AZ-500 - Microsoft Azure Security Technologies: Azure Storage Account Security


Overview/Description
Expected Duration
Lesson Objectives
Course Number
Expertise Level



Overview/Description

This 18-video course helps prepare learners for AZ-500 Microsoft Azure Security Technologies certification exam by exploring several methods available to improve Azure storage account security and encrypt cloud data, and demonstrating how to use VM (virtual machine) disks. You will examine ways to harden Azure storage accounts; how to control storage account container access using access policies; and what is encrypted by default. Next, learners will observe how to use RBAC (role-based access control) to control resource access in a cloud computing environment. You will then learn how to configure custom encryption keys. This course examines the soft delete feature within an Azure storage account for blobs and binary large objects, which is not enabled by default. Next, learn to regenerate storage account keys in the portal, in PowerShell, and using the CLI (command-line interface). You will learn to use shared access signatures in Azure Storage Explorer, and to configure access policies for storage queues. Finally, learn to configure VM disk encryption by using PowerShell.



Expected Duration (hours)
0.9

Lesson Objectives

AZ-500 - Microsoft Azure Security Technologies: Azure Storage Account Security

  • discover the key concepts covered in this course
  • identify ways to harden Azure storage accounts
  • control storage account container access
  • apply RBAC to storage accounts
  • configure custom keys for storage encryption
  • limit network access to storage accounts
  • enable the soft delete storage account feature
  • regenerate storage account keys in the portal
  • regenerate storage account keys in PowerShell
  • regenerate storage account keys using the CLI
  • use storage account keys in Azure Storage Explorer
  • use the portal to create a SAS
  • use the portal to create a Blob SAS
  • use SAS in Azure Storage Explorer
  • configure access policies for storage queues
  • enable VM disk encryption using PowerShell
  • enable storage account geo-replication
  • summarize the key concepts covered in this course
  • Course Number:
    it_clazst_01_enus

    Expertise Level
    Intermediate