Microsoft Security Technologies - End‑to‑End Controls for Cloud and AI Workloads
Den här kursen ger dig kunskap att utforma, införa och förvalta säkerhetskontroller genom hela kedjan i Microsofts molnplattformar - från identitet och infrastruktur till data, övervakning och AI-workloads.
Om utbildningen
Kursen behandlar säkerhet i Microsoft Azure och Microsoft 365, med särskilt fokus på de nya säkerhetsutmaningar som följer med AI-tjänster och autonoma agenter. Du arbetar bland annat med identitets- och behörighetsstyrning, skydd av data och applikationer, nätverks- och infrastruktursäkerhet, posture management, hotdetektering och automatiserad incidenthantering.
Kursen ersätter den utgående MAZ-500/AZ-500. Den kombinerar tekniska säkerhetskontroller med arkitektur, styrning och scenariobaserade arbetssätt. Fokus ligger på hur Microsofts olika säkerhetstjänster samverkar och hur du omsätter principer som minsta möjliga behörighet, säker åtkomst och kontinuerlig övervakning i praktiken.
Målgrupp och förkunskaper
Kursen är framtagen för dig som arbetar som säkerhetsingenjör, molnsäkerhetsspecialist eller i en närliggande teknisk roll med ansvar för att planera, införa eller följa upp säkerhetskontroller i Microsoft-miljöer. Den passar särskilt dig som arbetar i cloud-, hybrid- eller multi-cloud-miljöer och behöver se sambanden mellan identitet, infrastruktur, data och AI.
För att hänga med i kursens tempo och tillgodogöra dig dess innehåll förutsätts du ha grundläggande förståelse för Microsoft Azure, identitets- och åtkomsthantering samt centrala säkerhetsprinciper i molnmiljöer. Du behöver inte vara specialist på AI, men du bör vara van att arbeta med säkerhetsfrågor i tekniska plattformar och kunna relatera teori till praktisk implementation.
För att alltid hålla en hög kvalitet på våra kurser använder vi både engelsk- och svensktalande experter som kursledare.
Detaljerad information
Kursmaterialet är på engelska, med detta innehåll:
Identity Governance and Access Control
Explore how to reduce standing access through Privileged Identity Management and just-in-time role activation. The module also covers managed identities, Microsoft Entra Agent IDs, risk-based Conditional Access, identity protection, and application registrations.
Securing Azure Key Vault
Learn how Azure Key Vault protects secrets, cryptographic keys, and certificates used by applications and AI workloads. The module covers access through Azure RBAC and managed identities, network protection, deletion safeguards, and threat detection with Defender for Key Vault.
Security Governance and Role Management
Explore how Azure Policy and Azure RBAC can be used to establish governance and enforce security requirements across Azure environments. The module also covers policy deployment, compliance monitoring, custom roles, excessive permissions, and resource locks.
Security for Azure Storage Accounts
Learn how to secure Azure Storage accounts by controlling network access, authentication, delegated access, and encryption. The module explains storage firewalls, SAS tokens, stored access policies, and threat protection with Defender for Storage.
Security for Azure Databases
Explore common security risks affecting Azure databases and how to address them using Microsoft Entra authentication, firewalls, and private connectivity. The module also covers auditing, security event collection in Microsoft Sentinel, and Defender for Databases.
Security for Azure Networking
Learn how to protect Azure networks using Network Security Groups, Application Security Groups, Azure Firewall, and hub-and-spoke architectures. The module also compares service and private endpoints, introduces Microsoft Entra Private Access, and covers network monitoring with Network Watcher.
Security for Servers and Virtual Machines
Explore how to secure servers and virtual machines across Azure and hybrid environments. Topics include just-in-time access, Azure Arc, Defender for Servers, vulnerability assessment, agent-based and agentless scanning, and disk encryption.
AI Data Risk and Exposure with Microsoft Purview DSPM
Learn how Microsoft Purview Data Security Posture Management helps identify data exposure that could create risks when using AI. The module focuses on discovering overshared content, reviewing findings, and remediating data-security issues, particularly in SharePoint.
AI Agent Identity and Access Security in Microsoft Entra
Explore how Microsoft Entra Agent ID can be used to manage and protect identities belonging to AI agents. The module examines the differences between agent and workload identities, potential compromise scenarios, applicable Conditional Access controls, governance, and monitoring with Defender XDR.
Microsoft Foundry and AI Gateway Security
Learn how to protect AI applications and endpoints in Microsoft Foundry against API abuse, prompt injection, and other threats. The module presents a layered security model combining API gateway controls, Foundry guardrails, and Defender for AI Services.
AI Security Monitoring with Defender for Cloud
Explore how Defender for Cloud helps monitor the security posture of AI workloads. The module covers dashboards, risks, recommendations, severity levels, and the relationship between AI-focused views and the unified Defender for Cloud dashboard.
Security for Application Platform Services
Learn how to secure containers, Azure Kubernetes Service, container registries, applications, and APIs. The module covers container threat protection, network controls, Web Application Firewall, application security controls, and API gateway policies.
Defender for Cloud Security Posture Management
Explore how Defender for Cloud evaluates and improves security posture through Secure Score, recommendations, regulatory standards, and remediation workflows. The module also covers secret scanning, accountable remediation, multicloud posture across AWS and Google Cloud, and advanced CSPM capabilities.
Microsoft Sentinel Data Collection and Configuration
Learn how Microsoft Sentinel collects and manages security data through Log Analytics workspaces and data connectors. The module covers connector health, Defender XDR integration, automation rules, playbooks built with Azure Logic Apps, and the Sentinel configuration process.
Microsoft Security Copilot Configuration
Explore how to configure and govern Microsoft Security Copilot in standalone and embedded experiences. Topics include Security Compute Units, role-based access, data and privacy settings, plugin governance, and the secure use of agents and automated security tasks.
Relaterade kurser
Microsoft Defender for Cloud - Extended Securing Azure Services and Workloads
IT Security Fundamentals
Microsoft Purview - Protect Sensitive Information in the AI Era
Microsoft 365 - Mastering Security, Compliance and Governance
Microsoft 365 – Implementing Zero Trust with Conditional Access and MFA
Mer än en kurs
Tre månader som förändrar hur er ledning fattar beslut om AI. Sju sessioner, tolv veckor. Byggt för dem som bär det övergripande ansvaret, inte för dem som ska lära sig verktygen.
Vilken kompetens behöver ni om två år — och har ni den idag? Vi hjälper er planera för framtidens kompetensbehov innan luckorna blir ett problem.
Vet ni vilka kompetensgap som finns i er organisation idag? Vi hjälper er kartlägga nuläget och identifiera vad ni behöver bygga för att möta morgondagens krav.
Ladda kortet med utbildningsdagar i förväg och säkra budgeten innan behovet uppstår. Ni får rabatterade priser, flexibel användning och enklare administration — för hela teamet.
Relaterat innehåll