Audit the security of Windows Server IaaS Virtual Machines

Intermediate
Administrator
Solution Architect
Technology Manager
Azure
Azure Cloud Shell
Azure Portal
Azure Virtual Machines

Learn about Microsoft Defender for Cloud and how to onboard Windows Server computers to Microsoft Defender for Cloud. Also learn about Microsoft Sentinel, security information and event management (SIEM), and security orchestration, automation, and response (SOAR).

Learning objectives

After completing this module, you'll be able to:

  • Describe Microsoft Defender for Cloud.
  • Enable Microsoft Defender for Cloud in hybrid environments.
  • Onboard Windows Server computers to Microsoft Defender for Cloud.
  • Implement and assess security policies.
  • Describe Microsoft Sentinel.
  • Implement SIEM and SOAR.
  • Protect your resources with Microsoft Defender for Cloud.

Prerequisites

In order to get the best learning experience from this module, it's important that you have knowledge and experience of the following:

  • Managing Windows Server operating system and Windows Server workloads in on-premises scenarios, including Active Directory Domain Services (AD DS), Domain Name System (DNS), the Distributed File System (DFS), Microsoft Hyper-V, and file and storage services
  • Common Windows Server management tools
  • Core Microsoft compute, storage, networking, and virtualization technologies
  • On-premises resiliency Windows Server based compute and storage technologies
  • Implementing and managing infrastructure as a service (IaaS) services in Azure
  • Microsoft Entra ID
  • Security-related technologies (firewalls, encryption, multi-factor authentication)
  • Windows PowerShell scripting
  • Automation and monitoring