Microsoft Cybersecurity Architect
Beskrivelse
Kurset er til dig, der vil påtage dig rollen som Microsoft cybersikkerhedsarkitekt. Du bliver en form for IT advokat, der samarbejder på tværs af organisationen og sørger for samme høje sikkerhed på alle områder, samt overholdelse af gældende love og regulativer.
Kurset giver dig viden og erfaring med at implementere og administrere løsninger inden for bl.a.:
- Identitet og adgang
- Platformsbeskyttelse
- Sikkerhedsoperationer
- Datasikkerhed
- Applikationssikkerhed
- Hybrid- og multicloud-infrastrukturer.
På kurset lærer du at omsætte cybersikkerhedsstrategier til funktioner, der beskytter en organisations aktiver, forretning og drift. Derudover bliver du klædt på til at designe og guide implementering og vedligehold af sikkerhedsløsninger, der følger Zero Trust principper og best practices, herunder sikkerhedsstrategier for identitet, enheder, data, applikationer, netværk, infrastruktur og DevOps.
Du lærer også at designe og evaluere på løsninger til Governance and Risk Compliance (GRC), sikkerhedsoperationer og styring af sikkerhedspositioner.
Du får indblik i de områder, hvor du skal samarbejde med ledere og praktikere inden for it-sikkerhed, privatliv og andre roller på tværs af en organisation for at planlægge og implementere en cybersikkerhedsstrategi, der opfylder organisationens forretningsbehov.
Certificeringspakker
Moduloversigt
- Modul 1Design a Zero Trust strategy and architecture
Build an overall security strategy and architecture
Identify the integration points in an architecture by using Microsoft Cybersecurity Reference Architecture (MCRA)
Translate business goals into security requirements
Translate security requirements into technical capabilities, including security services, security products, and security processes
Design security for a resiliency strategy
Integrate a hybrid or multi-tenant environment into a security strategy
Develop a technical and governance strategy for traffic filtering and segmentation
Design a security operations strategy
Design a logging and auditing strategy to support security operations
Develop security operations to support a hybrid or multi-cloud environment
Design a strategy for SIEM and SOAR
Evaluate security workflows
Evaluate a security operations strategy for incident management lifecycle
Evaluate a security operations strategy for sharing technical threat intelligence
Design an identity security strategy
Note: includes hybrid and multi-cloud
Design a strategy for access to cloud resources
Recommend an identity store (tenants, B2B, B2C, hybrid)
Recommend an authentication strategy
Recommend an authorization strategy
Design a strategy for conditional access
Design a strategy for role assignment and delegation
Design security strategy for privileged role access to infrastructure including identitybased firewall rules, Azure PIM
Design security strategy for privileged activities including PAM, entitlement management, cloud tenant administration
- Modul 2Evaluate Governance Risk Compliance (GRC) technical strategies and security operations strategies
Design a regulatory compliance strategy
Interpret compliance requirements and translate into specific technical capabilities (new or existing)
Evaluate infrastructure compliance by using Microsoft Defender for Cloud
Interpret compliance scores and recommend actions to resolve issues or improve security
Design implementation of Azure Policy
Design for data residency requirements
Translate privacy requirements into requirements for security solutions
Evaluate security posture and recommend technical strategies to manage risk
Evaluate security posture by using benchmarks (including Azure security benchmarks, ISO 2701, etc.)
Evaluate security posture by using Microsoft Defender for Cloud
Evaluate security posture by using Secure Scores
Evaluate security posture of cloud workloads
Design security for an Azure Landing Zone
Interpret technical threat intelligence and recommend risk mitigations
Recommend security capabilities or controls to mitigate identified risks
- Modul 3Design security for infrastructure
Design a strategy for securing server and client endpoints
NOTE: includes hybrid and multi-cloud
Specify security baselines for server and client endpoints
Specify security requirements for servers, including multiple platforms and operating
systems
Specify security requirements for mobile devices and clients, including endpoint protection, hardening, and configuration
Specify requirements to secure Active Directory Domain Services
Design a strategy to manage secrets, keys, and certificates
Design a strategy for secure remote access
Design a strategy for securing SaaS, PaaS, and IaaS services
Specify security baselines for SaaS, PaaS, and IaaS services
Specify security requirements for IoT workloads
Specify security requirements for data workloads, including SQL, Azure SQL Database, Azure Synapse, and Azure Cosmos DB
Specify security requirements for web workloads, including Azure App Service
Specify security requirements for storage workloads, including Azure Storage
Specify security requirements for containers
Specify security requirements for container orchestration
- Modul 4Design a strategy for data and applications
Specify security requirements for applications
Specify priorities for mitigating threats to applications
Specify a security standard for onboarding a new application
Specify a security strategy for applications and APIs
Design a strategy for securing data
Specify priorities for mitigating threats to data
Design a strategy to identify and protect sensitive data
Specify an encryption standard for data at rest and in motion
Er du i tvivl?
Det ligger os meget på sinde, at du finder det kursusforløb, der skaber størst værdi for dig og din arbejdsplads. Tag fat i vores kursusrådgivere, de sidder klar til at hjælpe dig!