Skip to content

Commit b14e695

Browse files
Merge pull request #53686 from ceperezb/CEPEREZB-sc100-design-identity-solutions
Ceperezb sc100 design identity solutions
2 parents 27047f9 + b68068d commit b14e695

18 files changed

Lines changed: 503 additions & 409 deletions

learn-pr/wwl-sci/design-solutions-identity-access-management/1-introduction.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -4,10 +4,10 @@ title: Introduction
44
metadata:
55
title: Introduction
66
description: "Introduction to designing identity and access management solutions for security architects."
7-
ms.date: 02/07/2026
7+
ms.date: 03/03/2026
88
author: ceperezb
99
ms.author: ceperezb
1010
ms.topic: unit
11-
durationInMinutes: 2
11+
durationInMinutes: 3
1212
content: |
1313
[!include[](includes/1-introduction.md)]

learn-pr/wwl-sci/design-solutions-identity-access-management/2-design-cloud-hybrid-multi-cloud-access-strategies.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -4,7 +4,7 @@ title: Design a solution for access to SaaS, PaaS, IaaS, hybrid, and multicloud
44
metadata:
55
title: Design a solution for access to SaaS, PaaS, IaaS, hybrid, and multicloud resources
66
description: "Design access strategies for SaaS, PaaS, IaaS, hybrid, and multicloud resources using identity, networking, and application controls."
7-
ms.date: 02/07/2026
7+
ms.date: 03/03/2026
88
author: ceperezb
99
ms.author: ceperezb
1010
ms.topic: unit

learn-pr/wwl-sci/design-solutions-identity-access-management/2a-design-solution-entra-hybrid-multicloud.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -4,7 +4,7 @@ title: Design a solution for Microsoft Entra ID, including hybrid and multicloud
44
metadata:
55
title: Design a solution for Microsoft Entra ID, including hybrid and multicloud environments
66
description: "Design a Microsoft Entra ID solution for hybrid and multicloud environments, including directory synchronization, authentication methods, and multicloud federation."
7-
ms.date: 02/07/2026
7+
ms.date: 03/03/2026
88
author: ceperezb
99
ms.author: ceperezb
1010
ms.topic: unit

learn-pr/wwl-sci/design-solutions-identity-access-management/3-design-solution-external-identities.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -4,7 +4,7 @@ title: Design a solution for external identities
44
metadata:
55
title: Design a solution for external identities
66
description: "Design B2B collaboration, customer identity, and decentralized identity solutions using Microsoft Entra External ID."
7-
ms.date: 01/30/2026
7+
ms.date: 03/03/2026
88
author: ceperezb
99
ms.author: ceperezb
1010
ms.topic: unit

learn-pr/wwl-sci/design-solutions-identity-access-management/4-design-modern-authentication-authorization-strategies.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -4,10 +4,10 @@ title: Design modern authentication and authorization strategies
44
metadata:
55
title: Design modern authentication and authorization strategies
66
description: "Design authentication strategies using Conditional Access, CAE, Identity Protection, and protected actions."
7-
ms.date: 01/30/2026
7+
ms.date: 03/03/2026
88
author: ceperezb
99
ms.author: ceperezb
1010
ms.topic: unit
11-
durationInMinutes: 8
11+
durationInMinutes: 12
1212
content: |
1313
[!include[](includes/4-design-modern-authentication-authorization-strategies.md)]
Lines changed: 14 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,14 @@
1+
### YamlMime:ModuleUnit
2+
uid: learn.wwl.design-solutions-identity-access-management.conditional-access-agent-id
3+
title: Design Conditional Access policies for AI agents
4+
metadata:
5+
title: Design Conditional Access policies for AI agents
6+
description: "Design Conditional Access policies for AI agent identities using Microsoft Entra Agent ID, including agent architecture, policy configuration, risk-based controls, and investigation techniques."
7+
ms.date: 03/03/2026
8+
author: ceperezb
9+
ms.author: ceperezb
10+
ms.topic: unit
11+
ai-usage: ai-generated
12+
durationInMinutes: 9
13+
content: |
14+
[!include[](includes/4a-conditional-access-agent-id.md)]

learn-pr/wwl-sci/design-solutions-identity-access-management/5-align-conditional-access-zero-trust.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -4,10 +4,10 @@ title: Validate alignment of Conditional Access policies with a Zero Trust strat
44
metadata:
55
title: Validate alignment of Conditional Access policies with a Zero Trust strategy
66
description: "Validate that Conditional Access policies enforce Zero Trust principles of explicit verification, least privilege, and assume breach."
7-
ms.date: 01/30/2026
7+
ms.date: 03/03/2026
88
author: ceperezb
99
ms.author: ceperezb
1010
ms.topic: unit
11-
durationInMinutes: 7
11+
durationInMinutes: 13
1212
content: |
1313
[!include[](includes/5-align-conditional-access-zero-trust.md)]

learn-pr/wwl-sci/design-solutions-identity-access-management/6-specify-requirements-secure-active-directory-domain-services.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -4,10 +4,10 @@ title: Specify requirements for securing Active Directory Domain Services
44
metadata:
55
title: Specify requirements for securing Active Directory Domain Services
66
description: "Provide guidance for hardening AD DS through attack surface reduction, administrative tiering, and monitoring."
7-
ms.date: 01/30/2026
7+
ms.date: 03/03/2026
88
author: ceperezb
99
ms.author: ceperezb
1010
ms.topic: unit
11-
durationInMinutes: 7
11+
durationInMinutes: 12
1212
content: |
1313
[!include[](includes/6-specify-requirements-secure-active-directory-domain-services.md)]

learn-pr/wwl-sci/design-solutions-identity-access-management/7-design-solution-manage-secrets-keys-certificates.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -4,10 +4,10 @@ title: Design a solution to manage secrets, keys, and certificates
44
metadata:
55
title: Design a solution to manage secrets, keys, and certificates
66
description: "Design secrets management solutions using Azure Key Vault with appropriate access controls and lifecycle management."
7-
ms.date: 01/30/2026
7+
ms.date: 03/03/2026
88
author: ceperezb
99
ms.author: ceperezb
1010
ms.topic: unit
11-
durationInMinutes: 8
11+
durationInMinutes: 11
1212
content: |
1313
[!include[](includes/7-design-solution-manage-secrets-keys-certificates.md)]

learn-pr/wwl-sci/design-solutions-identity-access-management/8-knowledge-check.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -4,7 +4,7 @@ title: Knowledge check
44
metadata:
55
title: Knowledge check
66
description: Knowledge check for identity and access management security design.
7-
ms.date: 01/30/2026
7+
ms.date: 03/03/2026
88
author: ceperezb
99
ms.author: ceperezb
1010
ms.topic: unit

0 commit comments

Comments
 (0)