Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

Microsoft

Identity and Zero Trust Architecture

Microsoft via Coursera

Overview

Google, IBM & Meta Certificates – 40% Off
One plan covers every Professional Certificate on Coursera.
Unlock All Certificates
In this advanced-level course, you will learn to design robust Identity and Access Management (IAM) architectures that support the modern enterprise. You'll move beyond traditional models to implement Zero Trust principles, ensuring rigorous verification for every access request. You'll define and deploy advanced RBAC and ABAC models to enforce least privilege, architect secure passwordless MFA solutions using FIDO2 standards, and integrate Microsoft Defender suites to provide unified visibility and threat protection across your environment. You'll also perform organization-wide Zero Trust maturity assessments to identify critical gaps and execute a roadmap for a resilient, identity-centric security posture. This course is for security professionals with foundational knowledge of networking concepts, basic authentication protocols, and experience with enterprise directory services or cloud identity management. By the end of this course, you will be able to design Zero Trust IAM architectures for the modern enterprise, define and deploy advanced RBAC and ABAC models to enforce least privilege, architect passwordless MFA solutions using FIDO2 standards, and integrate Microsoft Defender suites for unified visibility and threat protection. This course works with Microsoft Entra ID. Advanced capabilities—including Conditional Access, access reviews, and entitlement management—are part of Microsoft Entra ID Governance and require a paid license.

Syllabus

  • Access Models: Model Role-Based Access Control (RBAC) and Attribute-Based Access Control (ABAC)
    • Learn to transition organizations away from flat, overly permissive access models to dynamic, attribute-driven access controls that enforce least privilege for sensitive healthcare data.
  • Access Models: Design Passwordless MFA
    • Passwords are the weakest link in enterprise security. Learn to architect modern, phishing-resistant authentication flows utilizing FIDO2 standards and context-aware Microsoft Entra Conditional Access.
  • Zero Trust: Integrate MS Defender Suite
    • Learn how consolidating Extended Detection and Response (XDR) telemetry with robust certificate-based authentication and Hardware Security Module (HSM) key management strengthens identity and device trust signals within the Microsoft Defender portal.
  • Zero Trust: Assess ZT Maturity
    • Zero Trust is a journey. Learn to utilize standardized maturity models to evaluate your organization's current state and sequence a phased adoption roadmap that accounts for future cryptographic risks.
  • GenAI Module: GenAI for Identity and Zero Trust
    • As GenAI tools become embedded in enterprise workflows, they introduce complex new identity risks. In this module, you will learn to define and integrate Zero Trust identity workflows specifically designed to mitigate risks like prompt-driven access escalations and automated abuse by AI agents.
  • Project Module: Zero Trust Plan
    • Synthesize your knowledge of identity models, Conditional Access, and Zero Trust maturity to design a comprehensive Identity Architecture. You will create visual diagrams and technical documentation to demonstrate how strict identity controls mitigate specific enterprise risks.

Taught by

Microsoft

Reviews

Start your review of Identity and Zero Trust Architecture

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.