Microsoft Cybersecurity Architect (SC-100) Course Overview

The Microsoft Cybersecurity Architect certification training from CloudThat has been designed for candidates for SC-100 training to become a Microsoft certified Cybersecurity Architect Expert. This course teaches candidates; how to design a Zero Trust strategy and architecture; evaluate Governance Risk Compliance (GRC) technical strategies and security operations strategies; design security for infrastructure; and design a strategy for data and applications.

The Microsoft cybersecurity architect has subject matter expertise in designing and evolving the cybersecurity strategy to protect an organization’s mission and business processes across all aspects of the enterprise architecture. The cybersecurity architect continuously collaborates with leaders and practitioners in IT security, privacy, and other roles across an organization to plan and implement a cybersecurity
strategy that meets the business needs of an organization.

After completing this course, students will be able to:

  • Design a Zero Trust strategy and architecture
  • Evaluate Governance Risk Compliance (GRC) technical strategies and security operations strategies
  • Design security for infrastructure
  • Design a strategy for data and applications

Upcoming Batches

Enroll Online
Start Date End Date









Key Features of SC-100: Microsoft Cybersecurity Architect Certification Training

  • Our training modules have 50% -60% hands-on lab sessions to encourage Thinking-Based Learning (TBL).
  • Interactive-rich virtual and face-to-face classroom teaching to inculcate Problem-Based Learning (PBL).
  • Microsoft certified instructor-led training and mentoring sessions to develop Competency-Based Learning (CBL).
  • Well-structured use-cases to simulate challenges encountered in a Real-World environment.
  • Integrated teaching assistance and support through experts designed Learning Management System (LMS) and ExamReady platform.
  • Being a Microsoft Learning Partner, we offer authored curriculum that are at par with industry standards.

Who can participate in the SC-100: Microsoft Cybersecurity Architect Certification Training?

  • Administrator
  • Security Engineer
  • Security Operations Analyst
  • Solution Architect

Prerequisites of SC-100 Certification Exam

  • Candidates for this exam should have advanced experience and knowledge in a wide range of security engineering areas, including identity and access, platform protection, security operations, securing data, and securing applications. They should also have experience with hybrid and cloud implementations.

  • To earn the Microsoft Cybersecurity Architect certification, candidates must also pass one of the following exams: SC-200, SC-300, AZ-500, or MS-500.

Advantages of SC-100 Training Course

  • Attending this course will help individuals working as cybersecurity architect who are responsible for building and implementing strategies to secure the organization’s posture.
  • It will also help individuals design and provide guidance in implementing security solutions adhering to strategy for IAM, hardware assets, applications, network infrastructure and also following the principles of zero trust, defense in depth framework.
  • This will help you in improving your organization’s security posture by taking reference of security frameworks such as Cloud Adoption Framework, Well-Architected Framework and Microsoft Cybersecurity Reference Architecture.
  • Individuals will be able to seamlessly integrate with business stakeholders and people across other domains for devising a plan to implement strategy related to cybersecurity in-accordance with the organization’s needs.

Learning Objectives of SC-100 Exam

  • Secure Azure and M365 environment by implementing security controls following the core principles of Zero Trust.
  • Provide recommendations and guidance to SecOps team for collecting all logs in Log Analytics Workspace and deploying Microsoft Sentinel solution and securing applications, endpoints, etc.
  • Devise secure strategy for IAM including enabling MFA, Access reviews, Just-in-time access.
  • Define strategy for ensuring all the resources are compliant with the latest industry regulated standards and achieves the concept of data sovereignty.
  • Improve organization’s security posture by deploying recommendations provided by Microsoft Defender for Cloud
  • Protect your servers and endpoints by creating a secure strategy for identifying vulnerabilities and threats hosted on azure as well as in hybrid environment.
  • Create a strategy for securing resources hosted as Platform as a service like Azure App services, Infrastructure as a service like Virtual Machines, Software as a service like Office and M365 products.
  • Identify prerequisites for securing applications and helping DevOps people by creating secure strategies for applications.
  • Encrypt and secure your data at rest and in transit by specifying methods in strategy.
  • Understand the best practices associated with security in-accordance with Microsoft Cybersecurity Reference Architecture (MCRA) and Microsoft Cloud Security Broker (MCSB).
  • Build a plan and create a strategy with reference to Cloud Adoption Framework(CAF).
  • Prevent ransomware attacks by implementing Microsoft Security Best Practices.

Course Outline Download Course Outline

Build an overall security strategy and architecture

  • Identify the integration points in a security architecture by using Microsoft Cybersecurity Reference Architecture (MCRA)
  • Translate business goals into security requirements
  • Translate security requirements into technical capabilities, including security services, security products, and security processes
  • Design security for a resiliency strategy
  • Integrate a hybrid or multi-tenant environment into a security strategy
  • Develop a technical governance strategy for security

Design a security operations strategy

  • Design a logging and auditing strategy to support security operations
  • Develop security operations to support a hybrid or multi-cloud environment
  • Design a strategy for SIEM and SOAR
  • Evaluate security workflows
  • Evaluate a security operations strategy for incident management lifecycle
  • Evaluate a security operations strategy for sharing technical threat intelligence

Design an identity security strategy

  • Design a strategy for access to cloud resources
  • Recommend an identity store (tenants, B2B, B2C, hybrid)
  • Recommend an authentication strategy
  • Recommend an authorization strategy
  • Design a strategy for conditional access
  • Design a strategy for role assignment and delegation
  • Design security strategy for privileged role access to infrastructure including identity-based firewall rules and Privileged Identity Management (PIM) in Microsoft Azure Active Directory (Azure AD), part of Microsoft Entra
  • Design security strategy for privileged activities including PAM, entitlement management, cloud tenant administration

Design a regulatory compliance strategy

  • Interpret compliance requirements and translate into specific technical capabilities (new or existing)
  • Evaluate infrastructure compliance by using Microsoft Defender for Cloud
  • Interpret compliance scores and recommend actions to resolve issues or improve security
  • Design implementation of Azure Policy
  • Design for data residency requirements
  • Translate privacy requirements into requirements for security solutions

Evaluate security posture and recommend technical strategies to manage risk

  • Evaluate security posture by using Azure Security Benchmark
  • Evaluate security posture by using Microsoft Defender for Cloud
  • Evaluate security posture by using Secure Scores
  • Evaluate security posture of cloud workloads
  • Design security for an Azure Landing Zone
  • Interpret technical threat intelligence and recommend risk mitigations
  • Recommend security capabilities or controls to mitigate identified risks

Design a strategy for securing server and client endpoints

  • Specify security baselines for server and client endpoints
  • Specify security requirements for servers, including multiple platforms and operating systems
  • Specify security requirements for mobile devices and clients, including endpoint protection, hardening, and configuration
  • Specify requirements to secure
  • Design a strategy to manage secrets, keys, and certificates
  • Design a strategy for secure remote access
  • Design a strategy for securing privileged access

Design a strategy for securing SaaS, PaaS, and IaaS services

  • Specify security baselines for SaaS, PaaS, and IaaS services
  • Specify security requirements for IoT workloads
  • Specify security requirements for data workloads, including SQL Server, Azure SQL, Azure Synapse, and Azure Cosmos DB
  • Specify security requirements for web workloads, including Azure App Service
  • Specify security requirements for storage workloads, including Azure Storage
  • Specify security requirements for containers
  • Specify security requirements for container orchestration

Specify security requirements for applications

  • Specify priorities for mitigating threats to applications
  • Specify a security standard for onboarding a new application
  • Specify a security strategy for applications and APIs

Design a strategy for securing data

  • Specify priorities for mitigating threats to data
  • Design a strategy to identify and protect sensitive data
  • Specify an encryption standard for data at rest and in motion

Recommend security best practices by using the Microsoft Cybersecurity Reference Architecture (MCRA) and Azure Security Benchmarks

  • Recommend best practices for cybersecurity capabilities and controls
  • Recommend best practices for protecting from insider and external attacks
  • Recommend best practices for Zero Trust security
  • Recommend best practices for Zero Trust Rapid Modernization Plan

Recommend a secure methodology by using the Cloud Adoption Framework (CAF)

  • Recommend a DevSecOps process
  • Recommend a methodology for asset protection
  • Recommend strategies for managing and minimizing risk

Recommend a ransomware strategy by using Microsoft Security Best Practices

  • Plan for ransomware protection and extortion-based attacks (i.e., backup and recovery, limit scope)
  • Protect assets from ransomware attacks
  • Recommend Microsoft ransomware best practices


    • By earning this certification, you acquire knowledge to design and evolve organization's cybersecurity strategy to protect mission and business processes across all aspects of enterprise architecture.
    • You will cultivate skills to design security for infrastructure.
    • You hone skills to design a strategy for data and applications.
    • On successful completion of this training aspirants receive a Course Completion Certificate from us.
    • By successfully clearing the SC-100 exam, aspirants earn Microsoft Certification.

Course Fee

Select Course date

Add to Wishlist

Course ID: 13591

Course Price at

$1599 + 0% TAX
Enroll Now

Frequently Asked Questions

The total duration of training will be 32 hours (4 Full days) and it can also be customized as per the requirement.

We have batches for both offline and online.

Training will be delivered by trainers officially certified with Microsoft Certified Trainer (MCT).

The trainer will be explaining theory along with demonstration as well as hands on lab environment will also be provided to the individuals for practice.

Being an expert level certification, SC-100 is valid for 1 year and thereafter free renewal is available by passing the exam at no extra cost.

Kindly reach out to us at

SC-100 training is essential for a career in cybersecurity because it provides a strong foundation in key concepts and skills required to excel in the field. Successful completion of the SC-100 exam and course demonstrates expertise in security fundamentals, making you a valuable asset in the ever-evolving world of cybersecurity.

The SC-100 training program typically spans over a period of several weeks, with participants receiving approximately 40-60 hours of training to prepare for the SC-100 exam and complete the course successfully.

Yes, upon successful completion of the SC-100 training program at CloudThat, you will receive a certificate to acknowledge your achievement in the SC-100 course and exam.

Yes, after completing the SC-100 training program at CloudThat, job assistance is typically offered to help students prepare for the SC-100 exam and pursue career opportunities related to the SC-100 course.

Enquire Now