Azure

Overview

About Azure

Microsoft Azure is one of the three major cloud platforms, and this course walks through it the way most teams actually adopt it. It starts with Azure Fundamentals — subscriptions, resource groups, regions, and working in both the Azure Portal and Azure CLI — followed by Identity & Access Management with Microsoft Entra ID (formerly Azure AD), RBAC, and managed identities, since almost everything else in Azure is governed by who can access what.

From there, Compute Services covers running workloads on Azure — Virtual Machines, App Service, Azure Functions, and VM Scale Sets — while Storage Services covers Blob, File, and Queue storage plus managed disks. Networking ties it together with virtual networks, network security groups, load balancers, and connecting on-premises networks with a VPN or ExpressRoute.

Databases covers Azure SQL and Cosmos DB for structured and NoSQL workloads, and Containers & Kubernetes on Azure covers Azure Container Instances, the Azure Container Registry, and running production workloads on AKS.

DevOps on Azure covers Azure DevOps and GitHub Actions for CI/CD, plus provisioning infrastructure with ARM templates and Bicep. Monitoring & Governance covers Azure Monitor, Log Analytics, Cost Management, and Azure Policy for keeping a growing environment under control. Finally, Security & Compliance covers Key Vault, Microsoft Defender for Cloud, and Microsoft Sentinel — the tools that keep an Azure environment secure as it scales.

Content

10 modules
01

Azure Fundamentals

Subscriptions, resource groups, regions and availability zones, and working in both the Azure Portal and Azure CLI.

Resource Groups Azure CLI Regions
02

Identity & Access Management

Microsoft Entra ID (formerly Azure AD), role-based access control (RBAC), and managed identities for securely controlling who and what can access your resources.

Entra ID RBAC Managed Identities
03

Compute Services

Running workloads on Azure with Virtual Machines, App Service for web apps, Azure Functions for serverless compute, and VM Scale Sets for elastic capacity.

Virtual Machines App Service Azure Functions
04

Storage Services

Blob, File, and Queue storage for different data shapes, plus managed disks for VM storage and the storage account settings that govern them all.

Blob Storage Managed Disks Storage Accounts
05

Networking

Virtual networks and subnets, network security groups, load balancing with Load Balancer and Application Gateway, and connecting on-prem networks with VPN or ExpressRoute.

VNets NSGs Load Balancer ExpressRoute
06

Databases

Azure SQL Database and Managed Instance for relational workloads, and Cosmos DB for globally distributed NoSQL data.

Azure SQL Cosmos DB Managed Instance
07

Containers & Kubernetes on Azure

Running containers with Azure Container Instances, storing images in the Azure Container Registry, and orchestrating them at scale with AKS.

AKS ACI Container Registry
08

DevOps on Azure

Building CI/CD pipelines with Azure DevOps and GitHub Actions, and provisioning infrastructure declaratively with ARM templates and Bicep.

Azure DevOps GitHub Actions Bicep
09

Monitoring & Governance

Watching system health with Azure Monitor and Log Analytics, controlling spend with Cost Management, and enforcing standards across an environment with Azure Policy.

Azure Monitor Log Analytics Azure Policy
10

Security & Compliance

Storing secrets safely with Key Vault, protecting resources with Microsoft Defender for Cloud, and detecting threats with Microsoft Sentinel.

Key Vault Defender for Cloud Sentinel

Projects

5 builds

Deploy Your First Web App with Azure App Service

Take a simple web app from your machine to a live Azure App Service instance, configure a custom domain, and set up continuous deployment from a Git repo.

Provision Azure Infrastructure with Bicep

Define a resource group, storage account, and VM declaratively with Bicep, then deploy the whole stack with a single command.

Deploy a Containerized App to AKS

Build a container image, push it to Azure Container Registry, and deploy it to an AKS cluster with a Kubernetes deployment and service.

Build a CI/CD Pipeline with Azure DevOps

Set up a complete Azure Pipelines workflow that builds, tests, and deploys an application automatically on every push.

Secure an Azure Environment End to End

Lock down a resource group with RBAC and managed identities, store secrets in Key Vault, and enable Microsoft Defender for Cloud recommendations.

What You Can Do After This Course

By the end of the curriculum you'll have shipped five real projects and covered the core of what an Azure administrator or cloud engineer role expects. Concretely, you'll be able to:

Navigate Azure confidently — organize resources with subscriptions and resource groups, and work in both the Portal and Azure CLI.

Control access properly — manage identities with Microsoft Entra ID, and scope permissions correctly with RBAC and managed identities.

Run real workloads — deploy Virtual Machines, App Service web apps, and Azure Functions, and store data in Blob Storage, Azure SQL, or Cosmos DB.

Design a working network — set up VNets, network security groups, load balancing, and connect on-prem networks when needed.

Containerize and orchestrate on Azure — push images to a container registry and run production workloads on AKS.

Automate delivery and provisioning — build CI/CD pipelines with Azure DevOps or GitHub Actions, and provision infrastructure with Bicep.

Monitor, govern, and secure an environment — track health and cost, enforce policy at scale, and protect resources with Key Vault and Defender for Cloud.