Course Outline
Introduction
- Azure security overview
- Basics of cloud computing
Azure Fundamentals
- Grasping Azure fundamentals
- Getting started with Azure
Setting Up Host-Level Security
- Understanding storage account security
- Data plane security
- Encryption concepts (in transit and at rest)
- Storage analytics
- Azure storage explorer
- Configuring security for Azure storage accounts
- Protecting the VM operating system environment
- Securing VMs during deployment
Setting Up Deployment-Level Security
- Understanding Network Security Groups (NSG)
- Load balancers and NAT
- Utilizing forced tunneling and network security appliances
- Configuring the Azure load balancer
- Setting up NSG
- Understanding Role-Based Access Control (RBAC)
- Azure Resource Manager (ARM) policies
- Testing RBAC implementations
- Testing ARM policies
Setting Up Azure Security Center
- Introduction to Azure Security Center (ASC)
- Configuring ASC
- Evaluating ASC security
- Reviewing security alerts and incidents
Configuring VM Monitoring
- Managing VM updates
- Automating VM update configurations
- Azure Automation Desired State Configuration (DSC)
Configuring VM Endpoint Protection
- Endpoint protection for Azure VMs
- Deploying endpoint protection
- Vulnerability management for Azure VMs
Configuring Authentication and Security for Azure App Services
- Security features of Azure App Services
- Implementing security for Azure App Services
Configuring Authentication and Security for Azure Containers
- Authentication for Azure Container Registry and Kubernetes services
- Deploying the container registry and Azure Kubernetes Service
- Authentication for Azure Kubernetes Service
Securing Azure Kubernetes Service
- Security for Azure Kubernetes Service and Azure Container Registry
- Isolation within Azure Kubernetes Service
Troubleshooting
Summary and Next Steps
Requirements
- Fundamental understanding of cloud computing.
- Working knowledge of Microsoft Azure.
Target Audience
- Security administrators.
Testimonials (3)
Examples and their usage
Dariusz Frycz - WASKO SPOLKA AKCYJNA
Course - AZ-040T00: Automating Administration with PowerShell
Everything, is a new platform for me and everything was interesting.
Sergiu
Course - AZ-104T00-A: Microsoft Azure Administrator
It was very much what we asked for—and quite a balanced amount of content and exercises that covered the different profiles of the engineers in the company who participated.