This is an advanced, expert-level course. Although not required to attend, students are strongly encouraged to have taken and passed another associate level certification in the security, compliance and identity portfolio (such as AZ-500, SC-200 or SC-300) before attending this class. This course prepares students with the expertise to design and evaluate cybersecurity strategies in the following areas: Zero Trust, Governance Risk Compliance (GRC), security operations (SecOps), and data and applications. Students will also learn how to design and architect solutions using zero trust principles and specify security requirements for cloud infrastructure in different service models (SaaS, PaaS, IaaS).Audience ProfileThis course is for experienced cloud security engineers who have taken a previous certification in the security, compliance and identity portfolio. Specifically, students should have advanced experience and knowledge in a wide range of security engineering areas, including identity and access, platform protection, security operations, securing data, and securing applications. They should also have experience with hybrid and cloud implementations. Beginning students should instead take the course SC-900: Microsoft Security, Compliance, and Identity Fundamentals.PrerequisitesBefore attending this course, students must have:Highly recommended to have attended and passed one of the associate level certifications in the security, compliance and identity portfolio (such as AZ-500, SC-200 or SC-300)Advanced experience and knowledge in identity and access, platform protection, security operations, securing data and securing applications.Experience with hybrid and cloud implementations.Job roleSolution ArchitectPreparation for examSC-100Course OutlineMODULE 1Introduction to Zero Trust and best practice frameworksMODULE 2Design solutions that align with the Cloud Adoption Framework (CAF) and Well-Architected Framework (WAF)MODULE 3Design solutions that align with the Microsoft Cybersecurity Reference Architecture (MCRA) and Microsoft cloud security benchmark (MCSB)MODULE 4Design a resiliency strategy for common cyberthreats like ransomwareMODULE 5Case study: Design solutions that align with security best practices and prioritiesMODULE 6Design solutions for regulatory complianceMODULE 7Design solutions for identity and access managementMODULE 8Design solutions for securing privileged accessMODULE 9Design solutions for security operationsMODULE 10Case study: Design security operations, identity and compliance capabilitiesMODULE 11Design solutions for securing Microsoft 365MODULE 12Design solutions for securing applicationsMODULE 13Design solutions for securing an organization's dataMODULE 14Case study: Design security solutions for applications and dataMODULE 15Specify requirements for securing SaaS, PaaS, and IaaS servicesMODULE 16Design solutions for security posture management in hybrid and multicloud environmentsMODULE 17Design solutions for securing server and client endpointsMODULE 18Design solutions for network securityMODULE 19Case study: Design security solutions for infrastructure
Overview
Taught by
ONLC Training Centers