qSkills™ AI Agent
qS
Hello! Ask me about training courses, certifications, schedules or anything else on qskills.de—just in your own words.
0/800

From AZ-500 to CS500: Security for Cloud and AI Environments

News 2026

Double exposure of city and clouds technology, futuristic computer digital abstract background. Big data concept


Microsoft™ is evolving its requirements for securing modern IT environments: The AZ-500 certification exam was retired on August 31, 2026. It is being replaced by the new SC-500 exam – Implementing End-to-End Security Controls for Cloud and AI Workloads.

qSkills™ has updated its existing AZ500 course accordingly and renamed it to CS500 Microsoft™ Certified Cloud and AI Security Engineer. The content aligns with the current requirements of the SC-500 exam and expands classic Azure Security to include security controls for hybrid infrastructures, cloud workloads, and AI applications.

In the CS500 training, you will learn not only to plan security measures but also to implement and manage them technically. This includes securing identities and access rights with Microsoft™ Entra ID, protecting keys, secrets, and certificates with Azure Key Vault, and implementing security policies with Azure Policy, RBAC, and Infrastructure as Code.

Another focus is on securing data, storage, databases, and network connections. You will work with Azure Storage, Azure SQL, Private Endpoints, Private Link, Azure Firewall, and Network Watcher, among others.

Newly added or significantly expanded are the security requirements around AI applications and agents. You will learn to identify risks in Microsoft™ Copilot and AI applications and implement security controls using Microsoft™ Purview, Microsoft™ Entra Agent ID, Microsoft™ Copilot Studio, and Microsoft™ Foundry. The course also covers protecting AI workloads with Defender for AI Service and configuring guardrails.

Additionally, the Microsoft™ training covers securing virtual machines, servers, containers, and Azure application platforms. With Azure Arc, security controls can also be extended to hybrid and multicloud environments. For assessing the security posture and protecting workloads, Microsoft™ Defender for Cloud, Defender CSPM, and Defender Vulnerability Management are among the tools used.

For Security Operations and monitoring, CS500 covers Microsoft™ Sentinel – from connecting various data sources and collecting event data to automation rules and playbooks. You will also learn how to set up Microsoft™ Security Copilot with workspaces, permissions, plugins, and agents.

What you will learn in the CS500 training:

  • Secure identities, applications, and privileged access with Microsoft™ Entra ID

  • Manage keys, secrets, and certificates with Azure Key Vault

  • Implement security policies, roles, and permissions with Azure Policy and RBAC

  • Protect storage, databases, and network connections in Azure

  • Secure AI applications and agents with Microsoft™ Purview, Entra Agent ID, Copilot Studio, and Microsoft™ Foundry

  • Protect servers, virtual machines, containers, and Azure application platforms

  • Extend security controls to hybrid and multicloud environments

  • Assess security risks and vulnerabilities with Microsoft™ Defender for Cloud

  • Collect, analyze event data, and implement automated processes with Microsoft™ Sentinel

  • Configure Microsoft™ Security Copilot for security workloads


The 4-day CS500 training is particularly aimed at Security Engineers, Administrators, and technical specialists with practical experience in administering Azure and hybrid environments.

It specifically prepares you for the Microsoft™ SC-500 exam, which must be taken separately via Pearson VUE.