Tekoälyn yleistyminen ja pilvipalveluiden jatkuva kasvu asettavat organisaatioille uusia tietoturvavaatimuksia. Tämä on ajankohtainen koulutus, jossa opitaan suojaamaan identiteettejä, dataa, sovelluksia ja infrastruktuuria Azure- ja Microsoft 365 -ympäristöissä. Koulutus tutustuttaa Microsoftin keskeisiin tietoturvaratkaisuihin sekä tekoälykuormien turvalliseen käyttöönottoon, uhkien tunnistamiseen ja organisaation turvallisuusaseman kehittämiseen käytännönläheisten esimerkkien avulla.
Tavoite
Koulutuksen tavoitteena on antaa osallistujille valmiudet suunnitella, toteuttaa ja hallita tietoturvakontrolleja pilvi- ja AI-ympäristöissä. Koulutuksen jälkeen osallistuja osaa hyödyntää Microsoftin tietoturvapalveluita käyttäjien, datan, sovellusten ja infrastruktuurin suojaamisessa sekä tunnistaa ja hallita nykyaikaisia tietoturvauhkia.
Kenelle
Koulutus on suunnattu tietoturva-asiantuntijoille ja turvallisuusinsinööreille, jotka vastaavat pilvi- ja hybridiympäristöjen suojauksesta. Se sopii myös pilviarkkitehtien, järjestelmäasiantuntijoiden, DevOps- ja kehitystiimien sekä identiteetin- ja tietoturvan parissa työskenteleville asiantuntijoille.
Koulutukseen osallistujalla on suositeltavaa olla kokemusta Microsoft Azure -ympäristöistä sekä perustuntemusta Microsoft Entra ID:stä ja Microsoft 365:stä.
Lisätiedot
Koulutus valmentaa Microsoftin viralliseen sertifiointitestiin, jossa mitataan sekä teoreettista osaamista että kykyä soveltaa taitoja käytännön tilanteissa. Sertifiointi on maailmanlaajuisesti tunnustettu ja vahvistaa osaamistasi sekä tuo virallisen tunnustuksen ammattitaidostasi. Tutustu sertifiointitesteihin tarkemmin täältä.
Koulutuksen sisältö
Secure access to resources by using Microsoft Entra
- Manage and implement authentication methods in Microsoft Entra ID
- Implement and configure Privileged Identity Management (PIM)
- Authenticate your API plugin for declarative agents with secured APIs
Secure Azure Key Vault with defense in depth for the cloud and AI workloads
- Configure and secure Azure Key Vault
- Manage keys and secrets in Azure Key Vault
- Manage certificates and monitor Azure Key Vault
- Protect Key Vault with Microsoft Defender for Cloud
Enforce security governance and regulatory compliance
- Enforce governance with Azure Policy and resource locks
- Configure security controls and remediate recommendations in Microsoft Defender for Cloud
- Evaluate regulatory compliance in Defender for Cloud
- Manage and right-size RBAC role assignments for least privilege
- Protect backup data with Azure Backup security features
- Implement security controls in infrastructure as code
Implement security for Azure Storage for the cloud and AI security engineer
- Describe Azure Storage services
- Implement security and manage access for Azure Storage
- Configure network security for Azure Storage
- Implement Microsoft Defender for Storage
Implement security for Azure SQL databases
- Configure platform-level security for Azure SQL
- Configure auditing for Azure SQL Database and SQL Managed Instance
- Implement Microsoft Defender for Databases
Implement network security controls in Azure
- Segment and isolate workloads using network security controls
- Centralize and enforce traffic inspection using Azure Firewall
- Secure remote and hybrid connectivity using VPN gateways and Microsoft Entra Private Access
- Eliminate public exposure for Azure PaaS services
Implement security for AI
- Secure access with Microsoft Entra Agent Identity
- Analyze AI identity risks using Microsoft Defender XDR
- Enable real-time protection for Copilot Studio agents
- Configure AI gateway security in Microsoft Foundry
- Configure and manage guardrails in Microsoft Foundry
- Protect AI workloads with Microsoft Defender for Cloud
- Enable Defender for AI Services workload protection in Microsoft Defender for Cloud
- Manage agents using Microsoft Agent 365
- Identify AI data risks with Microsoft Purview Data Security Posture Management
Implement security for servers and virtual machines
- Implement disk encryption for Azure virtual machines
- Configure trusted launch security features for Azure virtual machines
- Plan and implement Azure Bastion
- Manage security for Azure Arc-enabled hybrid servers
- Implement Microsoft Defender for Servers
- Enable and enforce just-in-time VM access
- Enforce VM security configuration with Azure Machine Configuration
Secure Azure application platform services for the cloud and AI security engineer
- Detect container risks with Microsoft Defender for Containers
- Implement security controls for Azure Kubernetes Service
- Implement security controls for Azure Container Registry, Container Instances, and Container Apps
- Implement security controls for Azure Functions and Logic Apps
- Implement security with Web Application Firewall
- Implement API backend using Azure API Management
Manage security posture by using Microsoft Defender for Cloud
- Connect hybrid and multicloud environments to Microsoft Defender for Cloud
- Identify security risks with Cloud Security Posture Management
- Discover unprotected assets and vulnerabilities by using Microsoft Defender External Attack Surface Management
- Evaluate regulatory in Defender for Cloud
- Enable and configure workload protection plans in Microsoft Defender for Cloud
- Configure Microsoft Defender Vulnerability Management settings for Azure VMs
Implement activity and event collection in Microsoft Sentinel
- Create and manage Microsoft Sentinel workspaces
- Manage content in Microsoft Sentinel
- Connect Microsoft services to Microsoft Sentinel
- Connect Syslog data sources to Microsoft Sentinel
- Connect Common Event Format (CEF) logs to Microsoft Sentinel
- Connect Windows hosts to Microsoft Sentinel
- Implement automation rules and playbooks in Microsoft Sentinel
- Manage data storage and query audit logs in Microsoft Sentinel
Deploy and operate Microsoft Security Copilot
- Describe Microsoft Security Copilot
- Configure workspaces for Microsoft Security Copilot
- Manage plugins and agents in Microsoft Security Copilot
Avainsanat
Microsoft Azure, Microsoft 365, Pilviturvallisuus, AI Security, Microsoft Defender, Microsoft Entra ID, Identiteetinhallinta, Uhkien torjunta, Security Operations, Compliance, Hybridipilvi, Zero Trust, Cloud Security, Security Engineer, Exam/Certification, Authorized Lab Hoster (ALH)


English