Get in Touch

Course Outline

Module 1: Compute Solution Architecture

This module examines the selection and implementation of compute technologies, including virtual machines, App Services, Service Fabric, Azure Functions, Windows Virtual Desktop, and containers, to meet operational needs for government systems.

Lessons

  • Provisioning Strategies for Compute Resources
  • Evaluation of Suitable Compute Technologies
  • Containerized Workload Strategies
  • Automation of Compute Lifecycle Management

Lab : Implementing Containers on Azure

  • Deploying containers within Azure virtual machines
  • Provisioning containers in Azure Container Instances
  • Implementing clusters in Azure Kubernetes Service (AKS)

Upon completion of this module, learners will be equipped to:

  • Establish automated management frameworks for compute resources
  • Select appropriate compute models, such as virtual machines and App Services
  • Define configurations for AKS and ACI environments

Module 2: Network Architecture Design

This module addresses the design of network addressing, name resolution, provisioning, and security controls essential for secure public sector infrastructure.

Lessons

  • Strategies for Network Addressing and Name Resolution
  • Network Provisioning Methodologies
  • Network Security Frameworks
  • Connectivity Solutions for Internet and On-Premises Networks
  • Automation of Network Operations
  • Load Balancing and Traffic Routing Strategies

Upon completion of this module, learners will be equipped to:

  • Define solutions for network addressing and name resolution
  • Implement network security measures, including private endpoints, firewalls, and gateways
  • Configure connectivity for Internet, on-premises, and virtual network integration
  • Design load balancing and traffic routing mechanisms

Module 3: Migration Strategy Design

This module focuses on assessing and planning the migration of applications, virtual machines, and databases to cloud environments while ensuring continuity and compliance.

Lessons

  • Assessment of On-Premises Servers and Applications
  • Migration Strategies for Applications and Virtual Machines
  • Database Migration Planning

Upon completion of this module, learners will be equipped to:

  • Evaluate on-premises assets for cloud readiness
  • Develop migration plans for applications and virtual machines
  • Scope migration activities, identifying redundant, related, or obsolete data

Module 4: Identity and Access Governance

This module covers the establishment of service identities and the hierarchical management of Azure Management Groups and Subscriptions to enforce governance standards.

Lessons

  • Best Practices for Identity and Access Management
  • Multi-Factor Authentication Implementation
  • Securing Identity Infrastructure: A Five-Step Approach
  • Single-Sign-On (SSO) Strategies
  • Hybrid Identity Solutions
  • B2B Integration Frameworks
  • Hierarchical Management Group Structures

Lab : Managing Azure AD Authentication and Authorization

  • Deploying an Azure VM with an AD DS domain controller
  • Creating and configuring an Azure AD tenant
  • Integrating AD DS forests with Azure AD tenants

Upon completion of this module, learners will be equipped to:

  • Define the hierarchy for Management Groups and Subscriptions
  • Configure custom RBAC roles and assignments
  • Plan multi-factor authentication deployment
  • Implement Single-Sign-On (SSO) solutions
  • Establish hybrid identity architectures

Module 5: Governance and Compliance

This module details the application of Azure Policy for compliance enforcement, resource non-compliance detection, and tag governance to maintain accountability.

Lessons

  • Implementing Azure Policy Standards
  • Utilizing Azure Blueprints for Governance

Upon completion of this module, learners will be equipped to:

  • Organize policies using initiatives
  • Enforce tag governance via Azure Policy
  • Apply Azure Blueprints for consistent resource deployment

Module 6: Database Architecture

This module guides the selection of appropriate data stores and the configuration of Azure SQL Database and Azure SQL Managed Instance service tiers to support data integrity and performance.

Lessons

  • Selecting Data Platforms Based on Requirements
  • Azure Data Storage Overview
  • Database Service Tier Sizing
  • Dynamic Scaling of SQL Databases and Managed Instances
  • Data Encryption Strategies for Rest, Transmission, and Use

Upon completion of this module, learners will be equipped to:

  • Determine appropriate database service tier sizes
  • Implement encryption for data at rest, in transit, and in use
  • Analyze Azure Data Lake Store and Blob Storage capabilities

Module 7: Storage Account Design

This module covers the design of tiered storage strategies and the management of storage assets using Azure tools to optimize cost and performance.

Lessons

  • Analyzing Storage Tiers
  • Storage Access Strategy Design
  • Selection of Storage Management Tools

Upon completion of this module, learners will be equipped to:

  • Select appropriate tools for Azure Storage management
  • Design access tiers for Azure Blob Storage

Module 8: Data Integration Architecture

This module explores data flow orchestration using Azure Data Factory and the architectural components of Azure Synapse Analytics.

Lessons

  • Data Flow Recommendation Strategies
  • Data Integration Solution Design

Upon completion of this module, learners will be equipped to:

  • Implement Azure Synapse Analytics solutions
  • Describe data movement patterns in Azure Data Factory
  • Load data into SQL Data Warehouse using Azure Data Factory

Module 9: Logging and Monitoring Frameworks

This module introduces Azure Monitor, Azure Application Insights, and Azure Sentinel to enable comprehensive monitoring, log collection, and analysis of Azure resources.

Lessons

  • Azure Monitoring Services Overview
  • Implementing Azure Monitor

Upon completion of this module, learners will be equipped to:

  • Monitor resources using Azure Monitor
  • Collect and analyze resource logs for compliance and operations
  • Utilize Azure Sentinel for device, user, and infrastructure data collection

Module 10: Backup and Disaster Recovery

This module addresses site recovery capacity, failover, and failback mechanisms, recommending robust recovery strategies for multi-region operations.

Lessons

  • Recovery Strategies for Hybrid and On-Premises Workloads
  • Designing Azure Site Recovery Solutions
  • Multi-Region Recovery Architectures
  • Azure Backup Management Practices
  • Data Archiving and Retention Design

Upon completion of this module, learners will be equipped to:

  • Align recovery solutions with hybrid and on-premises objectives
  • Determine site recovery capacity requirements
  • Select storage methodologies for data archiving
  • Define data archiving requirements and standards

Module 11: High Availability Design

This module focuses on redundancy strategies for applications and workloads, encompassing compute, database, and storage components to ensure continuous service delivery.

Lessons

  • Application and Workload Redundancy Strategies
  • Autoscaling Implementation
  • Identification of High Availability Requirements
  • Storage Types for High Availability
  • Geo-Redundancy Planning for Workloads

Upon completion of this module, learners will be equipped to:

  • Design autoscaling mechanisms for scalability
  • Select storage types that support high availability
  • Implement geo-redundancy for critical workloads

Module 12: Cost Optimization Strategies

This module provides methods for analyzing cost recommendations, breaking down expenditures by Azure service, and reviewing usage details to ensure fiscal responsibility.

Lessons

  • Cost Management Solution Design
  • Perspectives for Minimization of Cloud Expenditures

Upon completion of this module, learners will be equipped to:

  • Optimize expenditures using Azure Cost Management
  • Incorporate cost considerations into design phases
  • Apply cost optimization recommendations effectively

Module 13: Application Architecture Patterns

This module covers deployment strategies using ARM templates, Logic Apps, or Azure Functions, and microservices architectures involving Event Grid, Event Hubs, Service Bus, Storage Queues, and webhooks.

Lessons

  • Microservices Architecture Recommendations
  • Orchestration of Application Deployments
  • API Integration Solutions

Lab : Implement Azure Logic Apps Integration with Azure Event Grid

  • Integrating Logic Apps with Event Grid
  • Triggering Logic Apps in response to resource changes

Upon completion of this module, learners will understand:

  • Deployment options using ARM templates, Logic Apps, or Azure Functions
  • Strategies for monitoring automation workflows
  • Structuring hosting environments for API management

Module 14: Application Security Controls

This module details security measures for application deployment, including the use of Key Vault, Azure AD Managed Identities, and secure microservices integration.

Lessons

  • Security for Applications and Services
  • Implementing Key Vault Solutions
  • Utilizing Azure AD Managed Identities

Upon completion of this module, learners will be equipped to:

  • Manage authentication and authorization via Key Vault
  • Ensure Azure Key Vault availability and redundancy
  • Differentiate between Blueprints, Resource Manager Templates, and Azure Policy

Requirements

Successful Azure Architects enter this role with foundational experience in operating systems, virtualization, cloud infrastructure, storage, networking, applications, and databases.

  • Familiarity with on-premises virtualization, including VMs, virtual networking, and virtual hard disks.
  • Knowledge of network configuration, such as TCP/IP, DNS, VPNs, firewalls, and encryption technologies.
  • Understanding of Active Directory concepts, including domains, forests, domain controllers, replication, Kerberos, and LDAP.
  • Experience with resilience and disaster recovery, specifically backup and restore operations.
  • Proficiency in application development and API integration.
  • Working knowledge of SQL databases (e.g., MS SQL, MySQL, Postgres) and non-SQL databases (e.g., MongoDB).
  • Understanding of application decoupling patterns, including queues, tables, and caching.
  • Familiarity with security controls, including encryption at rest, encryption in transit, SSL, and TLS.
 28 Hours

Number of participants


Price per participant

Testimonials (3)

Upcoming Courses

Related Categories