Welcome guest!

Microsoft Identity and Access Management (IAM)-Securing and Managing Identities in the Cloud, On-prem, or in a Hybrid Environment

Microsoft Security | Advanced

What you will learn

  • Learn how to deploy and manage Microsoft Identity and Access management
  • Be able to create an enterprise tenant and Directory in Azure to manage and secure resources and assets
  • Be able to add users, groups, applications, and devices to Active Directory
  • Learn how to deploy features such as Single Sign-On, Multi-Factor Authentication (MFA), password protection, and other features.
  • Learn how to manage collaboration with external users
  • Deploy and configure Hybrid Identity in an organization
  • Be able to create conditional access policies in Azure Cloud
  • Be able to analyze access through the creation of policies
  • Lean how to create and protect privileged Account
  • Learn to create and manage emergency access accounts
  • Participants should be able to pass certification exams in Microsoft Identity and Access Administrator Associate

About this Course

The Microsoft Identity and Access Management course is designed to provide a deep dive into Microsoft Identity and Access Management. Participants will be introduced to concepts and applications in Identity and Access Management. They will learn to deploy key features of an Identity and Management systems including Multi-factor Authentication (MFA), privileged account access and management, and conditional access policies. They will learn how to add users, groups, devices, and applications to Microsoft Active Directory.

Identity and Access Management (IAM) is critical to modern security. A well designed, and deployed IAM system prevents unauthorized access to organizations data and helps ensure the confidentiality, integrity, and availability of organizations assets.  Microsoft Identity and Access Management is a robust system that protects fortune 500 companies and connects 425 million people to their apps, devices, and data each month.  It does this by safeguarding user credentials with strong authentication, conditional access policies, and Role-Based Access Control (RBAC) that are fundamental pillars of the zero-trust model.

In this training, participants will learn key features of Microsoft Identity and Access Management and learn how to deploy them.  Participants will be introduced to features such as SSO, Multi-Factor Authentication, conditional access polices, user and sign-in risk, etc.  They will have hands-on experience to reinforce their understanding of concepts. 

This is lab-based training. You will need access to computer and internet to access Azure Cloud

Key Benefits for participants

  • Collaborative learning environment to engage in live sections with the instructor and your peers during training.
  • Lab section and walk throughs to provide practical applications of concepts and fundamentals.
  • A participants guide with notes for lifelong reference.
  • Enjoy and absorb this partly management and partly technical training in the comfort of your home.
  • Get the strategy and technical knowledge to fully deploy Microsoft Identity
  • Learn how to deploy and manage Microsoft Identity and Access management.
  • Be able to create an enterprise tenant and Directory in Azure to manage and secure resources and assets.
  • Be able to add users, groups, applications, and devices to Active Directory

 

Prerequisite

Participants should have understanding of Microsoft Cloud and Office applications

Technical Requirements

    • Participants should have computer with access to the internet to the Azure cloud for this training.
    • Participants will be given a participant guide with notes and assignments

Who Should Attend

    • IT managers who are responsible for managing their organizations cybersecurity program want to understand how Microsoft Identity and Access Management works
    • IT administrators who what to focus their career on Identity and Access management
    • CIO who wants an understanding of Microsoft Identity and Access Management
    • New Managers who have been entrusted with their organization’s security

Course Details

Module 1:  Introduction to Microsoft Security

    • Microsoft Security for Cloud, On-Premises, and Hybrid
    • Shared Responsibility
    • Introduction to Identity and Access Management
      • What is identity and Access Management?
      • What are the features of goof Identity and Access Management systems?
      • The market for Identity and Access Management Systems
    • Microsoft cybersecurity Reference Architecture
      • Microsoft cybersecurity reference architecture, and Microsoft capabilities in cybersecurity
      • The importance of Identity and Access in the cybersecurity Architecture differentiating the difference between online and on-prem Identity

Module 2-Azure Active Directory

    • Managing Identity and Authentication
      • Tenant creation-This is a lab demonstration.
        • Adding users in the Directory
        • Look at how to add users individually.
        • Explain bulk creation of Users-
        • Groups in Active Directory
          • Security Groups
          • Microsoft 365 Groups
      • Configure and Manage Custom Domain in Active Directory- participants through how to create custom domain- Lab walk through to show how this is done in Azure.
      • Introduction to device registration in Active Directory
      • Adminstrative Unit
      • Role delegation
    • Managing Users in the Cloud and Hybrid (introductory only-More on Hybrid Identity and Access)
      • How to great security groups in Azure
      • Group License
      • Dynamic Groups
        • Problem and solutions in group license problems
        • Migrating users with individual licenses to group licenses.
    • Microsoft Authentication Methods
      • Self-Service Password Reset (SSPR)
      • Azure AD multifactor Authentication
      • Multi-Factor Authentication
      • Windows Hello
      • Password Protection
    • Conditional Access
      • Requiring MFA
      • Risk Base Conditional Access
      • Blocking Legacy applications (More on Application Access
    • Identity Protection
      • Sign- in risk (Lab work) create sign-in risk policy.
      • User -risk (lab work) create user-risk policy.
      • Risk remediation
    • Application Registration and Management
      • Planning and designing integration of enterprise apps for SSO.
      • Implementation and monitoring or Enterprise Application for SSO
      • Application Registration

Module 3- Hybrid Identity Management

    • Introduction to Hybrid Cloud Services
      • Deploying and managing Active Directory Domain Services
      • Managing Active Domain Controllers
      • Exploring some advanced features of Active Directory Domain Service
      • Extending Active Directory domain controllers onto Azure
      • Security in the hybrid cloud
    • The Azure AD Connect
      • Walk through how to install AD connect.
      • Examine the various authentication and authorization available in a hybrid situation.
        • Password Hash Synchronization
        • Pass-through authentication
        • Federation
        • Manage Single sign-on in the hybrid environment.
        • Mange AD connect sync and Connect health.

Module 4- External Identities Management

    • B2B collaboration
      • Managing external Collaboration in Azure
      • Bulk invitation for collaboration
      • Walk through how to invite guest users.
    • B2C collaboration
      • Introduction to Azure Active Directory B2C

Module 5-Identity Governance Strategy

    • Creating and managing a resource catalog
    • Access Review
    • Privileged access
      • What is privileged access?
      • Configure privileged Identity Management for Azure Resources
      • Review privileged access.
      • Creating and managing emergency access accounts