Azure Security, Identity and Compliance

Inquire now

Azure Security, Identity and Compliance equips IT professionals with the knowledge and practical skills to secure Azure environments, manage identities, enforce access controls, and maintain regulatory compliance using Microsoft Azure services.

 

Duration 3 Days – 21 hrs

 

Overview

The Azure Security, Identity and Compliance Training Course is designed to provide participants with a practical understanding of how to secure Microsoft Azure environments using identity management, access control, security monitoring, governance, and compliance tools.

This course covers Microsoft Entra ID, Azure role-based access control, privileged access concepts, security monitoring, Microsoft Defender for Cloud, Azure Policy, regulatory compliance, data protection, encryption, and cloud security best practices. Participants will learn how to apply security controls, manage user and application access, monitor cloud risks, and support compliance requirements in an Azure environment.

The course is suitable for organizations that want to strengthen their Azure security posture and ensure that cloud resources are managed according to internal policies, regulatory expectations, and industry best practices.

 

Objectives

  • Understand Azure security, identity, and compliance concepts.
  • Explain the shared responsibility model in cloud security.
  • Understand Microsoft Entra ID and its role in Azure identity management.
  • Apply Azure role-based access control and least privilege access principles.
  • Understand authentication, authorization, multi-factor authentication, and Conditional Access concepts.
  • Identify key Azure security services and monitoring tools.
  • Understand Microsoft Defender for Cloud and security posture management.
  • Use Azure Policy and governance controls to support compliance.
  • Understand encryption, key management, and data protection options in Azure.
  • Recognize common cloud compliance requirements and audit considerations.
  • Develop basic security and compliance controls for Azure resources.
  • Support cloud governance, risk management, and security operations activities

 

Target Audience

  • Cloud administrators
  • Systems administrators
  • Network administrators
  • Security administrators
  • IT governance, risk, and compliance teams
  • IT audit and compliance officers
  • Cloud support engineers
  • Infrastructure engineers
  • DevOps and platform teams
  • IT managers and technical leads
  • Application support teams
  • Professionals involved in Azure security, identity, and compliance activities

 

Prerequisites

  • Basic knowledge of cloud computing concepts
  • Basic familiarity with Microsoft Azure services
  • Basic understanding of networking, servers, and IT operations
  • Awareness of information security concepts is helpful
  • No advanced Azure security experience is required

 

 

Course Outline

 

Day 1: Azure Security and Identity Fundamentals

 

Module 1: Introduction to Azure Security

  • Overview of Azure security concepts
  • Shared responsibility model
  • Cloud security challenges
  • Zero Trust security model
  • Defense-in-depth approach
  • Common Azure security risks
  • Security roles and responsibilities in Azure

Module 2: Microsoft Entra ID Fundamentals

  • Introduction to Microsoft Entra ID
  • Users, groups, roles, and tenants
  • Identity lifecycle management
  • Authentication and authorization concepts
  • Single sign-on overview
  • Multi-factor authentication overview
  • Conditional Access overview
  • Identity protection concepts

 

Module 3: Azure Role-Based Access Control

  • Azure RBAC overview
  • Difference between Microsoft Entra roles and Azure roles
  • Role assignments and scopes
  • Built-in roles and custom roles overview
  • Least privilege access
  • Access reviews and role governance concepts
  • Common RBAC design mistakes

 

Module 4: Privileged Access and Identity Security

  • Privileged access risks
  • Administrative account protection
  • Privileged Identity Management overview
  • Break-glass account concept
  • Service principals and managed identities
  • Application permissions overview
  • Best practices for identity security

 

Day 2: Azure Security Controls and Monitoring

 

Module 5: Securing Azure Resources

  • Secure configuration of Azure resources
  • Network security groups
  • Azure Firewall overview
  • Private endpoints overview
  • Secure remote access concepts
  • Storage account security
  • Database security considerations
  • Secure application access concepts

Module 6: Data Protection and Encryption

  • Data protection principles in Azure
  • Encryption at rest and in transit
  • Azure Key Vault overview
  • Key, secret, and certificate management
  • Managed keys and customer-managed keys overview
  • Backup and recovery security considerations
  • Data classification and protection concepts

 

Module 7: Microsoft Defender for Cloud

  • Overview of Microsoft Defender for Cloud
  • Secure score concept
  • Security recommendations
  • Workload protection overview
  • Vulnerability assessment overview
  • Regulatory compliance dashboard overview
  • Security posture management
  • Remediation tracking

 

Module 8: Azure Monitoring and Security Operations

  • Azure Monitor overview
  • Activity logs and diagnostic logs
  • Log Analytics overview
  • Security alerts and incidents
  • Microsoft Sentinel overview
  • Security event monitoring
  • Incident response workflow overview
  • Reporting and escalation practices

 

Day 3: Azure Governance, Compliance, and Best Practices

 

Module 9: Azure Governance for Security and Compliance

  • Cloud governance overview
  • Governance versus security operations
  • Azure management groups
  • Subscription and resource group structure
  • Naming and tagging standards
  • Resource locks
  • Governance roles and ownership
  • Policy-based governance model

 

Module 10: Azure Policy and Compliance Management

  • Azure Policy overview
  • Policy definitions and initiatives
  • Assigning policies to scopes
  • Compliance assessment
  • Remediation tasks overview
  • Built-in security and compliance policies
  • Policy reporting and monitoring
  • Common governance use cases

 

Module 11: Regulatory Compliance and Audit Readiness

  • Cloud compliance concepts
  • Compliance responsibilities in Azure
  • Regulatory compliance dashboard overview
  • Microsoft Cloud Security Benchmark overview
  • Audit evidence and documentation
  • Security baseline alignment
  • Risk and control mapping
  • Compliance review cycle

 

Module 12: Security Best Practices and Implementation Workshop

  • Designing a secure Azure access model
  • Creating a basic RBAC structure
  • Defining security and compliance policies
  • Creating a tagging and ownership standard
  • Reviewing a sample security posture report
  • Identifying high-risk misconfigurations
  • Preparing a basic Azure security and compliance checklist
  • Developing an Azure security improvement action plan

Inquire now

Best selling courses

CLOUD COMPUTING

Terraform

Terraform is a configuration orchestration tool for building and managing infrastructure on cloud & data centers. The course is instructor-led, live training (onsite or remote), and is designed for Engineers with little or no previous experience managing infrastructure. The course talks about in-depth Terraform syntax and techniques used to automate the setup and deployment of infrastructure.

Duration  3 days – 21 hrs    Overview    The ITIL Leadership – Digital and IT Strategy training course is designed for senior IT professionals, managers, and leaders who seek to navigate the complex landscape of digital transformation and IT strategy. This course focuses on providing strategic insights, leadership skills, and practical approaches for aligning...

PROGRAMMING / CODING

Spring Architecture and Design

Spring Cloud is a platform for building Java-based distributed systems and microservices. Building complex enterprise applications is challenging. Any change made to a part of the systems could trigger the need for changing the design of the entire system. By the end of this training, participants will have a solid understanding of Service-Oriented Architecture (SOA) and Microservice Architecture as well practical experience using Spring Cloud and related Spring technologies for rapidly developing their own cloud-scale, cloud-ready microservices.

BUSINESS INTELLIGENCE

Dax

Duration 5 days – 35 hrs   Overview The DAX (Data Analysis Expressions) Training Course is designed to provide participants with a comprehensive understanding of DAX, the powerful formula language used in Power BI, Excel, and SQL Server Analysis Services. This course covers the essential concepts, functions, and techniques required to create advanced calculations and...

OPERATING SYSTEMS

Linux Fundamentals

Linux Fundamental provides students a thorough introduction to Linux™ for those who are new to the Linux environment. Delegates will learn how to manage files and directories, utilize the vi editor, work with Linux security mechanisms to protect files and programs, work with the Linux shell to control the flow and processing of data through pipelines, design and write shell programs of moderate complexity, and manage multiple concurrent processes in order to achieve higher utilization of Linux. They will learn how to perform basic operations on the system and how quickly to solve problem.

PROGRAMMING / CODING

Google Apps Script

The Google Apps Script training course give you a detailed knowledge on coding like Automating data calculation, Fetching and sending data from third party software like Trello & Salesforce, connecting different sheets, Documents and other tools, Setting a trigger based on an event. This course is ideal for someone who use google sheets and have no coding background.

This workshop teaches the participants how to design and develop server side applications using the event-driven, non-blocking model framework Node.js. This program inducts the participant in some of the advanced concepts of the JavaScript language so that the participant is well equipped to build end-to-end application using JavaScript.

Duration: 3 days – 21 hrs   Overview This training course is designed to provide participants with a comprehensive understanding of Portfolio Management and Contract Management, focusing on best practices, tools, and techniques. The course covers the strategic alignment of projects within a portfolio, effective management of contracts, risk management, and optimization of resources to...

// BG EARTH WHEN NOT PLAYING

We use cookies on our website to personalize your experience by storing your preferences and recognizing repeat visits. By clicking “Accept”, you agree to the use of all cookies. You can also select “Cookie Settings” to adjust your preferences and provide more specific consent. Cookie Policy