About Azure
Microsoft Azure is one of the three major cloud platforms, and this course walks
through it the way most teams actually adopt it. It starts with
Azure Fundamentals — subscriptions, resource groups, regions, and
working in both the Azure Portal and Azure CLI — followed by
Identity & Access Management with Microsoft Entra ID
(formerly Azure AD), RBAC, and managed identities, since almost
everything else in Azure is governed by who can access what.
From there, Compute Services covers running workloads on Azure —
Virtual Machines, App Service, Azure Functions, and
VM Scale Sets — while Storage Services covers Blob, File, and Queue
storage plus managed disks. Networking ties it together with virtual
networks, network security groups, load balancers, and connecting on-premises
networks with a VPN or ExpressRoute.
Databases covers Azure SQL and Cosmos DB for structured and
NoSQL workloads, and Containers & Kubernetes on Azure covers
Azure Container Instances, the Azure Container Registry, and running production
workloads on AKS.
DevOps on Azure covers Azure DevOps and GitHub Actions for CI/CD,
plus provisioning infrastructure with ARM templates and Bicep.
Monitoring & Governance covers Azure Monitor, Log Analytics,
Cost Management, and Azure Policy for keeping a growing environment under control.
Finally, Security & Compliance covers Key Vault, Microsoft
Defender for Cloud, and Microsoft Sentinel — the tools that keep an Azure environment
secure as it scales.
Content
10 modules
01
Azure Fundamentals
Subscriptions, resource groups, regions and availability zones, and working in both the Azure Portal and Azure CLI.
Resource Groups
Azure CLI
Regions
02
Identity & Access Management
Microsoft Entra ID (formerly Azure AD), role-based access control (RBAC), and managed identities for securely controlling who and what can access your resources.
Entra ID
RBAC
Managed Identities
03
Compute Services
Running workloads on Azure with Virtual Machines, App Service for web apps, Azure Functions for serverless compute, and VM Scale Sets for elastic capacity.
Virtual Machines
App Service
Azure Functions
04
Storage Services
Blob, File, and Queue storage for different data shapes, plus managed disks for VM storage and the storage account settings that govern them all.
Blob Storage
Managed Disks
Storage Accounts
05
Networking
Virtual networks and subnets, network security groups, load balancing with Load Balancer and Application Gateway, and connecting on-prem networks with VPN or ExpressRoute.
VNets
NSGs
Load Balancer
ExpressRoute
06
Databases
Azure SQL Database and Managed Instance for relational workloads, and Cosmos DB for globally distributed NoSQL data.
Azure SQL
Cosmos DB
Managed Instance
07
Containers & Kubernetes on Azure
Running containers with Azure Container Instances, storing images in the Azure Container Registry, and orchestrating them at scale with AKS.
AKS
ACI
Container Registry
08
DevOps on Azure
Building CI/CD pipelines with Azure DevOps and GitHub Actions, and provisioning infrastructure declaratively with ARM templates and Bicep.
Azure DevOps
GitHub Actions
Bicep
09
Monitoring & Governance
Watching system health with Azure Monitor and Log Analytics, controlling spend with Cost Management, and enforcing standards across an environment with Azure Policy.
Azure Monitor
Log Analytics
Azure Policy
10
Security & Compliance
Storing secrets safely with Key Vault, protecting resources with Microsoft Defender for Cloud, and detecting threats with Microsoft Sentinel.
Key Vault
Defender for Cloud
Sentinel
Projects
5 builds
Deploy Your First Web App with Azure App Service
Take a simple web app from your machine to a live Azure App Service instance, configure a custom domain, and set up continuous deployment from a Git repo.
Provision Azure Infrastructure with Bicep
Define a resource group, storage account, and VM declaratively with Bicep, then deploy the whole stack with a single command.
Deploy a Containerized App to AKS
Build a container image, push it to Azure Container Registry, and deploy it to an AKS cluster with a Kubernetes deployment and service.
Build a CI/CD Pipeline with Azure DevOps
Set up a complete Azure Pipelines workflow that builds, tests, and deploys an application automatically on every push.
Secure an Azure Environment End to End
Lock down a resource group with RBAC and managed identities, store secrets in Key Vault, and enable Microsoft Defender for Cloud recommendations.
What You Can Do After This Course
By the end of the curriculum you'll have shipped five real projects and covered the
core of what an Azure administrator or cloud engineer role expects. Concretely,
you'll be able to:
Navigate Azure confidently — organize resources with subscriptions and resource groups, and work in both the Portal and Azure CLI.
Control access properly — manage identities with Microsoft Entra ID, and scope permissions correctly with RBAC and managed identities.
Run real workloads — deploy Virtual Machines, App Service web apps, and Azure Functions, and store data in Blob Storage, Azure SQL, or Cosmos DB.
Design a working network — set up VNets, network security groups, load balancing, and connect on-prem networks when needed.
Containerize and orchestrate on Azure — push images to a container registry and run production workloads on AKS.
Automate delivery and provisioning — build CI/CD pipelines with Azure DevOps or GitHub Actions, and provision infrastructure with Bicep.
Monitor, govern, and secure an environment — track health and cost, enforce policy at scale, and protect resources with Key Vault and Defender for Cloud.