CODE: MCS_SC-500T00
LENGTH: 32 Hours (4 days)
PRICE: £2,545.00
This course prepares you to design, implement, and manage end-to-end security controls across Microsoft Azure and Microsoft 365 environments — including the emerging landscape of AI workloads and autonomous agents. Through a combination of instructor-led sessions and hands-on labs, you build practical skills in identity security, cloud infrastructure protection, threat detection, and posture management. This course is intended for security engineers who are responsible for planning and implementing security controls across cloud, hybrid, and multi-cloud environments using Microsoft security technologies.
As a candidate for this course, you’re a security engineer who protects organizational systems and data across cloud and hybrid environments by implementing comprehensive security controls that prevent unauthorized access and mitigate risks proactively. This role spans multiple security domains including identity, network, application, data, and compute. This role also ensures that platforms, data, identities, and infrastructure used by AI workloads are securely implemented and monitored. You work closely with architects, administrators, engineers, analysts, and developers responsible for Azure, Microsoft 365, identity and access, information protection, security operations, devops, application development, database platforms, and networks. You should have practical experience in administration of Microsoft Azure and hybrid environments, including compute, network, and storage. You should have strong familiarity with Microsoft Entra ID and familiarity with Microsoft 365 administration. Your responsibilities for this role include:
• Familiarity with Microsoft Entra ID concepts, including users, groups, and directory roles
• Understanding of Azure role-based access control (RBAC), including role assignments and the Azure scope hierarchy (management group, subscription, resource group, resource)
• Basic experience navigating the Azure portal and the Microsoft Entra admin center
• Familiarity with Zero Trust security principles, including least privilege and assume breach
• Awareness of Microsoft Entra ID P2 or Microsoft Entra ID Governance licensing requirements
• Working knowledge of Azure Key Vault, including deploying and using a vault
• Understanding of Azure role-based access control (RBAC) and managed identities
• Familiarity with Microsoft Defender for Cloud at a foundational level
• Working knowledge of Azure administration at the AZ-104 level, including resource management, role assignments, and virtual network concepts
• Understanding of Azure role-based access control (RBAC) including role assignments and scope hierarchy
• Basic experience navigating the Azure portal and Microsoft Entra admin center
• Familiarity with Azure Storage accounts including Blob Storage and Azure Files
• Familiarity with Microsoft Entra ID and Azure role-based access control (RBAC)
• Understanding of Azure networking concepts including virtual networks, subnets, and private endpoints
• Familiarity with Azure Key Vault at a conceptual level
• Understanding of Microsoft Defender for Cloud at a conceptual level
Manage and implement authentication methods in Microsoft Entra ID
Implement and configure Privileged Identity Management (PIM)
Authenticate your API plugin for declarative agents with secured APIs
Configure and secure Azure Key Vault
Manage keys and secrets in Azure Key Vault
Manage certificates and monitor Azure Key Vault
Protect Azure Key Vault with Microsoft Defender for Cloud
Enforce governance with Azure Policy and resource locks
Configure security controls and remediate recommendations in Defender for Cloud
Evaluate regulatory compliance in Defender for Cloud
Manage and right-size RBAC role assignments for least privilege
Protect backup data with Azure Backup security features
Implement security controls in infrastructure as code
Describe Azure storage services
Implement security and manage access for Azure Storage
Configure network security for Azure Storage
Implement Microsoft Defender for Storage
Configure platform-level security for Azure SQL
Configure auditing for Azure SQL Database and SQL Managed Instance
Implement Microsoft Defender for Databases