Securing Azure Services and Workloads with Microsoft Defender for Cloud (SC-5002)
Course 8713
1 DAY COURSE

Price: $488.00
Course Outline

This course guides you in securing Azure services and workloads using Microsoft Cloud Security Benchmark controls in Microsoft Defender for Cloud via the Azure portal.

Securing Azure Services and Workloads with Microsoft Defender for Cloud (SC-5002) Benefits

  • In this course, you will learn how to:

    • Gain practical knowledge and hands-on experience in filtering network traffic using Network Security Groups (NSGs) in the Azure portal, enhancing your skills in network security management.
    • Learn how to create and configure a Log Analytics workspace specifically tailored for Microsoft Defender for Cloud, improving data collection and security analysis capabilities.
    • Strengthen your Azure environment's security posture by implementing Microsoft Defender for Cloud and leveraging its features for threat detection and incident response.
    • Master the configuration and integration of a Log Analytics agent with a workspace in Defender for Cloud, enabling you to conduct in-depth security analysis and enhance incident management processes.
    • Acquire essential skills in configuring Azure Key Vault networking settings, ensuring secure access to stored secrets and enhancing overall data security measures.
    • Understand the process of securely connecting an Azure SQL server using an Azure Private Endpoint, contributing to improved data communication security within your Azure infrastructure.
  • Prerequisites

    • Practical experience in administration of Microsoft Azure and hybrid environments.
    • Strong familiarity with compute, network, and security in Azure, as well as Microsoft Entra ID.
    • Familiarity with security management and vulnerability remediation techniques.
    • Knowledge of threat modeling and implementation of threat protection measures.

Microsoft Defender Course Outline

Filter network traffic with a network security group using the Azure portal

Learn to filter network traffic using Network Security Groups (NSGs) in the Azure portal.

  • Understand how to create, configure, and apply NSGs for improved network security.
  • Azure resource group
  • Azure Virtual Network
  • How network security groups filter network traffic
  • Application security groups
  • Exercise Create a virtual network infrastructure
  • Knowledge check
  • Summary

Create a Log Analytics workspace for Microsoft Defender for Cloud

Discover how to create a Log Analytics workspace in the Azure portal for Microsoft Defender for Cloud.

  • Improve data collection and security analysis.
  • Defender for Cloud monitoring components
  • Exercise Create a workspace
  • Knowledge check
  • Summary

Set up Microsoft Defender for Cloud

Implement Microsoft Defender for Cloud using the Azure portal.

  • Strengthen security and threat detection in your Azure environment.
  • Security posture
  • Workload protections
  • Deploy Microsoft Defender for Cloud
  • Exercise Enable Defender for Cloud on your Azure subscription
  • Azure Arc
  • Microsoft cloud security benchmark
  • Configure Microsoft Defender for Cloud policies
  • Exercise Enable just-in-time access on Virtual Machines
  • Knowledge check
  • Summary

Configure and integrate a Log Analytics agent and workspace in Defender for Cloud

Configure and integrate a Log Analytics agent with a workspace in Defender for Cloud via the Azure portal.

  • Boost security analysis.
  • Collect data from your workloads with the Log Analytics agent
  • Configure the Log Analytics agent and workspace
  • Exercise Collect data from your workloads with the Log Analytics agent
  • Knowledge check
  • Summary

Configure Azure Key Vault networking settings

Learn to configure Azure Key Vault networking settings via the Azure portal.

  • Ensure secure and controlled access to stored secrets.
  • Azure Key Vault basic concepts
  • Best practices for Azure Key Vault
  • Configure Azure Key Vault firewalls and virtual networks
  • Exercise Configure Key Vault firewall and virtual networks
  • Exercise Configure Azure Key Vault recovery management with soft delete and purge protection
  • Knowledge check
  • Summary

Connect an Azure SQL server using an Azure Private Endpoint using the Azure portal

Securely connect an Azure SQL server via Azure Private Endpoint in the Azure portal.

  • Enhance data communication security.
  • Azure Private Endpoint
  • Azure Private Link
  • Exercise Deploy a virtual machine to test connectivity privately and securely to the SQL server across the private endpoint
  • Knowledge check
  • Summary
Course Dates
Attendance Method

How will you be attending the class?

Selecting 'Live Virtual' allows you to attend remotely from work or home. You will receive email communication well before the class starts with detailed instructions on how to validate your equipment and connect to the classroom for a quality learning experience.

Additional Details (optional)

Private Team Training

Interested in this course for your team? Please complete and submit the form below and we will contact you to discuss your needs and budget.