Cybersecurity Private

Secure AI solutions in the cloud using Microsoft Defender for Cloud and Microsoft Entra (SC-5009)

Learn to secure cloud AI workloads with Microsoft Defender for Cloud, Microsoft Foundry, and Microsoft Entra using posture, protection, and identity controls.

Register or Request Training

  • Private class for your team
  • Live expert instructor
  • Online or on‑location
  • Customizable agenda
  • Proposal responses same day as request

Course Overview

Learn to secure cloud-based AI solutions by configuring AI workloads, applying cloud-native protections, and strengthening identity and access controls. This course covers AI authentication and trust boundaries, security posture management, workload protection, guardrails, and identity controls using Microsoft Defender for Cloud, Microsoft Foundry, and Microsoft Entra.

Course Benefits

  • Apply security posture management and workload protection to AI services with Microsoft Defender for Cloud.
  • Configure guardrails and cloud-native security controls for Microsoft Foundry environments.
  • Secure AI workloads with Microsoft Entra identity and access controls.
  • Implement Azure role-based access control, managed identities, and Azure Key Vault access policies.
  • Plan and administer Conditional Access and Microsoft Entra Identity Protection.

Delivery Methods

Private Class
Delivered for your team at your site or online.

Microsoft Certified Partner

Webucator is a Microsoft Certified Partner. This class uses official Microsoft courseware and will be delivered by a Microsoft Certified Trainer (MCT).

Microsoft Certified Partner

Course Outline

  1. Understand How Microsoft Defender for Cloud Supports AI Security and Governance in Azure
    1. Understand AI services in Azure
    2. Understand AI security risks in Azure
    3. AI guardrails and protections in Azure
    4. How Azure security and governance tools support AI workloads
    5. Module assessment
  2. Protect AI Workloads with Microsoft Defender for Cloud
    1. Enable the AI workloads plan
    2. Review insights in the Data & AI security dashboard
    3. Assess and improve AI security posture with Cloud Security Posture Management (CSPM)
    4. Detect AI threats at runtime with Cloud Workload Protection (CWP)
    5. Investigate AI security alerts with prompt evidence in Microsoft Defender XDR
    6. Module assessment
  3. Configure and Manage Guardrails in Microsoft Foundry
    1. Understand guardrails and Microsoft Content Safety
    2. Understand safety controls in Microsoft Foundry
    3. Try out built-in guardrails
    4. Create and manage blocklists in Microsoft Foundry
    5. Configure and apply guardrails in Microsoft Foundry
    6. Choose and refine the right guardrails for your AI workloads
    7. Module assessment
  4. Secure Microsoft Foundry Environments
    1. Control access to Microsoft Foundry with Microsoft Entra ID
    2. Manage access within Microsoft Foundry projects
    3. Secure Microsoft Foundry secrets with Azure Key Vault (preview)
    4. Isolate networks with managed virtual network and Private Link
    5. Enable diagnostic logging in Microsoft Foundry
    6. Module assessment
  5. Understand Identity Architecture for AI Workloads
    1. Identity as the control layer for AI solutions
    2. Management plane and data plane access in AI workloads
    3. Authentication flows for AI endpoints in Microsoft Foundry
    4. Human and workload identities in AI workloads
    5. Role assignments and scope in AI environments
    6. Common identity misconfigurations in AI deployments
    7. Module assessment
  6. Implement Access Management for Azure Resources
    1. Assign Azure roles
    2. Configure custom Azure roles
    3. Create and configure managed identities
    4. Access Azure resources with managed identities
    5. Analyze Azure role permissions
    6. Configure Azure Key Vault RBAC policies
    7. Retrieve objects from Azure Key Vault
  7. Plan, Implement, and Administer Conditional Access
    1. Plan security defaults
    2. Plan Conditional Access policies
    3. Implement Conditional Access policy controls and assignments
    4. Test and troubleshoot Conditional Access policies
    5. Implement application controls
    6. Implement session management and continuous access evaluation
    7. Microsoft Entra Conditional Access Optimization agent
    8. Module assessment
  8. Manage Microsoft Entra Identity Protection
    1. Review identity protection basics
    2. Implement and manage user risk policy
    3. Monitor, investigate, and remediate elevated risky users
    4. Implement security for workload identities
    5. Explore Microsoft Defender for Identity
    6. Explore the Identity Risk Management Agent
    7. Module assessment

Class Materials

Each student receives a comprehensive set of materials, including course notes and all class examples.

Class Prerequisites

Experience in the following would be useful for this Cloud Security class:

  • Familiarity with Microsoft Azure
  • Familiarity with cloud-native security concepts
  • Basic understanding of identity and access principles

Have questions about this course?

We can help with curriculum details, delivery options, pricing, or anything else. Reach out and we’ll point you in the right direction.