Microsoft Azure Security Technologies (AZ-500)
Introduction
Certification Details
Welcome to this comprehensive overview of the topics covered in the AZ-500 certification. In this guide, we break down the exam into four main areas:
- Manage Identity and Access
- Secure Networking
- Secure Compute, Storage, and Databases
- Manage Security Operations
Manage Identity and Access
This section represents approximately 25% to 30% of the exam content. Here, the focus is on implementing robust identity and access management solutions using Azure Active Directory—now rebranded as Microsoft Entra ID. Key topics include:
- Azure AD Privileged Identity Management
- Hybrid Identity
- Enterprise Governance
- Identity Protection

Secure Networking
Making up around 20% to 25% of the exam content, the Secure Networking section emphasizes safeguarding network environments. Topics covered include:
- Perimeter Security: Protecting your network’s borders and entry points.
- Network Security: Ensuring data integrity, confidentiality, and availability during processing, storage, and transmission.
Secure Compute, Storage, and Databases
Accounting for roughly 20% to 25% of the certification content, this section delves into securing critical infrastructure components. Areas of focus include:
- Host Security: Strategies for protecting both virtual and physical hosts.
- App Security: Best practices for designing and deploying secure applications.
- Container Security: Securing containerized applications and managing their lifecycle.
- Storage Security: Protocols and practices to protect various data storage solutions.
- Key Vault: A service for securely managing cryptographic keys, secrets, and certificates.
- Database Security: Techniques to safeguard database integrity and protect sensitive data.
Managed Security Operations
Covering about 25% to 30% of the exam, this section focuses on the management and operational aspects of security in the cloud and on-premises:
- Azure Monitor: Microsoft's robust solution for collecting, analyzing, and acting on telemetry data.
- Microsoft Defender for Cloud: A suite providing extensive security for both Azure and non-Azure environments.
- Microsoft Sentinel: Azure’s SIEM solution, designed for efficient threat detection, investigation, and response.
Note
Remember that each of these core areas is crucial for building a holistic security posture in modern cloud environments.
Service Name Changes
Several services have been renamed to align with Microsoft's evolving branding strategy:
- Azure AD is now known as Microsoft Entra ID. Both names might appear interchangeably in various materials.
- Azure AD Connect has been rebranded as Microsoft Entra Connect.
- Any service formerly including "Azure AD" in its name is now updated to Entra ID, a change reflected in the Azure portal.
Exam Scheduling and Additional Resources
To schedule your AZ-500 exam, simply search for "AZ-500 exam" on your preferred search engine. You will find pages featuring prep videos, updated study guides, and a sandbox with exam-style questions.

Click the schedule link, sign in, and you will be redirected to Pearson VUE, where you can choose between a proctored exam or taking the exam at a testing center. Note that the exam fee is approximately 165 US dollars, though pricing may vary based on your country and local tax regulations.
Furthermore, explore the Microsoft Learn paths available for self-paced and instructor-led courses. These resources are constantly updated by Microsoft to ensure you have the latest information on security best practices and exam topics.

Additional Resources
For further study, consider exploring the following links:
With this introduction complete, we wish you the best of luck on your AZ-500 certification journey. Happy learning!
Watch Video
Watch video content