Implement Windows Server IaaS VM Security

0
Microsoft Learn
Free Online Course
English
4-5 hours worth of material
selfpaced

Overview

  • Module 1: You'll learn about Azure Security Center and how to onboard Windows Server computers to Security Center. You'll also learn about Azure Sentinel, security information and event management (SIEM), and security orchestration, automation and response (SOAR).
  • After completing this module, you will be able to:

    • Describe Azure Security Center.
    • Enable Azure Security Center in hybrid environments.
    • Onboard Windows Server computers to Azure Security Center.
    • Implement and assess security policies.
    • Describe Azure Sentinel.
    • Implement SIEM and SOAR.
    • Protect your resources with Azure Security Center.
  • Module 2: You'll be able to enable Azure Update Management, deploy updates, review an update assessment, and manage updates for your Azure VMs.
  • After completing this module, you will be able to:

    • Describe Azure updates.
    • Enable Update Management.
    • Deploy updates.
    • Review an update assessment.
    • Manage updates for your Azure VMs.
  • Module 3: You'll be able to implement Adaptive application controls within your organization to protect your Windows Server IaaS VMs.
  • After completing this module, you'll be able to:

    • Enable Adaptive application controls.
    • Implement adaptive application control policies.
  • Module 4: Configure BitLocker disk encryption for Windows IaaS Virtual Machines
  • After completing this module, you'll be able to:

    • Describe Azure Disk Encryption.
    • Configure Key Vault to support Azure Disk Encryption.
    • Explain how to encrypt Azure IaaS VM hard disks.
    • Back up and recover encrypted data from IaaS VM hard disks.
  • Module 5: Implement change tracking and file integrity monitoring for Windows IaaS VMs
  • After completing this module, you will be able to:

    • Implement Change Tracking and Inventory
    • Manage Change Tracking and Inventory
    • Manage tracked files
    • Implement File Integrity Monitoring
    • Select and monitor entities
    • Use File Integrity Monitoring
  • Module 6: Implement Windows Server IaaS VM network security
  • After completing this module, you will be able to:

    • Implement Network Security Groups (NSGs) with Windows Server IaaS VMs.
    • Implement adaptive network hardening.
    • Implement Azure Firewall.
    • Implement Windows Defender Firewall in Windows Server IaaS VMs.
    • Choose an appropriate filtering solution.
    • Capture network traffic with Network Watcher.

Syllabus

  • Module 1: Audit the security of Windows Server IaaS Virtual Machines
    • Introduction
    • Describe Azure Security Center
    • Enable Azure Security Center in hybrid environments
    • Implement and assess security policies
    • Protect your resources with Azure Security Center
    • Implement Azure Sentinel
    • Knowledge check
    • Summary
  • Module 2: Manage Azure updates
    • Introduction
    • Describe update management
    • Enable update management
    • Deploy updates
    • View update assessments
    • Manage updates for your Azure Virtual Machines
    • Knowledge check
    • Summary
  • Module 3: Create and implement application allowlists with adaptive application control
    • Introduction
    • Describe adaptive application control
    • Implement adaptive application control policies
    • Knowledge check
    • Summary
  • Module 4: Configure BitLocker disk encryption for Windows IaaS Virtual Machines
    • Introduction
    • Describe Azure Disk Encryption and server-side encryption
    • Configure Key Vault for Azure Disk Encryption
    • Encrypt Azure IaaS Virtual Machine hard disks
    • Back up and recover data from encrypted disks
    • Create and encrypt a Windows Virtual Machine
    • Knowledge check
    • Summary
  • Module 5: Implement change tracking and file integrity monitoring for Windows IaaS VMs
    • Introduction
    • Implement Change Tracking and Inventory
    • Manage Change Tracking and Inventory
    • Manage tracked files
    • Implement File Integrity Monitoring
    • Select and monitor entities
    • Use File Integrity Monitoring
    • Knowledge check
    • Summary
  • Module 6: Implement Windows Server IaaS VM network security
    • Introduction
    • Implement network security groups and Windows IaaS VMs
    • Implement adaptive network hardening
    • Implement Azure Firewall and Windows IaaS VMs
    • Implement Windows firewall with Windows Server IaaS VMs
    • Choose the appropriate filtering solution
    • Deploy and configure Azure firewall using the Azure portal
    • Capture network traffic with network watcher
    • Log network traffic to and from a VM using the Azure portal
    • Knowledge check
    • Summary