Microsoft Cybersecurity Architecture
Microsoft via Coursera Professional Certificate
Overview
Google, IBM & Meta Certificates – 40% Off
One plan covers every Professional Certificate on Coursera.
Unlock All Certificates
Design, govern, and engineer enterprise security solutions in the Cybersecurity Architecture Professional Certificate. This Microsoft-partnered program transforms IT professionals into strategic architects who can secure complex, multi-cloud environments.
Learn to design Zero Trust identity models, micro-segmented networks, and DevSecOps pipelines while quantifying cyber risk for executives. Through hands-on projects, you will create strategic roadmaps and high-level design diagrams for your professional portfolio.
The curriculum integrates generative AI, leveraging tools like Microsoft Sentinel and Purview to accelerate risk analysis, threat modeling, and incident response. Designed for senior practitioners, it prepares you for roles like Cybersecurity Architect, Security Manager, and CISO.
Prerequisites: foundational IT infrastructure, networking, and risk management knowledge. Elevate your career, lead cross-functional governance, business-aligned security architectures.
Note on tools: Some features of Microsoft Purview, Microsoft Entra ID Governance, Microsoft Sentinel, Microsoft Defender for Cloud, and GitHub Advanced Security require paid licenses or eligible tenants and may be required to complete tool based labs as designed. Free trials or sample data alternatives may be referenced where available, but access depends on tenant eligibility, administrator setup, and service specific licensing or billing terms.
Syllabus
- Course 1: Security Strategy and Compliance
- Course 2: Identity and Zero Trust Architecture
- Course 3: Infrastructure and Network Protection
- Course 4: Application and DevSecOps
- Course 5: Threat Detection and Security Engineering
Courses
-
In this advanced-level course, you will learn to embed security directly into the software development lifecycle, transforming how your organization builds and deploys applications. You'll move beyond traditional development practices to automate security by gating Infrastructure-as-Code (IaC) pipelines, embedding SAST/DAST scanning, and continuously monitoring control baselines to ensure ongoing compliance. You'll leverage generative AI and manual frameworks to lead comprehensive threat-modeling workshops, identifying potential attack vectors before they impact production. You'll also engineer secure containerized and Kubernetes environments, aligning workload protection and orchestration controls with established cloud landing zones, and design AI-enhanced security gates within Jenkins and GitHub Actions to prevent AI-related attack vectors throughout the software delivery lifecycle. This course is for security engineers, DevOps professionals, and software architects with familiarity with the SDLC, basic CI/CD pipeline automation, and introductory experience with application or infrastructure security testing. By the end of this course, you will be able to lead threat-modeling workshops to derive security requirements and structure control gates across complex systems; operationalize SAST, DAST, SCA, and secret-scanning within CI/CD and IaC pipelines to enforce risk-based gating; engineer secure containerized and Kubernetes environments aligned with established cloud landing zones; and design AI-enhanced security gates within Jenkins and GitHub Actions to prevent AI-related attack vectors across the software delivery lifecycle. This course works with tools across the DevSecOps ecosystem, including GitHub Advanced Security for secret scanning and code analysis, the free Microsoft Threat Modeling Tool which are available for public repositories. GitHub Advanced Security features, including Code Security and Secret Protection, require a paid license for private repositories.
-
In this advanced-level course, you will learn to design robust Identity and Access Management (IAM) architectures that support the modern enterprise. You'll move beyond traditional models to implement Zero Trust principles, ensuring rigorous verification for every access request. You'll define and deploy advanced RBAC and ABAC models to enforce least privilege, architect secure passwordless MFA solutions using FIDO2 standards, and integrate Microsoft Defender suites to provide unified visibility and threat protection across your environment. You'll also perform organization-wide Zero Trust maturity assessments to identify critical gaps and execute a roadmap for a resilient, identity-centric security posture. This course is for security professionals with foundational knowledge of networking concepts, basic authentication protocols, and experience with enterprise directory services or cloud identity management. By the end of this course, you will be able to design Zero Trust IAM architectures for the modern enterprise, define and deploy advanced RBAC and ABAC models to enforce least privilege, architect passwordless MFA solutions using FIDO2 standards, and integrate Microsoft Defender suites for unified visibility and threat protection. This course works with Microsoft Entra ID. Advanced capabilities—including Conditional Access, access reviews, and entitlement management—are part of Microsoft Entra ID Governance and require a paid license.
-
This advanced-level course focuses on securing the underlying systems that power the modern enterprise. You'll learn to architect micro-segmented network zones to prevent lateral movement and contain potential breaches. You'll implement host hardening baselines at scale and design secure, scalable foundations for both on-premise fabrics and multi-cloud landing zones, using policy-as-code principles to ensure consistency and automation. You'll also assess GenAI infrastructure risks and design risk-informed architectural safeguards that extend existing enterprise security controls and governance frameworks. This course is for security professionals with familiarity with core networking protocols, foundational cloud architecture principles, and basic experience with infrastructure automation or scripting. By the end of this course, you will be able to architect micro-segmented network zones using east-west firewall policies and TLS encryption to isolate container and Kubernetes workloads; implement host hardening baselines via configuration management to maintain compliance across on-prem hypervisors and storage fabrics; develop cloud landing zones with policy-as-code to enforce least-privilege, encryption, and logging defaults across multi-cloud environments; and assess GenAI infrastructure risks to design architectural safeguards that extend existing enterprise security controls. This course works with tools like Microsoft Defender for Cloud and Azure Firewall. Some Microsoft Defender for Cloud and Azure Firewall capabilities involve usage-based or post-trial costs.
-
In this advanced-level certificate course, you will learn to align security capabilities with business objectives by building strategic cybersecurity roadmaps. You'll develop skills to establish governance boards, draft enterprise-wide policies mapped to ISO 27001, and quantify cyber risk to inform decision-making. You'll map organizational controls to Zero Trust and NIST CSF frameworks using tools like Microsoft Purview Compliance Manager and open-source GRC platforms, tune security programs based on KPI dashboards, and drive role-based security awareness. You'll also leverage generative AI to define and implement AI risk and governance controls for the enterprise. This course is for security professionals with foundational knowledge of information security principles and introductory experience in project management or policy development. By the end of this course, you will be able to build strategic cybersecurity roadmaps aligned with business objectives, establish governance boards and draft enterprise-wide policies mapped to ISO 27001, map organizational controls to Zero Trust and NIST CSF frameworks using Microsoft Purview Compliance Manager and open-source GRC platforms, and apply generative AI to define and implement AI risk and governance controls. Some features of Microsoft Purview require a paid license or eligible tenant. Open-source and spreadsheet-based alternatives are available throughout the course.
-
This advanced-level course focuses on the technical design of enterprise security operations, continuous testing, and data protection. You'll learn to architect robust continuous control monitoring processes and orchestrate red and purple team exercises to proactively validate enterprise defenses. You'll also design sophisticated SIEM detection rules mapped to the MITRE ATT&CK framework, orchestrate rapid incident-triage playbooks, and craft comprehensive enterprise-level incident response plans. You'll design end-to-end security architecture patterns to classify and protect sensitive data across the organization, and establish advanced AI-driven threat response strategies to improve incident metrics and overall operational efficiency. This course is for security engineers, SOC analysts, and security architects with familiarity with SOC workflows, the MITRE ATT&CK framework, and introductory experience with incident response or SIEM platform management. By the end of this course, you will be able to design security architecture patterns to automate continuous monitoring and protect sensitive data; engineer SIEM detection use cases and MITRE ATT&CK-aligned catalogs across critical log sources; orchestrate red and purple team exercises to validate detective and preventive controls; and develop incident response plans and AI-driven strategies to optimize SOC investigation timelines. You will also learn to build a portfolio that showcases strategic thinking, risk evaluation, and practice navigating high-stakes technical leadership interviews. This course works with tools like Microsoft Sentinel for SIEM and SOAR, and Microsoft Purview for data protection. Some Microsoft Sentinel and Purview capabilities require a paid license or eligible tenant.
Taught by
Microsoft