Azure Role-Based Access Control (RBAC) is the foundation of security in Azure. It allows you to finely manage who can do what across your Azure environment—whether for individuals, service principals, or applications. What is RBAC? RBAC answers three essential questions when granting access: RBAC ensures that only authorized individuals or services can access the right READ MORE
Category: AZ-900
AZ-900: Microsoft Entra Conditional Access
Microsoft Entra Conditional Access enables organizations to implement powerful, automated access control decisions based on conditions. It helps balance productivity with security by allowing or denying access based on user, location, device, and risk signals. What is Conditional Access? Conditional Access policies work like “if-then” statements: You can use Conditional Access to: Example Scenarios Planning READ MORE
AZ-900: Guest Access in Azure
Guest access in Azure allows your organization to collaborate securely with external users using Microsoft Entra ID B2B (Business-to-Business). This functionality is designed to help you extend your directory and resources to external partners such as vendors, consultants, or other collaborators. Inviting a Guest User To add a guest to your Azure organization: Once invited, READ MORE
AZ-900: External Identities in Azure
In many organizations, it’s important to securely work with people who are not part of your company. Microsoft Entra ID (previously known as Azure Active Directory) makes this possible through External Identities. What are External Identities? External Identities let people from outside your organization access your systems. This includes business partners, suppliers, vendors, and even READ MORE
AZ-900: Passwordless Authentication Methods
You don’t always need a password to sign in. Azure supports three types of passwordless authentication that work with Microsoft Entra ID. 1. Windows Hello for Business This works on Windows 10 version 1809 or newer.Instead of a password, users log in with a face scan, fingerprint, or PIN.The PIN is stored more securely than READ MORE
AZ-900: Multi-Factor Authentication (MFA) and Single Sign-On (SSO)
Managing access securely and conveniently is a core part of working in the cloud. Microsoft Entra ID supports both Single Sign-On (SSO) and Multi-Factor Authentication (MFA) to help meet this need. at is Single Sign-On (SSO)? Single Sign-On (SSO) lets users sign in once and access multiple applications and services without needing to re-enter their READ MORE
AZ-900: Authentication and Authorization
In this video, we’ll look at the difference between Authentication and Authorization. Authentication Authentication (AuthN) answers the question: “Who are you?” In Azure, authentication is typically handled using Microsoft Entra ID. This identity service allows users to sign in securely to Azure services. To further increase security, Multi-factor Authentication (MFA) can be used. MFA requires READ MORE
AZ-900: Define and Describe the Functionality and Usage of Microsoft Entra ID
Microsoft Entra ID (formerly known as Azure Active Directory) is a comprehensive identity and access management (IAM) solution provided by Microsoft. It enables secure access to resources across Azure, Microsoft 365, and thousands of other cloud applications. Key Characteristics Who Uses Microsoft Entra ID? Features and Capabilities Microsoft Entra ID plays a critical role in READ MORE
AZ-900: Migration Options: Azure Migrate and Azure Data Box
When moving to the cloud, it’s important to consider how best to migrate your data, applications, and workloads. Azure offers several options depending on your specific needs. Azure Migrate If you need to lift and shift workloads such as SQL Server to an Azure Virtual Machine, Azure Migrate is the ideal tool. It provides a READ MORE
AZ-900: Azure File Sync
Azure File Sync is a service that bridges your on-premises file servers and Azure cloud storage. It allows you to centralize your files in Azure Files, while still giving users fast access from their local Windows Servers. What Is Azure File Sync? Think of Azure File Sync as Dropbox for Azure. You can store your READ MORE