|
所在平台: Udemy |
课程主页: https://www.udemy.com/course/sc-900-security-compliance-and-identity-fundamental-z/
课程评论:没有评论
课程名称:SC-900:安全、合规和身份 - 2025年5月 课程概述: 本课程主要围绕安全、合规和身份管理的核心概念与Microsoft相关解决方案展开,课程内容可以分为以下几个部分: 1. **安全、合规和身份的概念(10-15%)** - 介绍安全与合规的基本概念。 - 解析共享责任模型、深度防御、零信任模型、加密与哈希以及治理、风险与合规(GRC)的相关概念。 2. **Microsoft Entra的功能(25-30%)** - 详述Microsoft Entra ID的功能及身份类型。 - 探讨混合身份、身份验证能力,以及多重身份验证(MFA)等安全管理功能。 - 讨论条件访问、角色与基于角色的访问控制(RBAC)以及身份保护与治理能力,包括访问审查和特权身份管理。 3. **Microsoft安全解决方案的功能(35-40%)** - 描述Azure核心基础设施安全服务,包括DDoS防护、Azure防火墙以及Web应用防火墙(WAF)。 - 介绍安全管理能力及Microsoft Defender for Cloud的功能。 - 深入探讨安全信息与事件管理(SIEM)和安全编排自动响应(SOAR)概念,以及Microsoft Sentinel和其威胁检测与缓解能力。 4. **Microsoft合规解决方案的功能(20-25%)** - 介绍Microsoft服务信任门户及隐私原则。 - 解析Microsoft Purview的合规管理能力,包括信息保护、数据生命周期管理和数据治理能力。 - 讲解数据分类、内容与活动探索、数据丢失防护(DLP)以及记录管理等功能。 本课程将为参与者提供系统的安全、合规与身份管理知识,帮助学习者掌握Microsoft的安全与合规解决方案的具体应用。通过本课程的学习,学员将能够更好地理解和实施企业的安全策略和合规管理。
Skills at a glanceDescribe the concepts of security, compliance, and identity (10-15%)Describe the capabilities of Microsoft Entra (25-30%)Describe the capabilities of Microsoft security solutions (35-40%)Describe the capabilities of Microsoft compliance solutions (20-25%)Describe the concepts of security, compliance, and identity (10-15%)Describe security and compliance conceptsDescribe the shared responsibility modelDescribe defense-in-depthDescribe the Zero Trust modelDescribe encryption and hashingDescribe Governance, Risk, and Compliance (GRC) conceptsDefine identity conceptsDefine identity as the primary security perimeterDefine authenticationDefine authorizationDescribe identity providersDescribe the concept of directory services and Active DirectoryDescribe the concept of federationDescribe the capabilities of Microsoft Entra (25-30%)Describe function and identity types of Microsoft Entra IDDescribe Microsoft Entra IDDescribe types of identitiesDescribe hybrid identityDescribe authentication capabilities of Microsoft Entra IDDescribe the authentication methodsDescribe multi-factor authentication (MFA)Describe password protection and management capabilitiesDescribe access management capabilities of Microsoft Entra IDDescribe Conditional AccessDescribe Microsoft Entra roles and role-based access control (RBAC)Describe identity protection and governance capabilities of Microsoft EntraDescribe Microsoft Entra ID GovernanceDescribe access reviewsDescribe the capabilities of Microsoft Entra Privileged Identity ManagementDescribe Microsoft Entra ID ProtectionDescribe Microsoft Entra Permissions ManagementDescribe the capabilities of Microsoft security solutions (35-40%)Describe core infrastructure security services in AzureDescribe Azure distributed denial-of-service (DDoS) ProtectionDescribe Azure FirewallDescribe Web Application Firewall (WAF)Describe network segmentation with Azure virtual networksDescribe network security groups (NSGs)Describe Azure BastionDescribe Azure Key VaultDescribe security management capabilities of AzureDescribe Microsoft Defender for CloudDescribe Cloud Security Posture Management (CSPM)Describe how security policies and initiatives improve the cloud security postureDescribe enhanced security features provided by cloud workload protectionDescribe capabilities of Microsoft SentinelDefine the concepts of security information and event management (SIEM) and security orchestration automated response (SOAR)Describe threat detection and mitigation capabilities in Microsoft SentinelDescribe threat protection with Microsoft Defender XDRDescribe Microsoft Defender XDR servicesDescribe Microsoft Defender for Office 365Describe Microsoft Defender for EndpointDescribe Microsoft Defender for Cloud AppsDescribe Microsoft Defender for IdentityDescribe Microsoft Defender Vulnerability ManagementDescribe Microsoft Defender Threat Intelligence (Defender TI)Describe the Microsoft Defender portalDescribe the capabilities of Microsoft compliance solutions (20-25%)Describe Microsoft Service Trust Portal and privacy principlesDescribe the Service Trust Portal offeringsDescribe the privacy principles of MicrosoftDescribe Microsoft PrivaDescribe compliance management capabilities of Microsoft PurviewDescribe the Microsoft Purview compliance portalDescribe Compliance ManagerDescribe the uses and benefits of compliance scoreDescribe information protection, data lifecycle management, and data governance capabilities of Microsoft PurviewDescribe the data classification capabilitiesDescribe the benefits of Content explorer and Activity explorerDescribe sensitivity labels and sensitivity label policiesDescribe data loss prevention (DLP)Describe records managementDescribe retention policies, retention labels, and retention label policiesDescribe unified data governance solutions in Microsoft PurviewDescribe insider risk, eDiscovery, and audit capabilities in Microsoft PurviewDescribe insider risk managementDescribe eDiscovery solutions in Microsoft PurviewDescribe audit solutions in Microsoft Purview