Microsoft Entra ID (Azure AD)

Overview

The Microsoft Entra ID course trains participants in managing and securing identities and access for cloud, on-premises and hybrid environments using Microsoft’s modern identity platform. It covers core IAM (Identity & Access Management) concepts, implementation of single sign-on (SSO), MFA/passwordless authentication, conditional access, role & group management, and integration with applications and services. By the end of the course, learners will be able to configure Entra ID tenants, secure user and application access, and apply best practices for identity governance and Zero Trust access.

Key Features

  • Single Sign-On (SSO) & App Integrations – Connect users to cloud and on-premises applications with one identity.
  • Multi-Factor Authentication (MFA) & Passwordless Authentication – Strengthen authentication methods beyond just a password.
  • Conditional Access & Risk-Based Policies – Define policies based on user, device, location, risk level, and more to control access.
  • Unified Identity Management – Manage users, groups, devices, applications from a central platform, across cloud and on-premises.
  • Identity Governance & Privileged Identity Management (PIM) – Govern who has what access, review access, manage privileged roles, and ensure least-privilege.
  • Hybrid and Multi-Cloud Support – Integrate with on-premises identity stores, extend access to multiple clouds and SaaS environments.

Course Objectives

Job Opportunities After Completing the course

Salary Prospects

Country
Average Salary
United States
$75,000 to $160,000 per year
United Kingdom
£40,000 to £100,000 per year
India
INR 6,00,000 to INR 35,00,000 per year
Australia
AUD 80,000 to AUD 180,000 per year
UAE
AED 120,000 to AED 240,000 per year.
Singapore
SGD 80,000 to SGD 160,000 per year

Who Should Take this Course?

Course Content

  • What is IAM?
  • Azure Identity Concepts
  • Azure AD vs On-Prem AD vs Entra ID
  • Identity Lifecycle (Joiner / Mover / Leaver)
  • Role of Azure AD in Cloud & Hybrid
  • Microsoft Entra ID (Azure AD)
  • Entra ID Governance
  • Entra Permissions Management (CIEM)
  • Entra External ID (B2B/B2C)
  • Entra Workload ID
  • Tenants
  • Users, Groups, Contacts
  • Devices
  • Licenses (Free, P1, P2)
  • Cloud-only identity
  • Synced identity (Azure AD Connect)
  • Federated identity (ADFS)
  • B2B Guest Users
  • B2C Customers
  • What is Azure AD Connect?
  • Password Hash Sync (PHS)
  • Pass-through Authentication (PTA)
  • Federation (ADFS)
  • Azure AD Connect Installation & Configuration
  • Sync Rules & Filtering
  • Password + MFA
  • Passwordless (FIDO2, Windows Hello, Authenticator App)
  • Temporary Access Pass (TAP)
  • Self-Service Password Reset (SSPR)
  • Enable & Enforce MFA
  • Per-user MFA vs Conditional MFA
  • Trusted IPs & Bypass Conditions
  • MFA Reports & Troubleshooting
  • What is Conditional Access?
  • Conditions: Users, Apps, Locations, Devices, Risk
  • Controls: Grant, Block, Session Controls
  • Real-Time Scenarios:
    Enforce MFA outside office
    Block legacy authentication
    Allow only compliant devices
  • User risk vs Sign-in risk
  • Risk policies
  • Remediation & Report
  • MCAS / Defender for Identity Integration
  • Built-in roles
  • Custom roles
  • Assigning roles (User, Group, App, PIM)
  • Least Privilege Model
  • What is PIM?
  • Just-in-time (JIT) Access
  • Role activation workflows
  • Approval / MFA / Notifications
  • Access Reviews
  • PIM for Azure Resources
  • App Registration vs Enterprise App
  • SSO with SAML, OAuth, OIDC
  • Gallery vs Custom Apps
  • Adding Apps to Azure AD
  • Passing Claims & Attributes
  • App Proxy for on-prem apps
  • OAuth2 Authorization Code Flow
  • Refresh Tokens
  • Access Token vs ID Token
  • Graph API vs MS Graph
  • Access Packages
  • Entitlement Management
  • Catalogs & Policies
  • Approvals & Expiration
  • User access review
  • Group / App / Role access review
  • Automated remediation
  • Scheduling & Reporting
  • Audit Logs vs Sign-in Logs
  • Log Analytics Integration
  • Azure Monitor
  • Azure Sentinel / SIEM integration
  • Azure AD Join vs Hybrid Join
  • Intune Enrollment
  • Compliant Devices
  • Conditional Access for devices
  • Disable Legacy Authentication
  • Enforce MFA & Conditional Access
  • Break Glass Accounts
  • Least Privilege & PIM
  • Monitoring & Alerts
  • Setup Hybrid Identity with Azure AD Connect
  • Enforce Conditional Access for remote users
  • Implement MFA + SSPR + Passwordless
  • Onboard Enterprise SSO Application
  • Configure PIM for Admin Roles
  • Create Identity Governance with Access Reviews

Are you ready to take your career to the next level and become a cyber security expert?

Enroll in our course today and take the first step towards your career success!