Identity and governance are the foundation of secure, compliant Azure deployments. This comprehensive module covers everything from managing users and groups (Entra ID) to enterprise-scale governance, security hardening, cost control, and compliance. Master the patterns used by Fortune 500 companies managing thousands of resources across multiple departments.
Module 01 teaches you how to control access to Azure resources through identity and governance. You'll learn about Microsoft Entra ID (formerly Azure AD) for managing users and groups, RBAC for granting permissions, and Management Groups with Azure Policy for governance at scale.
These are the critical skills for administering Azure securely and ensuring compliance across your organization.
Learn Microsoft's cloud identity service — how to create users, groups, administrative units, and manage identities at scale.
Read Concept →Master Role-Based Access Control — the system for granting permissions to Azure resources based on roles.
Read Concept →Understand how to organize subscriptions, enforce policies, and govern Azure at scale across your organization.
Read Concept →Explore real-world patterns for implementing secure access control in complex organizational structures.
Read Concept →Learn industry best practices for identity management, security, and governance in Azure environments.
Read Concept →Apply your knowledge with practical labs that cover everything from identity management to enterprise-scale governance, security hardening, and compliance.
Create users, organize them into groups, and set up administrative units for delegated management. (50 min)
Start Lab →Assign RBAC roles, create custom roles, and enforce Azure Policies across subscriptions. (45 min)
Start Lab →Create management group hierarchies and organize subscriptions for centralized governance. (30 min)
Start Lab →Segregate Dev/Staging/Prod with different access levels and policies to protect production. (120 min) ⭐⭐⭐⭐⭐
Start Lab →Implement tagging, budgets, and policies to control cloud costs by department. (90 min) ⭐⭐⭐⭐
Start Lab →Create multi-department isolation with autonomous management and central IT oversight. (100 min) ⭐⭐⭐⭐
Start Lab →Implement all 8 best practices: least privilege, access reviews, MFA, monitoring, approvals, offboarding, and more. (250+ min) ⭐⭐⭐⭐⭐
Start Lab →Set up activity logging, immutable audit trails, and compliance policies for SOC 2 readiness. (80 min) ⭐⭐⭐
Start Lab →