4-Day Instructor-Led Training Course
- Microsoft Official Course content
Hands-on labs
- MOC exam voucher included in course tuition
After-course instructor coaching included
Implement End to End Security Controls for Cloud and AI Workloads (SC-500)
Course 8785
- Duration: 4 days
- Exam Voucher: Yes
- Language: English
- Level: Foundation
This course prepares learners to design, implement, and manage end-to-end security controls across Microsoft Azure and Microsoft 365 environments, including AI workloads and autonomous agents. Participants build practical skills in identity security, cloud infrastructure protection, threat detection, regulatory compliance, security posture management, and AI workload protection.
Learners explore how Microsoft Entra ID, Azure Key Vault, Azure Policy, Microsoft Defender for Cloud, Microsoft Defender XDR, Microsoft Sentinel, Microsoft Purview, Microsoft Security Copilot, Microsoft Agent 365, and Microsoft Foundry work together to protect cloud, hybrid, and AI-enabled environments.
Cloud and AI Security Controls Course Delivery Methods
In-Person
Online
Upskill your whole team by bringing Private Team Training to your facility.
Cloud and AI Security Controls Course Training Information
Course Benefits
- Builds practical skills for securing Azure, Microsoft 365, hybrid, and AI-enabled environments
- Helps security teams implement controls across identity, data, networking, compute, applications, and AI workloads
- Covers Microsoft Defender for Cloud, Defender XDR, Microsoft Sentinel, Security Copilot, Microsoft Purview, and Agent 365
- Supports proactive risk reduction through posture management, compliance controls, access governance, and threat detection
- Helps organizations secure AI platforms, agents, data, identities, and infrastructure
- Prepares learners for the Microsoft Certified: Cloud and AI Security Engineer Associate certification
Prerequisites
Learners should have practical experience administering Microsoft Azure and hybrid environments, including compute, network, and storage. Microsoft also recommends strong familiarity with Microsoft Entra ID and familiarity with Microsoft 365 administration.
Exam Information
Microsoft Certified: Cloud and AI Security Engineer Associate
Cloud and AI Security Controls Course Outline
Identity, Access, and Privileged Access Security
In this section, learners secure access to cloud resources using Microsoft Entra ID, authentication methods, role-based access control, privileged access, and just-in-time access patterns.
- Manage and implement authentication methods in Microsoft Entra ID
- Implement and configure Privileged Identity Management
- Manage RBAC role assignments for least privilege
Key Vault, Governance, and Compliance Controls
In this section, learners protect secrets, keys, certificates, and cloud resources using Azure Key Vault, Azure Policy, resource locks, Microsoft Defender for Cloud, and regulatory compliance dashboards.
- Configure and secure Azure Key Vault
- Manage keys, secrets, and certificates in Azure Key Vault
- Enforce governance with Azure Policy and Defender for Cloud
Data, Storage, and Database Security
In this section, learners secure Azure storage, databases, backup data, and infrastructure as code using access controls, encryption, network restrictions, Defender plans, and audit logging.
- Secure Azure Storage
- Implement Microsoft Defender for Storage and Databases
- Secure Azure SQL and backup data
Network Security and Private Connectivity
In this section, learners reduce exposure across cloud and hybrid networks using segmentation, firewalls, private endpoints, VPN gateways, Microsoft Entra Private Access, and Azure Private Link.
- Segment and isolate Azure workloads
- Centralize traffic inspection with Azure Firewall
- Secure hybrid and private access
AI Workload, Agent, and Copilot Security
In this section, learners secure AI workloads and agents using Microsoft Defender XDR, Microsoft Defender for Cloud, Microsoft Agent 365, Microsoft Purview, Microsoft Foundry, AI Gateway, and Microsoft Security Copilot.
- Secure Microsoft Entra Agent Identity and AI agents
- Protect Copilot Studio and Microsoft Foundry workloads
- Protect and govern AI workloads
- Use Microsoft Security Copilot
Compute, Container, and Application Security
In this section, learners secure Azure virtual machines, hybrid servers, containers, Kubernetes, application services, APIs, and serverless workloads.
- Secure Azure virtual machines and hybrid servers
- Secure containers and Kubernetes
- Secure applications and APIs
Security Posture, Threat Detection, and Monitoring
In this section, learners manage cloud security posture, connect hybrid and multicloud environments, monitor risk, configure Microsoft Sentinel, and automate security operations.
- Manage cloud and multicloud posture
- Configure Microsoft Sentinel
- Monitor vulnerabilities and security findings
Need Help Finding The Right Training Solution?
Our training advisors are here for you.
Cloud and AI Security Controls Course FAQs
This course is designed for security engineers and cloud security professionals responsible for protecting Azure, Microsoft 365, hybrid, multicloud, and AI-enabled environments.
Some describe SC-500 as the successor to AZ-500, but Microsoft positions SC-500 around broader cloud and AI security controls, including Azure, Microsoft 365, AI workloads, agents, Defender, Sentinel, and Security Copilot.
Yes. Microsoft describes the course as including instructor-led sessions and hands-on labs focused on identity security, cloud infrastructure protection, threat detection, and posture management.
The course covers Microsoft Entra ID, Azure Key Vault, Azure Policy, Microsoft Defender for Cloud, Microsoft Defender XDR, Microsoft Sentinel, Microsoft Purview, Microsoft Security Copilot, Microsoft Agent 365, and Microsoft Foundry.
Yes. The course includes securing AI workloads, agent identities, Copilot Studio agents, AI Gateway, Microsoft Foundry guardrails, Defender for AI Services, Microsoft Agent 365, and AI data risks in Microsoft Purview.