{"product_id":"mce-microsoft-certified-expert-cybersecurity-architect-study-guide-9781394180219","title":"MCE Microsoft Certified Expert Cybersecurity","description":"\u003cb\u003eBook Synopsis\u003c\/b\u003e\u003cbr\u003e\u003cp\u003e\u003cb\u003ePrep for the SC-100 exam like a pro with Sybex' latest Study Guide\u003c\/b\u003e \u003c\/p\u003e\u003cp\u003eIn the \u003ci\u003eMCE Microsoft Certified Expert Cybersecurity Architect Study Guide: Exam SC-100\u003c\/i\u003e, a team of dedicated software architects delivers an authoritative and easy-to-follow guide to preparing for the SC-100 Cybersecurity Architect certification exam offered by Microsoft. In the book, you'll find comprehensive coverage of the objectives tested by the exam, covering the evaluation of Governance Risk Compliance technical and security operations strategies, the design of Zero Trust strategies and architectures, and data and application strategy design. \u003c\/p\u003e\u003cp\u003eWith the information provided by the authors, you'll be prepared for your first day in a new role as a cybersecurity architect, gaining practical, hands-on skills with modern Azure deployments. You'll also find: \u003c\/p\u003e\u003cul\u003e \u003cli\u003eIn-depth discussions of every single objective covered by the SC-100 exam and, by extension, the skills necessary to succeed as a Micr\u003cbr\u003e\u003cbr\u003e\u003cb\u003eTable of Contents\u003c\/b\u003e\u003cbr\u003e\u003cp\u003eIntroduction xxi\u003c\/p\u003e \u003cp\u003eAssessment Test xxxii\u003c\/p\u003e \u003cp\u003e\u003cb\u003eChapter 1 Define and Implement an Overall Security Strategy and Architecture 1\u003c\/b\u003e\u003c\/p\u003e \u003cp\u003eBasics of Cloud Computing 2\u003c\/p\u003e \u003cp\u003eThe Need for the Cloud 3\u003c\/p\u003e \u003cp\u003eCloud Service Models 4\u003c\/p\u003e \u003cp\u003eCloud Deployment Models 5\u003c\/p\u003e \u003cp\u003eIntroduction to Cybersecurity 6\u003c\/p\u003e \u003cp\u003eThe Need for Cybersecurity 7\u003c\/p\u003e \u003cp\u003eCybersecurity Domains 9\u003c\/p\u003e \u003cp\u003eGetting Started with Zero Trust 12\u003c\/p\u003e \u003cp\u003eNIST Abstract Definition of Zero Trust 12\u003c\/p\u003e \u003cp\u003eKey Benefits of Zero Trust 13\u003c\/p\u003e \u003cp\u003eGuiding Principles of Zero Trust 13\u003c\/p\u003e \u003cp\u003eZero Trust Architecture 14\u003c\/p\u003e \u003cp\u003eDesign Integration Points in an Architecture 16\u003c\/p\u003e \u003cp\u003eSecurity Operations Center 17\u003c\/p\u003e \u003cp\u003eSoftware as a Service 18\u003c\/p\u003e \u003cp\u003eHybrid Infrastructure— IaaS, PaaS, On- Premises 19\u003c\/p\u003e \u003cp\u003eEndpoints and Devices 21\u003c\/p\u003e \u003cp\u003eInformation Protection 22\u003c\/p\u003e \u003cp\u003eIdentity and Access 24\u003c\/p\u003e \u003cp\u003ePeople Security 25\u003c\/p\u003e \u003cp\u003eIOT and Operational Technology 26\u003c\/p\u003e \u003cp\u003eDesign Security Needs to Be Based on Business Goals 27\u003c\/p\u003e \u003cp\u003eDefine Strategy 28\u003c\/p\u003e \u003cp\u003ePrepare Plan 28\u003c\/p\u003e \u003cp\u003eGet Ready 29\u003c\/p\u003e \u003cp\u003eAdopt 29\u003c\/p\u003e \u003cp\u003eSecure 29\u003c\/p\u003e \u003cp\u003eManage 31\u003c\/p\u003e \u003cp\u003eGovern 31\u003c\/p\u003e \u003cp\u003eDecode Security Requirements to Technical Abilities 32\u003c\/p\u003e \u003cp\u003eResource Planning and Hardening 32\u003c\/p\u003e \u003cp\u003eDesign Security for a Resiliency Approach 34\u003c\/p\u003e \u003cp\u003eBefore an Incident 34\u003c\/p\u003e \u003cp\u003eDuring an Incident 35\u003c\/p\u003e \u003cp\u003eAfter an Incident 35\u003c\/p\u003e \u003cp\u003eFeedback Loop 35\u003c\/p\u003e \u003cp\u003eIdentify the Security Risks Associated with Hybrid and Multi- Tenant Environments 36\u003c\/p\u003e \u003cp\u003eDeploy a Secure Hybrid Identity Environment 36\u003c\/p\u003e \u003cp\u003eDeploy a Secure Hybrid Network 36\u003c\/p\u003e \u003cp\u003eDesign a Multi- Tenancy Environment 37\u003c\/p\u003e \u003cp\u003eResponsiveness to Individual Tenants’ Needs 39\u003c\/p\u003e \u003cp\u003ePlan Traffic Filtering and Segmentation Technical and Governance Strategies 40\u003c\/p\u003e \u003cp\u003eLogically Segmented Subnets 41\u003c\/p\u003e \u003cp\u003eDeploy Perimeter Networks for Security Zones 41\u003c\/p\u003e \u003cp\u003eAvoid Exposure to the Internet with Dedicated WAN Links 42\u003c\/p\u003e \u003cp\u003eUse Virtual Network Appliances 42\u003c\/p\u003e \u003cp\u003eSummary 42\u003c\/p\u003e \u003cp\u003eExam Essentials 43\u003c\/p\u003e \u003cp\u003eReview Questions 45\u003c\/p\u003e \u003cp\u003e\u003cb\u003eChapter 2 Define a Security Operations Strategy 49\u003c\/b\u003e\u003c\/p\u003e \u003cp\u003eFoundation of Security Operations and Strategy 50\u003c\/p\u003e \u003cp\u003eSOC Operating Model 51\u003c\/p\u003e \u003cp\u003eSOC Framework 51\u003c\/p\u003e \u003cp\u003eSOC Operations 54\u003c\/p\u003e \u003cp\u003eMicrosoft SOC Strategy for Azure Cloud 55\u003c\/p\u003e \u003cp\u003eMicrosoft SOC Function for Azure Cloud 57\u003c\/p\u003e \u003cp\u003eMicrosoft SOC Integration Among SecOps and Business Leadership 58\u003c\/p\u003e \u003cp\u003eMicrosoft SOC People and Process 59\u003c\/p\u003e \u003cp\u003eMicrosoft SOC Metrics 60\u003c\/p\u003e \u003cp\u003eMicrosoft SOC Modernization 61\u003c\/p\u003e \u003cp\u003eSoc Mitre Att\u0026amp;ck 61\u003c\/p\u003e \u003cp\u003eDesign a Logging and Auditing Strategy to Support Security Operations 64\u003c\/p\u003e \u003cp\u003eOverview of Azure Logging Capabilities 66\u003c\/p\u003e \u003cp\u003eDevelop Security Operations to Support a Hybrid or Multi- Cloud Environment 68\u003c\/p\u003e \u003cp\u003eIntegrated Operations for Hybrid and Multi- Cloud Environments 70\u003c\/p\u003e \u003cp\u003eCustomer Processes 71\u003c\/p\u003e \u003cp\u003ePrimary Cloud Controls 73\u003c\/p\u003e \u003cp\u003eHybrid, Multi- Cloud Gateway, and Enterprise Control Plane 74\u003c\/p\u003e \u003cp\u003eAzure Security Operation Services 74\u003c\/p\u003e \u003cp\u003eUsing Microsoft Sentinel and Defender for Cloud to Monitor Hybrid Security 76\u003c\/p\u003e \u003cp\u003eDesign a Strategy for SIEM and SOAR 78\u003c\/p\u003e \u003cp\u003eSecurity Operations Center Best Practices for SIEM and SOAR 79\u003c\/p\u003e \u003cp\u003eEvaluate Security Workflows 81\u003c\/p\u003e \u003cp\u003eMicrosoft Best Practices for Incident Response 81\u003c\/p\u003e \u003cp\u003eMicrosoft Best Practices for Recovery 82\u003c\/p\u003e \u003cp\u003eAzure Workflow Automation Uses a Few Key Technologies 82\u003c\/p\u003e \u003cp\u003eEvaluate a Security Operations Strategy for the Incident Management Life Cycle 83\u003c\/p\u003e \u003cp\u003ePreparation 84\u003c\/p\u003e \u003cp\u003eDetection and Analysis 85\u003c\/p\u003e \u003cp\u003eContainment, Eradication, and Recovery 86\u003c\/p\u003e \u003cp\u003eEvaluate a Security Operations Strategy for Sharing Technical Threat Intelligence 87\u003c\/p\u003e \u003cp\u003eMicrosoft Sentinel’s Threat Intelligence 89\u003c\/p\u003e \u003cp\u003eDefender for Endpoint’s Threat Intelligence 89\u003c\/p\u003e \u003cp\u003eDefender for IoT’s Threat Intelligence 90\u003c\/p\u003e \u003cp\u003eDefender for Cloud’s Threat Intelligence 90\u003c\/p\u003e \u003cp\u003eMicrosoft 365 Defender’s Threat Intelligence 91\u003c\/p\u003e \u003cp\u003eSummary 92\u003c\/p\u003e \u003cp\u003eExam Essentials 92\u003c\/p\u003e \u003cp\u003eReview Questions 94\u003c\/p\u003e \u003cp\u003e\u003cb\u003eChapter 3 Define an Identity Security Strategy 99\u003c\/b\u003e\u003c\/p\u003e \u003cp\u003eDesign a Strategy for Access to Cloud Resources 100\u003c\/p\u003e \u003cp\u003eDeployment Objectives for Identity Zero Trust 102\u003c\/p\u003e \u003cp\u003eMicrosoft’s Method to Identity Zero Trust Deployment 104\u003c\/p\u003e \u003cp\u003eRecommend an Identity Store (Tenants, B2B, B2C, Hybrid) 109\u003c\/p\u003e \u003cp\u003eRecommend an Authentication and Authorization Strategy 111\u003c\/p\u003e \u003cp\u003eCloud Authentication 112\u003c\/p\u003e \u003cp\u003eFederated Authentication 115\u003c\/p\u003e \u003cp\u003eSecure Authorization 121\u003c\/p\u003e \u003cp\u003eDesign a Strategy for Conditional Access 122\u003c\/p\u003e \u003cp\u003eVerify Explicitly 123\u003c\/p\u003e \u003cp\u003eUse Least-Privileged Access 123\u003c\/p\u003e \u003cp\u003eAssume Breach 124\u003c\/p\u003e \u003cp\u003eConditional Access Zero Trust Architecture 125\u003c\/p\u003e \u003cp\u003eSummary of Personas 126\u003c\/p\u003e \u003cp\u003eDesign a Strategy for Role Assignment and Delegation 127\u003c\/p\u003e \u003cp\u003eDesign a Security Strategy for Privileged Role Access to Infrastructure Including Identity- Based Firewall Rules and Azure PIM 130\u003c\/p\u003e \u003cp\u003eSecuring Privileged Access 132\u003c\/p\u003e \u003cp\u003eDevelop a Road Map 133\u003c\/p\u003e \u003cp\u003eBest Practices for Managing Identity and Access on the Microsoft Platform 135\u003c\/p\u003e \u003cp\u003eDesign a Security Strategy for Privileged Activities Including PAM, Entitlement Management, and Cloud Tenant Administration 136\u003c\/p\u003e \u003cp\u003eDeveloping a Privileged Access Strategy 137\u003c\/p\u003e \u003cp\u003eAzure AD Entitlement Management 140\u003c\/p\u003e \u003cp\u003eSummary 141\u003c\/p\u003e \u003cp\u003eExam Essentials 142\u003c\/p\u003e \u003cp\u003eReview Questions 145\u003c\/p\u003e \u003cp\u003e\u003cb\u003eChapter 4 Identify a Regulatory Compliance Strategy 149\u003c\/b\u003e\u003c\/p\u003e \u003cp\u003eInterpret Compliance Requirements and Translate into Specific Technical Capabilities 150\u003c\/p\u003e \u003cp\u003eReview the Organization Requirements 156\u003c\/p\u003e \u003cp\u003eDesign a Compliance Strategy 157\u003c\/p\u003e \u003cp\u003eKey Compliance Consideration 159\u003c\/p\u003e \u003cp\u003eEvaluate Infrastructure Compliance by Using Microsoft Defender for Cloud 162\u003c\/p\u003e \u003cp\u003eProtect All of Your IT Resources Under One Roof 163\u003c\/p\u003e \u003cp\u003eInterpret Compliance Scores and Recommend Actions to Resolve Issues or Improve Security 165\u003c\/p\u003e \u003cp\u003eDesign and Validate Implementation of Azure Policy 166\u003c\/p\u003e \u003cp\u003eDesign for Data Residency Requirements 175\u003c\/p\u003e \u003cp\u003eStorage of Data for Regional Services 176\u003c\/p\u003e \u003cp\u003eStorage of Data for Nonregional Services 176\u003c\/p\u003e \u003cp\u003eData Sovereignty 177\u003c\/p\u003e \u003cp\u003ePersonal Data 177\u003c\/p\u003e \u003cp\u003eAzure Policy Consideration 178\u003c\/p\u003e \u003cp\u003eAzure Blueprints Consideration 178\u003c\/p\u003e \u003cp\u003eProtecting Organizational Data 179\u003c\/p\u003e \u003cp\u003eEncryption of Data at Rest 179\u003c\/p\u003e \u003cp\u003eEncryption of Data in Transit 180\u003c\/p\u003e \u003cp\u003eEncryption During Data Processing 181\u003c\/p\u003e \u003cp\u003eAzure Customer Lockbox 182\u003c\/p\u003e \u003cp\u003eTranslate Privacy Requirements into Requirements for Security Solutions 182\u003c\/p\u003e \u003cp\u003eLeverage Azure Policy 183\u003c\/p\u003e \u003cp\u003eSummary 186\u003c\/p\u003e \u003cp\u003eExam Essentials 186\u003c\/p\u003e \u003cp\u003eReview Questions 189\u003c\/p\u003e \u003cp\u003e\u003cb\u003eChapter 5 Identify Security Posture and Recommend Technical Strategies to Manage Risk 193\u003c\/b\u003e\u003c\/p\u003e \u003cp\u003eAnalyze Security Posture by Using Azure Security Benchmark 194\u003c\/p\u003e \u003cp\u003eEvaluating Security Posture in Azure Workloads 198\u003c\/p\u003e \u003cp\u003eAnalyze Security Posture by Using Microsoft Defender for Cloud 199\u003c\/p\u003e \u003cp\u003eAssess the Security Hygiene of Cloud Workloads 201\u003c\/p\u003e \u003cp\u003eEvaluate the Security Posture of Cloud Workloads 203\u003c\/p\u003e \u003cp\u003eDesign Security for an Azure Landing Zone 207\u003c\/p\u003e \u003cp\u003eDesign Security Review 210\u003c\/p\u003e \u003cp\u003eSecurity Design Considerations 211\u003c\/p\u003e \u003cp\u003eSecurity in the Azure Landing Zone Accelerator 212\u003c\/p\u003e \u003cp\u003eImprove Security in the Azure Landing Zone 212\u003c\/p\u003e \u003cp\u003eEvaluate Security Postures by Using Secure Scores 216\u003c\/p\u003e \u003cp\u003eReferences 217\u003c\/p\u003e \u003cp\u003eIdentify Technical Threats and Recommend Mitigation Measures 220\u003c\/p\u003e \u003cp\u003eRecommend Security Capabilities or Controls to Mitigate Identified Risks 224\u003c\/p\u003e \u003cp\u003eSummary 227\u003c\/p\u003e \u003cp\u003eExam Essentials 227\u003c\/p\u003e \u003cp\u003eReview Questions 229\u003c\/p\u003e \u003cp\u003e\u003cb\u003eChapter 6 Define a Strategy for Securing Infrastructure 233\u003c\/b\u003e\u003c\/p\u003e \u003cp\u003ePlan and Deploy a Security Strategy Across Teams 234\u003c\/p\u003e \u003cp\u003eSecurity Roles and Responsibilities 235\u003c\/p\u003e \u003cp\u003eSecurity Strategy Considerations 237\u003c\/p\u003e \u003cp\u003eDeliverables 238\u003c\/p\u003e \u003cp\u003eBest Practices for Building a Security Strategy 238\u003c\/p\u003e \u003cp\u003eStrategy Approval 239\u003c\/p\u003e \u003cp\u003eDeploy a Process for Proactive and Continuous Evolution of a Security Strategy 239\u003c\/p\u003e \u003cp\u003eConsiderations in Security Planning 239\u003c\/p\u003e \u003cp\u003eEstablish Essential Security Practices 241\u003c\/p\u003e \u003cp\u003eSecurity Management Strategy 241\u003c\/p\u003e \u003cp\u003eContinuous Assessment 242\u003c\/p\u003e \u003cp\u003eContinuous Strategy Evolution 243\u003c\/p\u003e \u003cp\u003eSpecify Security Baselines for Server and Client Endpoints 244\u003c\/p\u003e \u003cp\u003eWhat Are Security Baselines? 245\u003c\/p\u003e \u003cp\u003eWhat Is Microsoft Intune? 245\u003c\/p\u003e \u003cp\u003eWhat Are Security Compliance Toolkits? 245\u003c\/p\u003e \u003cp\u003eFoundation Principles of Baselines 245\u003c\/p\u003e \u003cp\u003eSelecting the Appropriate Baseline 246\u003c\/p\u003e \u003cp\u003eSpecify Security Baselines for the Server, Including Multiple Platforms and Operating Systems 248\u003c\/p\u003e \u003cp\u003eAnalyze Security Configuration 248\u003c\/p\u003e \u003cp\u003eSecure Servers (Domain Members) 248\u003c\/p\u003e \u003cp\u003e\u003cb\u003eChapter 7 Specify Security Requirements for Mobile Devices and Clients, Including Endpoint Protection, Hardening, and Configuration 252\u003c\/b\u003e\u003c\/p\u003e \u003cp\u003eApp Isolation and Control 252\u003c\/p\u003e \u003cp\u003eChoose Between Device Management and Application Management 253\u003c\/p\u003e \u003cp\u003eDevice Settings 256\u003c\/p\u003e \u003cp\u003eClient Requirements 256\u003c\/p\u003e \u003cp\u003eSpecify Requirements for Securing Active Directory Domain Services 257\u003c\/p\u003e \u003cp\u003eSecuring Domain Controllers Against Attack 258\u003c\/p\u003e \u003cp\u003eMicrosoft Defender for Identity 259\u003c\/p\u003e \u003cp\u003eDesign a Strategy to Manage Secrets, Keys, and Certificates 260\u003c\/p\u003e \u003cp\u003eManage Access to Secrets, Certificates, and Keys 262\u003c\/p\u003e \u003cp\u003eRestrict Network Access 263\u003c\/p\u003e \u003cp\u003eDesign a Strategy for Secure Remote Access 265\u003c\/p\u003e \u003cp\u003eDesign a Strategy for Securing Privileged Access 271\u003c\/p\u003e \u003cp\u003eBuilding the Recommended Design Strategy 271\u003c\/p\u003e \u003cp\u003eSummary 273\u003c\/p\u003e \u003cp\u003eExam Essentials 274\u003c\/p\u003e \u003cp\u003eReview Questions 276\u003c\/p\u003e \u003cp\u003eDefine a Strategy and Requirements for Securing PaaS, IaaS, and SaaS Services 281\u003c\/p\u003e \u003cp\u003eEstablish Security Baselines for SaaS, PaaS, and IaaS Services 282\u003c\/p\u003e \u003cp\u003ePaaS Security Baseline 290\u003c\/p\u003e \u003cp\u003eIaaS Security Baseline 299\u003c\/p\u003e \u003cp\u003eEstablish Security Requirements for IoT Workloads 306\u003c\/p\u003e \u003cp\u003eEstablish Security Requirements for Data Workloads, Including SQL Server, Azure SQL, Azure Synapse, and Azure Cosmos DB 311\u003c\/p\u003e \u003cp\u003eSecurity Posture Management for Data 312\u003c\/p\u003e \u003cp\u003eDatabases 313\u003c\/p\u003e \u003cp\u003eDefine the Security Requirements for Web Workloads 315\u003c\/p\u003e \u003cp\u003eSecurity Posture Management for App Service 315\u003c\/p\u003e \u003cp\u003eDetermine the Security Requirements for Storage Workloads 317\u003c\/p\u003e \u003cp\u003eSecurity Posture Management for Storage 317\u003c\/p\u003e \u003cp\u003eDefine Container Security Requirements 319\u003c\/p\u003e \u003cp\u003eSecurity Posture Management for Containers 320\u003c\/p\u003e \u003cp\u003eDefine Container Orchestration Security Requirements 321\u003c\/p\u003e \u003cp\u003eSummary 324\u003c\/p\u003e \u003cp\u003eExam Essentials 324\u003c\/p\u003e \u003cp\u003eReview Questions 327\u003c\/p\u003e \u003cp\u003e\u003cb\u003eChapter 8 Define a Strategy and Requirements for Applications and Data 331\u003c\/b\u003e\u003c\/p\u003e \u003cp\u003eKnowing the Application Threat Intelligence Model 332\u003c\/p\u003e \u003cp\u003eAnalyze the Application Design Progressively 334\u003c\/p\u003e \u003cp\u003eMitigation Categories 334\u003c\/p\u003e \u003cp\u003eMitigate the Identified Threats 340\u003c\/p\u003e \u003cp\u003eSpecify Priorities for Mitigating Threats to Applications 341\u003c\/p\u003e \u003cp\u003eIdentify and Classify Applications 341\u003c\/p\u003e \u003cp\u003eAssess the Potential Impact or Risk of Applications 342\u003c\/p\u003e \u003cp\u003eSpecify a Security Standard for Onboarding a New Application 343\u003c\/p\u003e \u003cp\u003eOnboarding New Applications 344\u003c\/p\u003e \u003cp\u003eSecurity Standards for Onboarding Applications 345\u003c\/p\u003e \u003cp\u003eSpecify a Security Strategy for Applications and APIs 346\u003c\/p\u003e \u003cp\u003eEnforcing Security for DevOps 347\u003c\/p\u003e \u003cp\u003eSecurity Strategy Components 348\u003c\/p\u003e \u003cp\u003eStrategies for Mitigating Threats 349\u003c\/p\u003e \u003cp\u003eSpecify Priorities for Mitigating Threats to Data 349\u003c\/p\u003e \u003cp\u003eRansomware Protection 352\u003c\/p\u003e \u003cp\u003eDesign a Strategy to Identify and Protect Sensitive Data 353\u003c\/p\u003e \u003cp\u003eData Discovery: Know Your Data 353\u003c\/p\u003e \u003cp\u003eData Classification 353\u003c\/p\u003e \u003cp\u003eData Protection 355\u003c\/p\u003e \u003cp\u003eSpecify an Encryption Standard for Data at Rest and in Motion 361\u003c\/p\u003e \u003cp\u003eEncryption of Data at Rest 361\u003c\/p\u003e \u003cp\u003eEncryption of Data in Transit 362\u003c\/p\u003e \u003cp\u003eAzure Data Security and Encryption Best Practices 364\u003c\/p\u003e \u003cp\u003eManage with Secure Workstations 365\u003c\/p\u003e \u003cp\u003eKey Management with Key Vault 366\u003c\/p\u003e \u003cp\u003eSummary 367\u003c\/p\u003e \u003cp\u003eExam Essentials 367\u003c\/p\u003e \u003cp\u003eReview Questions 370\u003c\/p\u003e \u003cp\u003e\u003cb\u003eChapter 9 Recommend Security Best Practices and Priorities 375\u003c\/b\u003e\u003c\/p\u003e \u003cp\u003eRecommend Best Practices for Cybersecurity Capabilities and Controls 376\u003c\/p\u003e \u003cp\u003eEssential Best Practices in the MCRA 377\u003c\/p\u003e \u003cp\u003eRecommend Best Practices for Protecting from Insider and External Attacks 383\u003c\/p\u003e \u003cp\u003eRecommend Best Practices for Zero Trust Security 387\u003c\/p\u003e \u003cp\u003eRecommend Best Practices for Zero Trust Rapid Modernization Plan 390\u003c\/p\u003e \u003cp\u003eRecommend a DevSecOps Process 391\u003c\/p\u003e \u003cp\u003ePlan and Develop 391\u003c\/p\u003e \u003cp\u003eCommit the Code 394\u003c\/p\u003e \u003cp\u003eBuild and Test 395\u003c\/p\u003e \u003cp\u003eGo to Production and Operate 397\u003c\/p\u003e \u003cp\u003eRecommend a Methodology for Asset Protection 398\u003c\/p\u003e \u003cp\u003eGet Secure 399\u003c\/p\u003e \u003cp\u003eStay Secure 399\u003c\/p\u003e \u003cp\u003eDilemmas Surrounding Patches 400\u003c\/p\u003e \u003cp\u003eNetwork Isolation 401\u003c\/p\u003e \u003cp\u003eGetting Started 401\u003c\/p\u003e \u003cp\u003eKey Information 402\u003c\/p\u003e \u003cp\u003eRecommend Strategies for Managing and Minimizing Risk 403\u003c\/p\u003e \u003cp\u003eWhat Is Cybersecurity Risk? 404\u003c\/p\u003e \u003cp\u003eAlign Your Security Risk Management 404\u003c\/p\u003e \u003cp\u003eKnowing Cybersecurity Risk 406\u003c\/p\u003e \u003cp\u003ePlan for Ransomware Protection and Extortion- Based Attacks 407\u003c\/p\u003e \u003cp\u003eRegain Access for a Fee 407\u003c\/p\u003e \u003cp\u003eAvoid Disclosure by Paying 407\u003c\/p\u003e \u003cp\u003eProtect Assets from Ransomware Attacks 411\u003c\/p\u003e \u003cp\u003eStrategy for Privileged Access 412\u003c\/p\u003e \u003cp\u003eRecommend Microsoft Ransomware Best Practices 415\u003c\/p\u003e \u003cp\u003eRemote Access 416\u003c\/p\u003e \u003cp\u003eEmail and Collaboration 417\u003c\/p\u003e \u003cp\u003eEndpoints 419\u003c\/p\u003e \u003cp\u003eAccounts 421\u003c\/p\u003e \u003cp\u003eSummary 423\u003c\/p\u003e \u003cp\u003eExam Essentials 424\u003c\/p\u003e \u003cp\u003eReview Questions 428\u003c\/p\u003e \u003cp\u003e\u003cb\u003eAppendix Answers to Review Questions 433\u003c\/b\u003e\u003c\/p\u003e \u003cp\u003eChapter 1: Define and Implement an Overall Security Strategy and Architecture 434\u003c\/p\u003e \u003cp\u003eChapter 2: Define a Security Operations Strategy 436\u003c\/p\u003e \u003cp\u003eChapter 3: Define an Identity Security Strategy 438\u003c\/p\u003e \u003cp\u003eChapter 4: Identify a Regulatory Compliance Strategy 440\u003c\/p\u003e \u003cp\u003eChapter 5: Identify Security Posture and Recommend Technical Strategies to Manage Risk 441\u003c\/p\u003e \u003cp\u003eChapter 6: Define a Strategy for Securing Infrastructure 443\u003c\/p\u003e \u003cp\u003eChapter 7: Define a Strategy and Requirements for Securing PaaS, IaaS, and SaaS Services 446\u003c\/p\u003e \u003cp\u003eChapter 8: Define a Strategy and Requirements for Applications and Data 447\u003c\/p\u003e \u003cp\u003eChapter 9: Recommend Security Best Practices and Priorities 449\u003c\/p\u003e \u003cp\u003eIndex 453\u003c\/p\u003e\n\u003c\/li\u003e\n\u003c\/ul\u003e","brand":"John Wiley \u0026 Sons Inc","offers":[{"title":"Default Title","offer_id":49407598068055,"sku":"9781394180219","price":36.09,"currency_code":"GBP","in_stock":true}],"thumbnail_url":"\/\/cdn.shopify.com\/s\/files\/1\/0817\/1739\/5799\/files\/9781394180219.jpg?v=1730499885","url":"https:\/\/bookcurl.com\/products\/mce-microsoft-certified-expert-cybersecurity-architect-study-guide-9781394180219","provider":"Book Curl","version":"1.0","type":"link"}