Instructor

SC - 300 : Microsoft Identity and Access Administrator Training

Curriculum

Master identity management and access control with SC-300: Microsoft Identity and Access Administrator Training. Boost your security skills and career potential.

Ratings

( 4.8 Ratings )

Live Online Classes starting on 01 January, 1970

SC - 300 : Microsoft Identity and Access Administrator

The SC - 300 : Microsoft Identity and Access Administrator course is designed to provide learners with comprehensive knowledge and expertise in managing, implementing, and monitoring an organization’s identity and access management solutions using Microsoft Azure Active Directory (Azure AD). It is ideal for IT professionals who wish to enhance their skills in identity protection, governance, and ensuring secure access to applications within their corporate environment. Throughout the course, participants will dive into Configuring Azure AD, Managing various identities, Handling external and hybrid identities, and Securing authentication methods. They will gain skills in implementing Azure Multi-Factor Authentication (MFA), Conditional access policies, and managing User authentication. The course also covers the integration of apps for Single Sign-On (SSO), App registration processes, and establishing a robust Identity governance strategy, including Entitlement management, Access reviews, and Privileged access management. By mastering these areas, learners will be equipped to monitor and maintain Azure Active Directory effectively, ensuring a secure and compliant identity management framework within their organizations.

 

Audience Profile:

This course is designed for Identity and Access Administrators who are preparing for the associated certification exam or are responsible for identity and access administration tasks in their roles. It is also valuable for administrators or engineers who wish to specialize in providing identity solutions and access management systems for Azure-based environments. The course plays a crucial role in securing organizational identity systems.

 

At Course Completion:

After completing this course, students will be able to:

  • Implement an identity management solution.

  • Implement authentication and access management solutions.

  • Implement access management for applications.

  • Plan and implement an identity governance strategy.

 

Prerequisites:

  • Knowledge of Security Best Practices: Familiarity with concepts such as defense in depth, least privileged access, shared responsibility, and the zero trust model.

  • Understanding Identity Concepts: Knowledge of authentication, authorization, and Active Directory.

  • Experience with Azure: Some experience deploying Azure workloads. The course builds on Azure administration knowledge by adding security-specific information.

  • Experience with Operating Systems and Scripting: Experience with Windows and Linux operating systems and scripting languages (PowerShell and CLI) is helpful but not required.

 

Course Outline

Module 1: Explore identity in Microsoft Entra ID
Lessons:

  • Define common identity terms and explain how they're used in the Microsoft Cloud

  • Explore the common management tools and needs of an identity solution

  • Review the goal of Zero Trust and how it's applied in the Microsoft Cloud

  • Explore the available identity services in the Microsoft Cloud

Module 2: Implement an identity management solution
Lessons:

  • Implement initial configuration of Microsoft Entra ID

    • Implement initial configuration of Microsoft Entra ID

    • Create, configure, and manage identities

    • Implement and manage external identities (excluding B2C scenarios)

    • Implement and manage hybrid identity

  • Create, configure, and manage identities

    • Create, configure, and manage users

    • Create, configure, and manage groups

    • Manage licenses

    • Explain custom security attributes and automatic user provisioning

  • Implement and manage external identities

    • Manage external collaboration settings in Microsoft Entra ID

    • Invite external users (individually or in bulk)

    • Manage external user accounts in Microsoft Entra ID

    • Configure identity providers (social and SAML/WS-fed)

  • Implement and manage hybrid identity

    • Plan, design, and implement Microsoft Entra Connect

    • Manage Microsoft Entra Connect

    • Manage password hash synchronization (PHS)

    • Manage pass-through authentication (PTA)

    • Manage seamless single sign-on (seamless SSO)

    • Manage federation excluding manual ADFS deployments

    • Troubleshoot synchronization errors

    • Implement and manage Microsoft Entra Connect Health

Module 3: Implement an Authentication and Access Management solution
Lessons:

  • Secure Microsoft Entra users with multifactor authentication

    • Learn about Microsoft Entra multifactor authentication

    • Create a plan to deploy Microsoft Entra multifactor authentication

    • Turn on Microsoft Entra multifactor authentication for users and specific apps

  • Manage user authentication

    • Administer authentication methods (FIDO2 / Passwordless)

    • Implement an authentication solution based on Windows Hello for Business

    • Configure and deploy self-service password reset

    • Deploy and manage password protection

    • Implement and manage tenant restrictions

  • Plan, implement, and administer Conditional Access

    • Plan and implement security defaults

    • Plan conditional access policies

    • Implement conditional access policy controls and assignments (targeting, applications, and conditions)

    • Test and troubleshoot conditional access policies

    • Implement application controls

    • Implement session management

    • Configure smart lockout thresholds

  • Manage Microsoft Entra Identity Protection

    • Implement and manage a user risk policy

    • Implement and manage sign-in risk policies

    • Implement and manage MFA registration policy

    • Monitor, investigate, and remediate elevated risky users

  • Implement access management for Azure resources

    • Configure and use Azure roles within Microsoft Entra ID

    • Configure and manage identity and assign it to Azure resources

    • Analyze the role permissions granted to or inherited by a user

    • Configure access to data in Azure Key Vault using RBAC-policy

  • Deploy and Configure Microsoft Entra Global Secure Access

    • Define Global Secure Access and its components

    • Explore deployment and configuration of Microsoft Entra Internet Access

    • Explore deployment and configuration of Microsoft Entra Private Access

    • Use the Global Secure Access Dashboard to monitor your systems

    • Configure Remote Networks

    • Create Conditional Access policies to protect your networks, data, and applications

Module 4: Implement Access Management for Apps
Lessons:

  • Plan and design the integration of enterprise apps for SSO

    • Discover apps by using Defender for Cloud Apps or ADFS app report

    • Design and implement access management for apps

    • Design and implement app management roles

    • Configure preintegrated (gallery) SaaS apps

  • Implement and monitor the integration of enterprise apps for SSO

    • Implement token customizations

    • Implement and configure consent settings

    • Integrate on-premises apps by using Microsoft Entra application proxy

    • Integrate custom SaaS apps for SSO

    • Implement application user provisioning

    • Monitor and audit access/Sign-On to Microsoft Entra ID integrated enterprise applications

  • Implement app registration

    • Plan your line of business application registration strategy

    • Implement application registrations

    • Configure application permissions

    • Plan and configure multi-tier application permissions

  • Register apps using Microsoft Entra ID

    • Explain the benefits of registering apps in Microsoft Entra ID

    • Compare and contrast single and multitenant apps

    • Describe what happens and the primary settings when registering an app

    • Describe the relationship between application objects and service principals

Module 5: Plan and implement an identity governance strategy
Lessons:

  • Plan and implement entitlement management

    • Define catalogs

    • Define access packages

    • Plan, implement, and manage entitlements

    • Implement and manage terms of use

    • Manage the lifecycle of external users in Microsoft Entra Identity Governance settings

  • Plan, implement, and manage access review

    • Plan for access reviews

    • Create access reviews for groups and apps

    • Monitor the access review findings

    • Manage licenses for access reviews

    • Automate management tasks for access review

    • Configure recurring access reviews

  • Plan and implement privileged access

    • Define a privileged access strategy for administrative users (resources, roles, approvals, and thresholds)

    • Configure Privileged Identity Management for Microsoft Entra roles

    • Configure Privileged Identity Management for Azure resources

    • Assign roles

    • Manage PIM requests

    • Analyze PIM audit history and reports

    • Create and manage emergency access accounts

  • Monitor and maintain Microsoft Entra ID

    • Analyze and investigate sign-in logs to troubleshoot access issues

    • Review and monitor Microsoft Entra audit logs

    • Enable and integrate Microsoft Entra diagnostic logs with Log Analytics / Azure Sentinel

    • Export sign-in and audit logs to a third-party SIEM (security information and event management)

    • Review Microsoft Entra activity by using Log Analytics / Azure Sentinel, excluding KQL (Kusto Query Language) use

    • Analyze Microsoft Entra workbooks / reporting

    • Configure notifications

  • Explore the many features of Microsoft Entra Permissions Management

    • Understand the features of Microsoft Entra Permissions Management

    • Learn more specifics about how Permissions Management allows you to discover, remediate, and monitor identities, permissions, and resources

    • Get real-world views of the data and analytics Permissions Management provides

(4.8 Ratings)

Download Course Contents

Still unsure?
We're just a click away


Course Outline PDF

SpireTec Unique Features

course-img
1-On-1 Training

Benefit from our 1-On-1 Training for personalized, focused, and effective learning experiences.

course-img
Customized Training

Experience our Customized Training service tailored to meet your specific learning needs and goals

course-img
4 - Hours / Weekend Session

Join our Class featuring 4 - Hours / Weekend Session for in-depth learning and expert training.

course-img
Free Demo Class

Join our Free Demo Class to experience top-notch training and expert guidance first hand!

Purchase This Course

Request More Information

CERTIFICATE

Get Ahead With SpireTec Solutions
Training Certificate

Earn your Certificate

Our course is exhaustive and this certificate is proof that you have taken a big leap in mastering the domain.

Differentiate yourself with Masters Certificate

Our course is exhaustive and this certificate is proof that you have taken a big leap in mastering the domain.

Share your achievement

Our course is exhaustive and this certificate is proof that you have taken a big leap in mastering the domain.

Need Customized Curriculum?

Our course is exhaustive and this certificate is proof that you have taken a big leap in mastering the domain.

Talk To Adviser
course-certificate

Top Certifications