Protect cloud, AI Platform and Apps by implementing Defender for Cloud
Security
Protect Cloud, AI Platform and Apps
Intermediate
Defender for CloudDefender for Cloud

Protect cloud, AI Platform and Apps by implementing Defender for Cloud

Microsoft Defender for Cloud is a cloud-native application protection platform (CNAPP) with a set of security measures and practices designed to protect cloud-based applications from various cyber threats and vulnerabilities. Learn how to implement a development security operations (DevSecOps) solution that unifies security management at the code level across multicloud and multiple-pipeline environments. Learn how to enable a cloud security posture management (CSPM) solution that surfaces actions that you can take to prevent breaches and a cloud workload protection platform (CWPP) with specific protections for servers, containers, storage, databases, and other workloads.

12 hours(Suggested: 3 days, 4h/day)TechnicalProject ReadyHands-on Labs

MS Course ID: 00657

Last Updated: Oct 2, 2025

Get Started

Pre-requisites

Familiarity with networking, virtualization, identity and security

Related Certifications

SC-200

Course Syllabus

1

Improving your security posture with Microsoft Defender for Cloud

Module 1 - Cloud Security Posture Management

• Introduction to Zero Trust
• Introduction to Microsoft Defender for Cloud
• CNAPP strategy
• Microsoft Defender CSPM
• Prevent future risks by fixing in code

Module 2: Cloud Workload Protection

• Cloud security challenges
• Microsoft Defender Cloud Workload Protection
• Overview of
• Defender for Servers - 30 min
• Defender for Containers - 30 min
• Protect Cloud Databases - 30 min
• Defender for Storage - 30 min
180 mins
Lecture
2

Interactive Simulated Lab Experience

• Enabling Microsoft Defender for Cloud
• Enabling Microsoft Defender for SQL
• Enabling Microsoft Defender for open-source relational databases
• Enabling Microsoft Defender for Storage accounts
• Managing VM access and enabling JIT access
60 mins
Lab
3

Protecting cloud workloads with Microsoft Defender for Cloud

Module 2: Cloud Workload Protection

• Microsoft Defender for APIs - 30min
• Application Infrastructure Protection - 30 min

Module 3: Data Security Posture Management

• Automatic discovery
• DSPM in Defender CSPM
• Attack Path Analysis and Scenarios
• Cloud Security Explorer
• Data sensitivity settings

Module 4: Pricing Defender for Cloud (BCB)

• Pricing for Cloud Security Posture Management
• Pricing for Cloud Workload Protection

Module 5: Policy Management of MDC

• Security policies and recommendations
• Built-in Policies
• Security recommendations
• Custom Azure security initiatives and policies
180 mins
Lecture
4

Interactive Simulated Lab Experience

• Improving your regulatory compliance
• Investigating the health of your resources
• Managing security policies
• Applying Azure security baselines to machines
• Building a query with the cloud security explorer
• Assessing, investigating and responding to security alerts
60 mins
Lab
5

Enhancing security with integrated solutions

Module 6: Secure your AI Applications

• Landscape and MDC overview
• AI security posture
• Threat protection for AI

Module 7 - Microsoft Sentinel SIEM/Data Lake

• Security alerts and Incidents
• Microsoft Sentinel
• Integration with Microsoft Sentinel
• Data Lake

Module 8 - Defender for DevOps

• Managing your DevOps environments
• Connecting DevOps environments
• Scan connected IaC source code

Module 9: External Attack Surface Management

• Defender EASM
• Discovery
• Inventory

Module 10: Security Copilot in Defender for Cloud

• Cloud security challenges
• How Security Copilot works
• Security Copilot in Defender for Cloud

Module 11: Defender for Threat Intelligence

• Defender TI Capabilities
• How Defender TI works
180 mins
Lecture
6

Interactive Simulated Lab Experience

• Connecting your Azure DevOps repositories
• Creating a Microsoft Defender EASM Azure resource
• Discovering your attack surface
• Gathering vulnerability intelligence
• Using Security Copilot standalone portal to get threat intelligence
• Connecting to Microsoft Sentinel to Analyze Security Alerts
60 mins
Lab

What You'll Learn

Understand core concepts and best practices
Hands-on experience with real-world scenarios
Learn from certified Microsoft experts
Prepare for relevant certifications
Access to lab environments
Post-training support and resources

Course Details

Duration
12 hours
Level
Intermediate
Role
Technical
Course Type
Project Ready
Partner Segment
Enterprise
Course Stage
Available
Hands-on Labs
Yes
ESI Course Code
DW-310

Partner Skilling Catalog

Comprehensive course catalog for Microsoft partners. Access world-class training on Azure, AI, Security, and more to accelerate your cloud journey.

Connect

Legal & Support

© 2026 Technofocus. All rights reserved.

Sponsored by Microsoft Partner Enablement