SC-500: Implement end‑to‑end security controls for cloud and AI workloads
Jos tavoitteesi on saada kattavat perustiedot Azure-ympäristön tietoturvasta, tämä kurssi on juuri sinulle!
Nelipäiväisen koulutuksen aikana opit Azure- ja M365-ympäristöjen tietoturvaa, mukaan lukien AI-työkuormat, tietoturvaan liittyviä määrityksiä ja hallintaa, sekä tietoturvan valvontaa. Koulutuksessa käydään läpi Azure-palvelun tietoturvan peruskäsitteitä, käyttäjäidentiteettiä, käyttöoikeuksien määrittämistä, eri Azure-peruspalvelujen tietoturvaa, Azureen tallennettavan tiedon tietoturvamääritysten tekemistä, sekä ympäristön ja siihen liittyvien palvelujen tietoturvan valvontaa.
Lisäksi kurssi antaa valmiuksia uuteen Cloud and AI Security Engineer Associate -sertifiointiin.
Kurssi on suunnattu IT- ja tietoturva-ammattilaisille, jotka vastaavat Microsoft-pilviympäristöjen, identiteettien, sovellusten, datan ja tekoälyratkaisujen suojaamisesta.
Koulutus auttaa tietoturva- ja pilviasiantuntijoita suojaamaan Microsoft-ympäristöjä identiteetinhallinnasta ja pilviresursseista aina tekoäly- ja Copilot-ratkaisuihin asti.
Kurssi valmistaa uuteen Cloud and AI Security Engineer Associate -sertifioinnin testiin. Saat koetta varten tarvitsemasi sertifiointivoucherin kätevästi verkkokaupastamme: Sertifiointi-voucherit
Module 1: Secure Access to resources using Microsoft Entra ID
Manage and Implement Authentication Methods in Microsoft Entra ID
Implement and Configure Privileged Identity Management (PIM)
Authenticate your API plugin for declarative agents with secured APIs
Module 2: Secure secrets and keys using Azure Key Vault
Configure and Secure Azure Key Vault
Manage Keys and Secrets in Azure Key Vault
Manage Certificates and Monitor Azure Key Vault
Protect Azure Key Vault with Microsoft Defender for Cloud
Module 3: Implement governance to enforce security and regulatory compliance
Enforce Governance with Azure Policy and Resource Locks
Configure Security Controls and Remediate Recommendations in Defender for Cloud
Evaluate Regulatory Compliance in Defender for Cloud
Manage and Right-Size RBAC Role Assignments for Least Privilege
Protect Backup Data with Azure Backup Security Features
Implement Security Controls in Infrastructure as Code
Module 4: Implement security for storage accounts
Describe Azure storage services
Implement Security and Manage Access for Azure Storage
Configure Network Security for Azure Storage
Implement Microsoft Defender for Storage
Module 5: Implement security for Azure SQL databases
Configure Platform-Level Security for Azure SQL
Configure Auditing for Azure SQL Database and SQL Managed Instance
Implement Microsoft Defender for Databases
Module 6: Implement security for Azure networking
Segment and Isolate Azure Workloads Using Network Security Controls
Centralize and Enforce Traffic Inspection Using Azure Firewall
Secure Remote and Hybrid Connectivity Using VPN Gateways and Microsoft Entra Private Access
Eliminate Public Network Exposure of Azure PaaS Services
Module 7: Implement security for AI
Secure Access for Microsoft Entra Agent Identity
Analyze AI Identity Risks Using Microsoft Defender XDR
Enable Real-Time Protection for Copilot Studio Agents
Configure AI Gateway Security in Microsoft Foundry
Configure and manage guardrails in Microsoft Foundry
Protect AI workloads with Microsoft Defender for Cloud
Enable Defender for AI Services Workload Protection in Microsoft Defender for Cloud
Manage Agents Using Microsoft Agent 365
Identify AI Data Risks Using Microsoft Purview Data Security Posture Management
Module 8: Implement security for servers and virtual machines
Implement Disk Encryption for Azure Virtual Machines
Configure Trusted Launch Security Features for Azure Virtual Machines
Plan and Implement Azure Bastion
Manage Security for Arc-Enabled Hybrid Servers
Implement Microsoft Defender for Servers
Enable and Enforce Just-in-Time VM Access
Enforce VM Security Configuration with Azure Machine Configuration
Module 9: Implement security for application platform services
Detect Container Risks Using Microsoft Defender for Containers
Implement Security Controls for Azure Kubernetes Service
Implement Security Controls for Azure Container Registry, Container Instances, and Container Apps
Implement Security Controls for Azure Function Apps and Logic Apps
Implement Security Controls for Azure App Services and Web Application Firewall
Implement API Backend Security Using Azure API Management
Module 10: Manage security posture by using Defender for Cloudment
Connect Hybrid and multicloud Environments to Microsoft Defender for Cloud
Identify Security Risks by Using Cloud Security Posture Management
Discover Unprotected Assets and Vulnerabilities by Using Microsoft Defender External Attack Surface Manage
Evaluate Regulatory Compliance in Defender for Cloud
Enable and Configure Workload Protection Plans in Microsoft Defender for Cloud
Module 11: Implement activity and event collections in Microsoft Sentinel
Create and manage Microsoft Sentinel workspaces
Manage content in Microsoft Sentinel
Connect Microsoft services to Microsoft Sentinel
Connect syslog data sources to Microsoft Sentinel
Connect Common Event Format logs to Microsoft Sentinel
Connect Windows hosts to Microsoft Sentinel
Implement Automation Rules and Playbooks in Microsoft Sentinel
Manage Data Storage and Query Audit Logs in Microsoft Sentinel
Module 12: Implement Microsoft Security Copilot
Describe Microsoft Security Copilot
Configure workspaces for Microsoft Security Copilot
Manage Plugins and Agents in Microsoft Security Copilot
1 990,00 € + ALV 25,5%
Heikki Bergius
Consulting & Training
Heikki Bergius on toiminut yli 25 vuoden ajan erilaisissa tietotekniikan koulutus- ja konsultointitehtävissä. Hänen erikoisosaamiseensa kuuluvat mm. Azure IaaS -tekniikat, Azure-hybridiratkaisut, System Center -tuotteet, Windows-palvelimet sekä erilaiset automatisoinnit ja vianetsintä.