Microsoft Cybersecurity Architect (SC-100)
Security decisions must remain consistent across your information systems. Connect architecture, risks and protective measures to understand trade-offs more clearly. Strengthen your expertise to design well-supported solutions and engage with technical teams and decision-makers alike.
- Duration
- 4 days 21 hours
- Code
- SC-100T00-A Code
- Certification
- Microsoft Certified : Cybersecurity Architect Expert Certification
Accredited training for the Microsoft Certified : Cybersecurity Architect Expert certification.
Presentation
Organisations moving to Azure and hybrid environments need architects able to design comprehensive cybersecurity strategies. With proliferating cyberthreats and growing compliance requirements, the Microsoft cybersecurity architect role has become one of the most strategic and sought-after positions in cloud security.
This 4-day course prepares you to design cybersecurity solutions aligned with the official SC-100 syllabus. It covers the 4 official domains: designing solutions aligned with security best practices and Zero Trust; designing security operations, identity and compliance solutions with Microsoft Entra ID and Microsoft Sentinel; designing infrastructure solutions; and designing application and data solutions with Microsoft Defender for Cloud and Microsoft Purview.
By the end of the course, you will be able to design comprehensive cybersecurity architectures for Azure and hybrid environments. You will also be prepared for the official SC-100 exam, included in our offer, to progress towards Microsoft Certified: Cybersecurity Architect Expert certification (see the Certification tab for details).
Objectives
By the end of this Microsoft SC-100 course, you will be able to:
- design security architectures aligned with Microsoft best practices, Zero Trust and the Microsoft Cybersecurity Reference Architecture (MCRA);
- design security operations, identity and compliance solutions with Microsoft Entra ID, Microsoft Sentinel and Microsoft Purview;
- design security solutions for Azure, hybrid and multicloud infrastructure;
- design application and data security solutions with Microsoft Defender for Cloud and DevSecOps best practices;
- translate regulatory requirements into technical controls and assess compliance using the Microsoft Cloud Security Benchmark (MCSB);
- prepare for and pass SC-100 to progress towards Microsoft Certified: Cybersecurity Architect Expert certification.
Program
Module 1: mastering cybersecurity fundamentals and architecting Microsoft solutions
- Identifying common threats and vulnerabilities in Microsoft environments.
- Assessing risks and defining a security posture suited to business needs.
- Creating solution architectures aligned with Microsoft frameworks, including MCRA, MCSB, CAF and the Well-Architected Framework, while addressing security constraints.
Module 2: securing identities and access
- Centralised identity management in Microsoft Entra ID, incorporating IAM and PIM concepts.
- Granular resource access control based on Zero Trust principles.
- Implementing strong multifactor authentication to improve account security.
Module 3: protecting data
- Classifying and protecting sensitive data with Microsoft Purview.
- Encrypting data at rest and in transit with Azure encryption capabilities.
- Data loss prevention (DLP) to limit sensitive information leakage.
Module 4: securing development
- Integrating security from the earliest development stages through DevSecOps with Azure DevOps.
- Securing APIs and web applications against OWASP threats.
- Protecting cloud-native applications, including containers and serverless functions.
Module 5: strengthening infrastructure
- Protecting Azure resources with Microsoft Defender for Cloud through vulnerability management and threat detection.
- Deploying network security solutions, including VPNs, firewalls and segmentation, with Azure Network Watcher.
- Securing hybrid and multicloud environments.
Module 6: ensuring resilience
- Planning business continuity and disaster recovery with Azure Site Recovery.
- Responding effectively to security incidents with Microsoft Sentinel.
- Preventing and managing ransomware attacks through backup and recovery strategies.
Module 7: ensuring compliance
- Assessing compliance with regulations such as GDPR, HIPAA and NIS2 using Microsoft Purview Compliance Manager.
- Implementing customised compliance controls to meet specific business requirements.
- Managing non-compliance risks through Governance, Risk and Compliance (GRC) concepts.
Module 8: optimising security operations
- Continuous real-time threat monitoring with Microsoft Defender for Cloud and Microsoft Sentinel.
- Automating recurring security tasks with Azure Automation.
- Continually improving security posture through metrics and key performance indicators (KPIs).
Module 9: applying your knowledge
- Designing tailored security solutions using knowledge acquired throughout the course.
- Working through practical exercises and case studies simulating real cyberattack scenarios.
Module 10: preparing for the SC-100 exam
- Reviewing key course concepts.
- Exam advice and techniques.
- Analysing sample exam questions.
- Exploring additional preparation resources.
Audience
This course is intended for experienced Microsoft security professionals moving towards a cybersecurity architect role, including:
- solution architects and security consultants seeking in-depth expertise in cloud and hybrid security architecture design on Microsoft Azure;
- security engineers and systems administrators certified in AZ-500, SC-200 or SC-300 and seeking a strategic cybersecurity architect role;
- CISOs, security managers and cloud professionals seeking stronger Microsoft Security expertise and preparation for Microsoft Certified: Cybersecurity Architect Expert.
Prerequisites
The following prerequisites apply:
- Technical skills: experience administering Microsoft Azure security solutions, ideally validated by at least one associated certification: AZ-500 (Azure Security Engineer Associate), SC-200 (Security Operations Analyst Associate) or SC-300 (Identity and Access Administrator Associate).
- Theoretical foundations: sound IT security knowledge, including threats, vulnerabilities and Zero Trust; familiarity with NIST, CIS and ISO 27001; and knowledge of Azure services, Microsoft Entra ID, Microsoft Sentinel and Microsoft Defender for Cloud.
- Professional experience: practical experience with security tools such as SIEM, SOAR and WAF and with designing or administering hybrid cloud or multicloud architectures.
Teaching and assessment methods
- Initial skills assessment
- Training materials provided to participants
- Continuous assessment throughout the course
- End-of-course feedback questionnaire
- Combination of theory and practical application
- Attendance records
- Post-course follow-up evaluation
- Practical exercises
- Case study
Course highlights
- Official Microsoft programme: content aligned with the current SC-100 syllabus, delivered by a Microsoft Certified Trainer (MCT) specialising in cybersecurity architecture.
- Strategic security perspective: learn to design robust Zero Trust security architectures and proactively assess risks across cloud, hybrid and multicloud environments.
- Real-world scenario-based practice: exercises and case studies simulate real cyberattacks and secure architecture design.
- SC-100 exam included: the official Microsoft exam is included at no additional cost.
- Microsoft Exam Replay included: retake the exam free of charge if you do not pass on your first attempt, helping maximise your certification prospects.
Dates and sessions
Choose the date and delivery format that suit you.
No upcoming sessions are currently available.
Session alerts
Microsoft®, Microsoft Azure®, Microsoft Entra®, Microsoft Sentinel®, Microsoft Defender® and Microsoft Purview® are registered trademarks or trademarks of Microsoft Corporation in the United States and other countries.
fr
en