Implement End to End Security Controls for Cloud and AI Workloads (SC-500)

Course 8785

  • Duration: 4 days
  • Exam Voucher: Yes
  • Language: English
  • Level: Foundation

This course prepares learners to design, implement, and manage end-to-end security controls across Microsoft Azure and Microsoft 365 environments, including AI workloads and autonomous agents. Participants build practical skills in identity security, cloud infrastructure protection, threat detection, regulatory compliance, security posture management, and AI workload protection.

Learners explore how Microsoft Entra ID, Azure Key Vault, Azure Policy, Microsoft Defender for Cloud, Microsoft Defender XDR, Microsoft Sentinel, Microsoft Purview, Microsoft Security Copilot, Microsoft Agent 365, and Microsoft Foundry work together to protect cloud, hybrid, and AI-enabled environments.

Cloud and AI Security Controls Course Delivery Methods

  • In-Person

  • Online

  • Upskill your whole team by bringing Private Team Training to your facility.

Cloud and AI Security Controls Course Training Information

  • Course Benefits

    • Builds practical skills for securing Azure, Microsoft 365, hybrid, and AI-enabled environments
    • Helps security teams implement controls across identity, data, networking, compute, applications, and AI workloads
    • Covers Microsoft Defender for Cloud, Defender XDR, Microsoft Sentinel, Security Copilot, Microsoft Purview, and Agent 365
    • Supports proactive risk reduction through posture management, compliance controls, access governance, and threat detection
    • Helps organisations secure AI platforms, agents, data, identities, and infrastructure
    • Prepares learners for the Microsoft Certified: Cloud and AI Security Engineer Associate certification

    Prerequisites

    Learners should have practical experience administering Microsoft Azure and hybrid environments, including compute, network, and storage. Microsoft also recommends strong familiarity with Microsoft Entra ID and familiarity with Microsoft 365 administration.

    Exam Information

    Microsoft Certified: Cloud and AI Security Engineer Associate

Cloud and AI Security Controls Course Outline

Identity, Access, and Privileged Access Security

In this section, learners secure access to cloud resources using Microsoft Entra ID, authentication methods, role-based access control, privileged access, and just-in-time access patterns.

  • Manage and implement authentication methods in Microsoft Entra ID
  • Implement and configure Privileged Identity Management
  • Manage RBAC role assignments for least privilege

Key Vault, Governance, and Compliance Controls

In this section, learners protect secrets, keys, certificates, and cloud resources using Azure Key Vault, Azure Policy, resource locks, Microsoft Defender for Cloud, and regulatory compliance dashboards.

  • Configure and secure Azure Key Vault
  • Manage keys, secrets, and certificates in Azure Key Vault
  • Enforce governance with Azure Policy and Defender for Cloud

Data, Storage, and Database Security

In this section, learners secure Azure storage, databases, backup data, and infrastructure as code using access controls, encryption, network restrictions, Defender plans, and audit logging.

  • Secure Azure Storage
  • Implement Microsoft Defender for Storage and Databases
  • Secure Azure SQL and backup data

Network Security and Private Connectivity

In this section, learners reduce exposure across cloud and hybrid networks using segmentation, firewalls, private endpoints, VPN gateways, Microsoft Entra Private Access, and Azure Private Link.

  • Segment and isolate Azure workloads
  • Centralise traffic inspection with Azure Firewall
  • Secure hybrid and private access

AI Workload, Agent, and Copilot Security

In this section, learners secure AI workloads and agents using Microsoft Defender XDR, Microsoft Defender for Cloud, Microsoft Agent 365, Microsoft Purview, Microsoft Foundry, AI Gateway, and Microsoft Security Copilot.

  • Secure Microsoft Entra Agent Identity and AI agents
  • Protect Copilot Studio and Microsoft Foundry workloads
  • Protect and govern AI workloads
  • Use Microsoft Security Copilot

Compute, Container, and Application Security

In this section, learners secure Azure virtual machines, hybrid servers, containers, Kubernetes, application services, APIs, and serverless workloads.

  • Secure Azure virtual machines and hybrid servers
  • Secure containers and Kubernetes
  • Secure applications and APIs

Security Posture, Threat Detection, and Monitoring

In this section, learners manage cloud security posture, connect hybrid and multicloud environments, monitor risk, configure Microsoft Sentinel, and automate security operations.

  • Manage cloud and multicloud posture
  • Configure Microsoft Sentinel
  • Monitor vulnerabilities and security findings

Need Help Finding The Right Training Solution?

Our training advisors are here for you.

Cloud and AI Security Controls Course FAQs

This course is designed for security engineers and cloud security professionals responsible for protecting Azure, Microsoft 365, hybrid, multicloud, and AI-enabled environments.

Some describe SC-500 as the successor to AZ-500, but Microsoft positions SC-500 around broader cloud and AI security controls, including Azure, Microsoft 365, AI workloads, agents, Defender, Sentinel, and Security Copilot.

Yes. Microsoft describes the course as including instructor-led sessions and hands-on labs focused on identity security, cloud infrastructure protection, threat detection, and posture management.

The course covers Microsoft Entra ID, Azure Key Vault, Azure Policy, Microsoft Defender for Cloud, Microsoft Defender XDR, Microsoft Sentinel, Microsoft Purview, Microsoft Security Copilot, Microsoft Agent 365, and Microsoft Foundry.

Yes. The course includes securing AI workloads, agent identities, Copilot Studio agents, AI Gateway, Microsoft Foundry guardrails, Defender for AI Services, Microsoft Agent 365, and AI data risks in Microsoft Purview.