Topics
Skill: Manage Azure identities and governance
Part 1: Manage Microsoft Entra users and groups
Session 1: Creating Users and Groups
- Steps to create new user accounts
- Creating and managing groups for access control
Session 2: Managing User and Group Properties
- Editing user attributes and properties
- Adjusting group membership and settings
Session 3: Managing Licenses in Microsoft Entra ID
- Assigning and reviewing license allocations
- Ensuring compliance with licensing policies
Session 4: Managing External Users and Configuring Self-Service Password Reset (SSPR)
- Inviting and managing external users
- Configuring and monitoring SSPR policies
Part 2: Manage access to Azure resources
Session 5: Managing Built-in Azure Roles
- Overview of built-in roles and their functions
- Assigning roles for specific access needs
Session 6: Assigning Roles at Different Scopes
- Applying roles at subscription, resource group, and resource levels
- Managing inherited permissions effectively
Session 7: Interpreting Access Assignments
- Using Access Control (IAM) for auditing
Adjusting access assignments as needed
Part 3: Manage Azure subscriptions and governance
Session 8: Implementing and Managing Azure Policy
- Creating and assigning policies
- Using initiatives for grouped policy enforcement
Session 9: Configuring Resource Locks
- Applying read-only and delete locks
- Understanding scenarios for using resource locks
Session 10: Applying and Managing Tags on Resources
- Using tagging strategies for cost management and ownership
- Applying tags in bulk
Session 11: Managing Resource Groups and Subscriptions
- Organizing resources into resource groups
- Adjusting subscription settings
Session 12: Managing Costs with Alerts, Budgets, and Azure Advisor
- Setting up cost alerts and budgets
- Using Azure Advisor for spending optimization
Session 13: Configuring Management Groups
- Grouping subscriptions for unified governance
- Managing policies and RBAC at the management group level
Skill: Implement and Manage Storage
Part 1: Configuring Access to Storage
Session 1: Configuring Azure Storage Firewalls and Virtual Networks
- Setting up storage firewalls for secure access
- Configuring virtual network restrictions
Session 2: Creating and Using Shared Access Signature (SAS) Tokens
- Generating and managing SAS tokens
- Defining secure usage policies for SAS tokens
Session 3: Configuring Stored Access Policies
- Managing stored access policies for shared resources
- Linking policies to SAS tokens
Session 4: Managing Access Keys
- Rotating and monitoring storage account keys
- Best practices for secure key usage
Session 5: Configuring Identity-Based Access for Azure Files
- Integrating Azure AD with Azure Files
- Managing permissions with RBAC
Part 2: Configuring and Managing Storage Accounts
Session 6: Creating and Configuring Storage Accounts
- Setting up and configuring storage accounts
- Selecting performance tiers and redundancy options
Session 7: Configuring Azure Storage Redundancy
- Overview of LRS, ZRS, GRS, and RA-GRS
- Monitoring replication and redundancy settings
Session 8: Configuring Object Replication
- Setting up blob replication rules
- Resolving conflicts in replication jobs
Session 9: Configuring Storage Account Encryption
- Configuring encryption with managed or customer keys
- Monitoring encryption compliance
Session 10: Managing Data Using Azure Storage Explorer and AzCopy
- Managing data with Azure Storage Explorer
Using AzCopy for automation
Part 3: Configuring Azure Files and Azure Blob Storage
Session 11: Creating and Configuring a File Share in Azure Storage
- Creating file shares with quotas and access settings
- Mounting shares on client systems
Session 12: Creating and Configuring a Container in Blob Storage
- Setting up blob containers and managing blobs
- Configuring access and metadata
Session 13: Configuring Storage Tiers
- Optimizing costs with hot, cool, and archive tiers
- Managing tier transitions
Session 14: Configuring Snapshots and Soft Delete for Azure Files
- Enabling snapshots for point-in-time recovery
- Configuring soft delete for accidental recovery
Session 15: Configuring Blob Lifecycle Management
- Automating blob deletion and retention policies
- Monitoring lifecycle execution
Session 16: Configuring Blob Versioning
- Enabling and managing blob versioning
- Restoring previous versions as needed
Skill: Deploy and Manage Azure Compute Resources
Part 1: Automating Deployment with ARM Templates or Bicep Files
Session 1: Interpreting Templates and Bicep Files
- Analyzing the structure of templates
- Identifying key elements and syntax
Session 2: Modifying Existing Templates
- Editing ARM templates for specific deployments
- Updating Bicep files for new resource configurations
Session 3: Deploying Resources with Templates or Bicep Files
- Steps to deploy with Azure CLI or portal
- Verifying and troubleshooting deployments
Session 4: Exporting and Converting Deployments
- Exporting existing deployments to ARM templates
- Converting templates to Bicep files
Part 2: Creating and Configuring Virtual Machines
Session 5: Creating Virtual Machines
- Deploying VMs with Azure Portal and CLI
- Configuring initial settings for VMs
Session 6: Configuring Azure Disk Encryption
- Enabling encryption and managing keys
- Auditing disk encryption compliance
Session 7: Managing VM Sizes and Disks
- Adjusting sizes for performance needs
- Managing data disks and performance
Session 8: Deploying VMs to Availability Zones and Sets
- Ensuring high availability through zones and sets
- Configuring redundancy and fault domains
Session 9: Deploying Azure Virtual Machine Scale Sets
- Setting up autoscaling with scale sets
- Monitoring and managing scale set performance
Part 3: Provisioning and Managing Containers
Session 10: Creating and Managing Azure Container Registries
- Setting up a container registry
- Managing repositories and images securely
Session 11: Provisioning Containers with Azure Container Instances
- Deploying containers with environment configurations
- Scaling instances effectively
Session 12: Provisioning Containers with Azure Container Apps
- Configuring app environments and revisions
Managing autoscaling for apps
Part 4: Creating and Configuring Azure App Service
Session 13: Provisioning App Service Plans
- Selecting and configuring pricing tiers
- Managing cost metrics
Session 14: Creating and Configuring App Services
- Setting up applications with secure configurations
- Managing app settings and TLS
Session 15: Configuring Networking and Backup
- Integrating App Services with VNETs
Setting up backups and recovery
Skill: Implement and Manage Virtual Networking
Part 1: Configuring and Managing Virtual Networks
Session 1: Creating Virtual Networks and Subnets
- Setting up networks and subnets
- Configuring IP ranges and properties
Session 2: Configuring Virtual Network Peering
- Connecting networks for seamless communication
- Managing peering and resolving issues
Session 3: Configuring Public IP Addresses
- Managing IPs for resources
- Monitoring and troubleshooting public IP usage
Session 4: Configuring User-Defined Routes
- Customizing traffic flow with routes
- Managing route priorities and conflicts
Session 5: Troubleshooting Network Connectivity
- Diagnosing and fixing connectivity problems
Part 2: Configuring Secure Access to Virtual Networks
Session 6: Configuring NSGs and Application Security Groups
- Creating security groups for access control
- Managing and evaluating effective rules
Session 7: Implementing Azure Bastion
- Securely accessing VMs with Bastion
- Configuring user policies and auditing access
Session 8: Configuring Service and Private Endpoints
- Securing PaaS services with service endpoints
- Setting up private endpoints for secure connectivity
Part 3: Configuring Name Resolution and Load Balancing
Session 9: Configuring Azure DNS
- Managing DNS zones and records
- Troubleshooting DNS configurations
Session 10: Configuring Load Balancers
- Setting up internal and public load balancers
- Configuring backend pools and health probes
Session 11: Troubleshooting Load Balancing
- Using Azure tools to monitor and fix issues
Skill: Monitor and Maintain Azure Resources
Part 1: Monitoring Resources in Azure
Session 1: Interpreting Metrics in Azure Monitor
- Understanding key metrics for monitoring
- Using Azure Monitor for insights
Session 2: Configuring Log Settings
- Setting up diagnostic logs
- Using logs for performance analysis
Session 3: Querying and Analyzing Logs
- Using Log Analytics to query and analyze data
- Configuring alerts for specific scenarios
Session 4: Monitoring Virtual Machines, Storage Accounts, and Networks
- Using insights for monitoring resources
- Setting up and interpreting alerts
Session 5: Using Network Watcher and Connection Monitor
- Setting up Network Watcher for diagnostics
- Analyzing connection issues
Part 2: Implementing Backup and Recovery
Session 6: Configuring Recovery Services Vault
- Setting up vaults for backup
- Managing vault settings
Session 7: Configuring Azure Backup
- Creating backup policies and restoring data
- Monitoring and troubleshooting backups
Session 8: Configuring Azure Site Recovery
- Setting up Site Recovery for disaster recovery
- Performing failovers and failbacks
Session 9: Interpreting Backup Reports and Alerts
- Configuring reports for backups
- Troubleshooting issues based on alerts