Azure Security Engineer Associate (AZ-500)

This learning path is designed to help you and your team prepare for the AZ-500 Microsoft Azure Security Technologies exam. Even if you aren’t planning to take the exam, these courses and hands-on labs will help you get started on your way to deploying and managing Microsoft Azure security technologies. The AZ-500 exam is part of Microsoft’s new role-based certification program. Candidates who pass the AZ-500 exam will earn the Microsoft Certified: Azure Security Engineer Associate certification.

img
request

Can’t find a batch you were looking for?

 
The AZ-500 exam tests your knowledge in four different subject areas, and that’s how this learning path is structured. We’ll start with managing identities and access. Next, we’ll get into implementing platform protection, which will include topics like Network Security Groups, Azure Firewalls, Container Security, and much more. You will then learn about managing security options using tools like Azure Monitor, the Azure Security Center, and Log Analytics. Rounding out the learning path, you’ll learn how to secure data and applications by configuring security policies, enabling auditing, leveraging Key Vault, and many other topics.

Course content

 

Manage identity and access

 

Manage Azure Active Directory identities
  • configure security for service principals
  • manage Azure AD directory groups
  • manage Azure AD users
  • configure password writeback
  • configure authentication methods including password hash and Pass Through Authentication (PTA), OAuth, and passwordless
  • transfer Azure subscriptions between Azure AD tenants
Configure secure access by using Azure AD
  • monitor privileged access for Azure AD Privileged Identity Management (PIM)
  • configure Access Reviews
  • activate and configure PIM
  • implement Conditional Access policies including Multi-Factor Authentication (MFA)
  • configure Azure AD identity protection
Manage application access
  • create App Registration
  • configure App Registration permission scopes
  • manage App Registration permission consent
  • manage API access to Azure subscriptions and resources
Manage access control
  • configure subscription and resource permissions
  • configure resource group permissions
  • configure custom RBAC roles
  • identify the appropriate role
  • apply principle of least privilege
  • interpret permissions
  • check access

 

Implement platform protection

 

Implement advanced network security 
  • secure the connectivity of virtual networks (VPN authentication, Express Route encryption)
  • configure Network Security Groups (NSGs) and Application Security Groups (ASGs)
  • create and configure Azure Firewall
  • configure Azure Front Door service as an Application Gateway
  • configure a Web Application Firewall (WAF) on Azure Application Gateway
  • configure Azure Bastion
  • configure a firewall on a storage account, Azure SQL, KeyVault, or App Service
  • implement Service Endpoints
  • implement DDoS
Configure advanced security for compute
  • configure endpoint protection
  • configure and monitor system updates for VMs
  • configure authentication for Azure Container Registry
  • configure security for different types of containers
  • implement vulnerability management
  • configure isolation for AKS
  • configure security for container registry
  • implement Azure Disk Encryption
  • configure authentication and security for Azure App Service
  • configure SSL/TLS certs
  • configure authentication for Azure Kubernetes Service
  • configure automatic updates

 

Manage security operations

 

Monitor security by using Azure Monitor
  • create and customize alerts
  • monitor security logs by using Azure Monitor
  • configure diagnostic logging and log retention
Monitor security by using Azure Security Center 
  • evaluate vulnerability scans from Azure Security Center
  • configure Just in Time VM access by using Azure Security Center
  • configure centralized policy management by using Azure Security Center
  • configure compliance policies and evaluate for compliance by using Azure Security Center
Monitor security by using Azure Sentinel 
  • create and customize alerts
  • configure data sources to Azure Sentinel
  • evaluate results from Azure Sentinel
  • configure a playbook for a security event by using Azure Sentinel
Configure security policies
  • configure security settings by using Azure Policy
  • configure security settings by using Azure Blueprint

 

Secure data and applications

 

Configure security for storage
  • configure access control for storage accounts
  • configure key management for storage accounts
  • configure Azure AD authentication for Azure Storage
  • configure Azure AD Domain Services authentication for Azure Files
  • create and manage Shared Access Signatures (SAS)
  • create a shared access policy for a blob or blob container
  • configure Storage Service Encryption
Configure security for databases
  • enable database authentication
  • enable database auditing
  • configure Azure SQL Database Advanced Threat Protection
  • implement database encryption
  • implement Azure SQL Database Always Encrypted
Configure and manage Key Vault
  • manage access to Key Vault
  • manage permissions to secrets, certificates, and keys
  • configure RBAC usage in Azure Key Vault
  • manage certificates
  • manage secrets
  • configure key rotation
  • backup and restore of Key Vault items

 

To see the full course content Download now

Course Prerequisites

 
  • Microsoft Azure Administrator Associate.
  • A candidate for this exam should be familiar with scripting and automation, should have a deep understanding of networking and virtualization. A candidate should also have a strong familiarity with cloud capabilities, Azure products and services, and other Microsoft products and services.
  • Candidates for this exam should have subject matter expertise implementing security controls and threat protection, managing identity and access, and protecting data, applications, and networks in cloud and hybrid environments as part of an end-to-end infrastructure.

Who can attend

 
  • Students should have at least one year of hands-on experience securing Azure workloads and experience with security controls for workloads on Azure.

Number of Hours: 40hrs

Certification

AZ-500

Key features

  • One to One Training
  • Online Training
  • Fastrack & Normal Track
  • Resume Modification
  • Mock Interviews
  • Video Tutorials
  • Materials
  • Real Time Projects
  • Virtual Live Experience
  • Preparing for Certification

FAQs

DASVM Technologies offers 300+ IT training courses with 10+ years of Experienced Expert level Trainers.

  • One to One Training
  • Online Training
  • Fastrack & Normal Track
  • Resume Modification
  • Mock Interviews
  • Video Tutorials
  • Materials
  • Real Time Projects
  • Materials
  • Preparing for Certification

Call now: +91-99003 49889 and know the exciting offers available for you!

We working and coordinating with the companies exclusively to get placed. We have a placement cell focussing on training and placements in Bangalore. Our placement cell help more than 600+ students per year.

Learn from experts active in their field, not out-of-touch trainers. Leading practitioners who bring current best practices and case studies to sessions that fit into your work schedule. We have a pool of experts and trainers are composed with highly skilled and experienced in supporting you in specific tasks and provide professional support. 24x7 Learning support from mentors and a community of like-minded peers to resolve any conceptual doubts. Our trainers has contributed in the growth of our clients as well as professionals.

All of our highly qualified trainers are industry experts with at least 10-12 years of relevant teaching experience. Each of them has gone through a rigorous selection process which includes profile screening, technical evaluation, and a training demo before they are certified to train for us. We also ensure that only those trainers with a high alumni rating continue to train for us.

No worries. DASVM technologies assure that no one misses single lectures topics. We will reschedule the classes as per your convenience within the stipulated course duration with all such possibilities. If required you can even attend that topic with any other batches.

DASVM Technologies provides many suitable modes of training to the students like:

  • Classroom training
  • One to One training
  • Fast track training
  • Live Instructor LED Online training
  • Customized training

Yes, the access to the course material will be available for lifetime once you have enrolled into the course.

You will receive DASVM Technologies recognized course completion certification & we will help you to crack global certification with our training.

Yes, DASVM Technologies provides corporate trainings with Course Customization, Learning Analytics, Cloud Labs, Certifications, Real time Projects with 24x7 Support.

Yes, DASVM Technologies provides group discounts for its training programs. Depending on the group size, we offer discounts as per the terms and conditions.

We accept all major kinds of payment options. Cash, Card (Master, Visa, and Maestro, etc), Wallets, Net Banking, Cheques and etc.

DASVM Technologies has a no refund policy. Fees once paid will not be refunded. If the candidate is not able to attend a training batch, he/she is to reschedule for a future batch. Due Date for Balance should be cleared as per date given. If in case trainer got cancelled or unavailable to provide training DASVM will arrange training sessions with other backup trainer.

Your access to the Support Team is for lifetime and will be available 24/7. The team will help you in resolving queries, during and after the course.

Please Contact our course advisor +91-99003 49889. Or you can share your queries through info@dasvmtechnologies.com

like our courses