Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

Microsoft

SC-300: Plan and implement an identity governance strategy

Microsoft via Microsoft Learn

Overview

  • Module 1: When new users or external users join your site, quickly assigning them access to Azure solutions is a must. Explore how to entitle users to access your site and resources.

    By the end of this module, you will be able to:

    • Define catalogs.
    • Define access packages.
    • Plan, implement and manage entitlements.
    • Implement and manage terms of use.
    • Manage the lifecycle of external users in Microsoft Entra Identity Governance settings.
  • Module 2: Once identity is deployed, proper governance using access reviews is necessary for a secure solution. Explore how to plan for and implement access reviews.

    By the end of this module, you will be able to:

    • Plan for access reviews
    • Create access reviews for groups and apps
    • Monitor the access review findings
    • Manage licenses for access reviews
    • Automate management tasks for access review
    • Configure recurring access reviews
  • Module 3: Ensuring that administrative roles are protected and managed to increase your Azure solution security is a must. Explore how to use PIM to protect your data and resources.

    By the end of this module, you will be able to:

    • Define a privileged access strategy for administrative users (resources, roles, approvals, and thresholds)
    • Configure Privileged Identity Management for Microsoft Entra roles
    • Configure Privileged Identity Management for Azure resources
    • Assign roles
    • Manage PIM requests
    • Analyze PIM audit history and reports
    • Create and manage emergency access accounts
  • Module 4: Audit and diagnostic logs within Microsoft Entra ID provide a rich view into how users are accessing your Azure solution. Learn to monitor, troubleshoot, and analyze sign-in data.

    By the end of this module, you'll be able to:

    • Analyze and investigate sign in logs to troubleshoot access issues
    • Review and monitor Microsoft Entra audit logs
    • Enable and integrate Microsoft Entra diagnostic logs with Log Analytics / Azure Sentinel
    • Export sign in and audit logs to a third-party SIEM (security information and event management)
    • Review Microsoft Entra activity by using Log Analytics / Azure Sentinel, excluding KQL (Kusto Query Language) use
    • Analyze Microsoft Entra workbooks / reporting
    • Configure notifications

Syllabus

  • Module 1: Module 1: Plan and implement entitlement management
    • Introduction
    • Define access packages
    • Exercise create and manage a resource catalog with Microsoft Entra entitlement management
    • Configure entitlement management
    • Exercise add terms of use acceptance report
    • Exercise manage the lifecycle of external users with Microsoft Entra identity governance
    • Configure and manage connected organizations
    • Review per-user entitlements
    • Knowledge check
    • Summary and resources
  • Module 2: Module 2: Plan, implement, and manage access review
    • Introduction
    • Plan for access reviews
    • Create access reviews for groups and apps
    • Create and configure access review programs
    • Monitor access review findings
    • Automate access review management tasks
    • Configure recurring access reviews
    • Knowledge check
    • Summary and resources
  • Module 3: Module 3: Plan and implement privileged access
    • Introduction
    • Define a privileged access strategy for administrative users
    • Configure Privileged Identity Management for Azure resources
    • Exercise configure Privileged Identity Management for Microsoft Entra roles
    • Exercise assign Microsoft Entra roles in Privileged Identity Management
    • Exercise assign Azure resource roles in Privileged Identity Management
    • Plan and configure Privileged Access Groups
    • Analyze Privileged Identity Management audit history and reports
    • Create and manage emergency access accounts
    • Knowledge check
    • Summary and resources
  • Module 4: Module 4: Monitor and maintain Microsoft Entra ID
    • Introduction
    • Analyze and investigate sign-in logs to troubleshoot access issues
    • Review and monitor Microsoft Entra audit logs
    • Exercise connect data from Microsoft Entra ID to Microsoft Sentinel
    • Export logs to third-party security information and event management system
    • Analyze Microsoft Entra workbooks and reporting
    • Monitor security posture with Identity Secure Score
    • Knowledge check
    • Summary and resources

Reviews

Start your review of SC-300: Plan and implement an identity governance strategy

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.