Microsoft Security Technologies - End‑to‑End Controls for Cloud and AI Workloads

Azure Microsoft 365-infrastruktur Microsoft SCI Proaktiv säkerhet

Den här kursen ger dig kunskap att utforma, införa och förvalta säkerhetskontroller genom hela kedjan i Microsofts molnplattformar - från identitet och infrastruktur till data, övervakning och AI-workloads. 

Nästa start: 21 sep. (Live Online)

Kursplan

Kurskod
MSC-500
Pris
35450 kr (exklusive moms)
Kursform
På plats eller LiveClass

Leveransformer kan variera beroende på ort och datum.

På plats innebär att kursen hålls i klassrum. Läs mer här.
Live Online innebär att kursen hålls som en lärarledd interaktiv onlineutbildning. Läs mer här.

Längd
4 dagar
Ort & startdatum
Live Online
21 sep.
Live Online
7 dec.
Boka utbildning

Om utbildningen

Kursen behandlar säkerhet i Microsoft Azure och Microsoft 365, med särskilt fokus på de nya säkerhetsutmaningar som följer med AI-tjänster och autonoma agenter. Du arbetar bland annat med identitets- och behörighetsstyrning, skydd av data och applikationer, nätverks- och infrastruktursäkerhet, posture management, hotdetektering och automatiserad incidenthantering.

Kursen ersätter den utgående MAZ-500/AZ-500. Den kombinerar tekniska säkerhetskontroller med arkitektur, styrning och scenariobaserade arbetssätt. Fokus ligger på hur Microsofts olika säkerhetstjänster samverkar och hur du omsätter principer som minsta möjliga behörighet, säker åtkomst och kontinuerlig övervakning i praktiken.

Målgrupp och förkunskaper

Kursen är framtagen för dig som arbetar som säkerhetsingenjör, molnsäkerhetsspecialist eller i en närliggande teknisk roll med ansvar för att planera, införa eller följa upp säkerhetskontroller i Microsoft-miljöer. Den passar särskilt dig som arbetar i cloud-, hybrid- eller multi-cloud-miljöer och behöver se sambanden mellan identitet, infrastruktur, data och AI.

För att hänga med i kursens tempo och tillgodogöra dig dess innehåll förutsätts du ha grundläggande förståelse för Microsoft Azure, identitets- och åtkomsthantering samt centrala säkerhetsprinciper i molnmiljöer. Du behöver inte vara specialist på AI, men du bör vara van att arbeta med säkerhetsfrågor i tekniska plattformar och kunna relatera teori till praktisk implementation.

För att alltid hålla en hög kvalitet på våra kurser använder vi både engelsk- och svensktalande experter som kursledare.

Detaljerad information

Kursmaterialet är på engelska, med detta innehåll:

Identity Governance and Access Control

Explore how to reduce standing access through Privileged Identity Management and just-in-time role activation. The module also covers managed identities, Microsoft Entra Agent IDs, risk-based Conditional Access, identity protection, and application registrations.

Securing Azure Key Vault

Learn how Azure Key Vault protects secrets, cryptographic keys, and certificates used by applications and AI workloads. The module covers access through Azure RBAC and managed identities, network protection, deletion safeguards, and threat detection with Defender for Key Vault.

Security Governance and Role Management

Explore how Azure Policy and Azure RBAC can be used to establish governance and enforce security requirements across Azure environments. The module also covers policy deployment, compliance monitoring, custom roles, excessive permissions, and resource locks.

Security for Azure Storage Accounts

Learn how to secure Azure Storage accounts by controlling network access, authentication, delegated access, and encryption. The module explains storage firewalls, SAS tokens, stored access policies, and threat protection with Defender for Storage.

Security for Azure Databases

Explore common security risks affecting Azure databases and how to address them using Microsoft Entra authentication, firewalls, and private connectivity. The module also covers auditing, security event collection in Microsoft Sentinel, and Defender for Databases.

Security for Azure Networking

Learn how to protect Azure networks using Network Security Groups, Application Security Groups, Azure Firewall, and hub-and-spoke architectures. The module also compares service and private endpoints, introduces Microsoft Entra Private Access, and covers network monitoring with Network Watcher.

Security for Servers and Virtual Machines

Explore how to secure servers and virtual machines across Azure and hybrid environments. Topics include just-in-time access, Azure Arc, Defender for Servers, vulnerability assessment, agent-based and agentless scanning, and disk encryption.

AI Data Risk and Exposure with Microsoft Purview DSPM

Learn how Microsoft Purview Data Security Posture Management helps identify data exposure that could create risks when using AI. The module focuses on discovering overshared content, reviewing findings, and remediating data-security issues, particularly in SharePoint.

AI Agent Identity and Access Security in Microsoft Entra

Explore how Microsoft Entra Agent ID can be used to manage and protect identities belonging to AI agents. The module examines the differences between agent and workload identities, potential compromise scenarios, applicable Conditional Access controls, governance, and monitoring with Defender XDR.

Microsoft Foundry and AI Gateway Security

Learn how to protect AI applications and endpoints in Microsoft Foundry against API abuse, prompt injection, and other threats. The module presents a layered security model combining API gateway controls, Foundry guardrails, and Defender for AI Services.

AI Security Monitoring with Defender for Cloud

Explore how Defender for Cloud helps monitor the security posture of AI workloads. The module covers dashboards, risks, recommendations, severity levels, and the relationship between AI-focused views and the unified Defender for Cloud dashboard.

Security for Application Platform Services

Learn how to secure containers, Azure Kubernetes Service, container registries, applications, and APIs. The module covers container threat protection, network controls, Web Application Firewall, application security controls, and API gateway policies.

Defender for Cloud Security Posture Management

Explore how Defender for Cloud evaluates and improves security posture through Secure Score, recommendations, regulatory standards, and remediation workflows. The module also covers secret scanning, accountable remediation, multicloud posture across AWS and Google Cloud, and advanced CSPM capabilities.

Microsoft Sentinel Data Collection and Configuration

Learn how Microsoft Sentinel collects and manages security data through Log Analytics workspaces and data connectors. The module covers connector health, Defender XDR integration, automation rules, playbooks built with Azure Logic Apps, and the Sentinel configuration process.

Microsoft Security Copilot Configuration

Explore how to configure and govern Microsoft Security Copilot in standalone and embedded experiences. Topics include Security Compute Units, role-based access, data and privacy settings, plugin governance, and the secure use of agents and automated security tasks.  

Kursplan

Kurskod
MSC-500
Pris
35450 kr (exklusive moms)
Kursform
På plats eller LiveClass

Leveransformer kan variera beroende på ort och datum.

På plats innebär att kursen hålls i klassrum. Läs mer här.
Live Online innebär att kursen hålls som en lärarledd interaktiv onlineutbildning. Läs mer här.

Längd
4 dagar
Ort & startdatum
Live Online
21 sep.
Live Online
7 dec.
Boka utbildning
Ledarskapsprogram
Executive AI Leadership Program
Tre månader som förändrar hur er ledning fattar beslut om AI. Ett gemensamt ramverk, ett gemensamt språk och en konkret handlingsplan för er organisation. Byggt för dem som bär det övergripande ansvaret.

Mer än en kurs

Relaterat innehåll

  • Avancerad IT
  • Artikel
  • Nyhet
Cisco Automation och Cybersecurity: DevNet och CyberOps byter namn
Cisco uppdaterar sina certifieringsspår, som får en tydligare och mer konsekvent namnstruktur. Här får du en tydlig sammanfattning av vad som händer, när det händer, hur du påverkas och vad just du behöver göra.
  • Avancerad IT
  • Nyhet
  • Artikel
Windows Server 2025 - Nyheter, kurser och utbildning
Windows Server 2025 är den största uppdateringen av Windows Server på nästan ett decennium. På Cornerstone ar vi tagit fram ett brett och heltäckande spektrum av av kurser som snabbt får dig på banan med den senaste tekniken.
  • Avancerad IT
  • Artikel
  • Nyhet
VMware Cloud Foundation 9 - vad betyder det för dig?
VCF 9 är Broadcoms plattform för privat moln – inte bara ”vSphere + NSX”, utan en sammanhållen stack med gemensam installation, drift och livscykel. Här är en enkel vägledning och kursöversikt för dig som arbetar med VMware-teknologier.

Få inspiration & nyheter från oss

Jag godkänner att Cornerstone skickar mig nyheter via e-post