployment. Finally, you’ll learn how to create Playbooks on Azure Sentinel to automate your response to security incidents. When you’re finished with this course, you’ll have the skills and knowledge of Azure Policies needed to take and pass the AZ-500 exam.

Table of contents
  1. Configuring Azure Policy for Security
  2. Configuring Azure Blueprints for Security
  3. Using Playbooks in Azure Sentinel

Coming Soon

Exam Alert: Manage Security Operations in Microsoft Azure

Coming Soon

by Michael Teske

Secure Data and Applications in Microsoft Azure

This section of the path covers the objectives found in the Secure Data and Applications section of the exam guide, including:

  • Configure security for storage
  • Configure security for databases
  • Configure and manage Key Vault

Microsoft Azure Security Engineer: Configure Security for Storage

by Sahil Malik

Nov 10, 2020 / 1h 8m

1h 8m

Start Course
Description

Azure storage is one of the most critical parts of Azure. Applications use it to store data, and it is very important to be able to manage security and integrity of your data. In this course, Microsoft Azure Security Engineer: Configure Security for Storage, you’ll learn the various options of managing access, securing access, and encrypting azure storage. First, you’ll explore the classical methods, which are keys and SAS, along with key vault. Next, you’ll discover the value azure ad adds into the picture. Finally, you’ll learn how to encrypt data in azure storage. When you’re finished with this course, you’ll have the skills and knowledge to configure security for Azure storage.

Table of contents
  1. Configuring Azure Storage Security
  2. Authenticate to Azure Storage using Azure AD
  3. Encrypt Azure Storage

Microsoft Azure Security Engineer: Configure Security for Databases

by Sahil Malik

Nov 19, 2020 / 1h 16m

1h 16m

Start Course
Description

The importance of securing and auditing where you store data cannot be overstated. In this course, Microsoft Azure Security Engineer: Configure Security for Databases, you’ll learn how to authenticate, secure, audit, and use advanced threat protection with SQL products. First, you’ll explore authentication basics, with Azure AD or without. Next, you’ll discover auditing and encrypting of SQL Data. Finally, you’ll learn how to use products such as azure defender and ATP with SQL Server. When you’re finished with this course, you’ll have the skills and knowledge of configuring security needed to secure and manage your Azure SQL products.

Table of contents
  1. Authenticating to Azure SQL
  2. Auditing SQL Server
  3. Encrypting SQL
  4. Using SQL with Advanced Threat Protection (ATP)

Microsoft Azure Security Engineer: Configure and Manage Key Vault

by Ned Bellavance

Nov 19, 2020 / 1h 21m

1h 21m

Start Course
Description

Secrets, keys, and certificates are some of the most sensitive data in your organization. In this course, Configure and Manage Key Vault, you’ll learn to utilize Azure Key Vault as a security engineer. First, you’ll explore managing permissions to Key Vault using role-based access control. Next, you’ll discover how to use access policies to control Key Vault resource access. Finally, you’ll learn how to manage Key Vault resources and protect them from accidental deletion. When you’re finished with this course, you’ll have the skills and knowledge of Azure Key Vault needed to take and pass the AZ-500 exam.

Table of contents
  1. Managing Access to Key Vault
  2. Using Key Vault Access Policies
  3. Managing Key Vault Objects
  4. Using Key Vault Objects