Microsoft's skills measured for SC-500, mapped to the chapters of Ultra Transcenders SC-500: Implementing End-to-End Security Controls for Cloud and AI Workloads.
| Objective | Chapters |
|---|---|
| Manage identity, access, and governance (20–25%) | |
| Secure access to resources by using Microsoft Entra ID | 1. Microsoft Entra ID: Privileged Identity Management, Conditional Access and authentication; 2. Application identities, consent and managed identities |
| Secure secrets and keys by using Azure Key Vault | 3. Azure Key Vault; 14. Managing security posture with Microsoft Defender for Cloud |
| Implement governance to enforce security and regulatory compliance | 4. Governance: Azure Policy, roles, locks and backup protection; 14. Managing security posture with Microsoft Defender for Cloud |
| Secure storage, databases, and networking (25–30%) | |
| Implement security for storage accounts | 5. Securing Azure Storage; 14. Managing security posture with Microsoft Defender for Cloud |
| Implement security for databases | 6. Securing Azure SQL and open-source databases |
| Implement security for Azure network services | 5. Securing Azure Storage; 7. Network security: NSGs, ASGs, Virtual Network Manager and Network Watcher; 8. Private and hybrid access: Virtual WAN, VPN, Entra Private Access and Private Link; 9. Azure Firewall |
| Secure compute (20–25%) | |
| Implement security for AI | 13. Securing AI workloads and agents |
| Implement security for servers and virtual machines (VMs) | 4. Governance: Azure Policy, roles, locks and backup protection; 10. Securing servers and virtual machines; 14. Managing security posture with Microsoft Defender for Cloud |
| Implement security for application platform services | 11. Securing containers: Defender for Containers, AKS, ACR, ACI and Container Apps; 12. Securing App Service, Functions, Logic Apps, WAF and API Management |
| Manage and monitor security posture (20–25%) | |
| Manage security posture by using Defender for Cloud | 10. Securing servers and virtual machines; 14. Managing security posture with Microsoft Defender for Cloud |
| Implement activity and event collection in Microsoft Sentinel | 15. Microsoft Sentinel: collection, automation and retention |
| Implement Microsoft Security Copilot | 16. Microsoft Security Copilot |
The full list of tasks under each objective is in Microsoft's official study guide. The book is organised by technology, so one chapter often serves several objectives.
Free to read with Kindle Unlimited. Opens Amazon in a new tab.