Cover of Ultra Transcenders SC-500: Implementing End-to-End Security Controls for Cloud and AI Workloads
ULTRA TRANSCENDERS · AN INDEPENDENT STUDY GUIDE

SC-500 Implementing End-to-End Security Controls for Cloud and AI Workloads

An independent study guide for Microsoft Certified: Cloud and AI Security Engineer Associate · by Tony Rough

Know which control enforces it, and why.

  • 16 chapters
  • 12 diagrams
  • 100+ common traps
  • 800+ glossary terms
Amazon.co.ukKindle: coming soonPaperback: coming soon
Amazon.comKindle: coming soonPaperback: coming soon

Publishing soon on Amazon in Kindle and paperback editions.

Free online glossary

What's inside

Chapters

  1. Microsoft Entra ID: Privileged Identity Management, Conditional Access and authentication
  2. Application identities, consent and managed identities
  3. Azure Key Vault
  4. Governance: Azure Policy, roles, locks and backup protection
  5. Securing Azure Storage
  6. Securing Azure SQL and open-source databases
  7. Network security: NSGs, ASGs, Virtual Network Manager and Network Watcher
  8. Private and hybrid access: Virtual WAN, VPN, Entra Private Access and Private Link
  9. Azure Firewall
  10. Securing servers and virtual machines
  11. Securing containers: Defender for Containers, AKS, ACR, ACI and Container Apps
  12. Securing App Service, Functions, Logic Apps, WAF and API Management
  13. Securing AI workloads and agents
  14. Managing security posture with Microsoft Defender for Cloud
  15. Microsoft Sentinel: collection, automation and retention
  16. Microsoft Security Copilot

Plus an appendix glossary of 800+ terms, each linked to Microsoft Learn, and free online for print readers.

Sample diagrams

Inbound traffic meets Virtual Network Manager security admin rules before any NSG
Inbound traffic meets Virtual Network Manager security admin rules before any NSG
Key Vault's control plane and data plane are authorised separately
Key Vault's control plane and data plane are authorised separately
Layers of security for AI agents and model access
Layers of security for AI agents and model access

Free study notes

Some sections of the book, free to read online:

About the author

Tony Rough is a cloud architect with more than twenty years in IT infrastructure, designing Azure platforms for UK organisations at a Microsoft partner. He holds the Azure Solutions Architect Expert, Azure Administrator and Azure Security Engineer certifications and has passed more than thirty Microsoft exams. Ultra Transcenders is the series he wished he'd had.