You are leaving our Website
Using an external Link:
You are now leaving our website. The following page is operated by a third party. We accept no responsibility for the content, data protection, or security of the linked page..
URL:
From AZ-500 to CS500: Security for Cloud and AI Environments
News 2026
Microsoft™ is evolving its requirements for securing modern IT environments: The AZ-500 certification exam was retired on August 31, 2026. It is being replaced by the new SC-500 exam – Implementing End-to-End Security Controls for Cloud and AI Workloads.
qSkills™ has updated its existing AZ500 course accordingly and renamed it to CS500 Microsoft™ Certified Cloud and AI Security Engineer. The content aligns with the current requirements of the SC-500 exam and expands classic Azure Security to include security controls for hybrid infrastructures, cloud workloads, and AI applications.
In the CS500 training, you will learn not only to plan security measures but also to implement and manage them technically. This includes securing identities and access rights with Microsoft™ Entra ID, protecting keys, secrets, and certificates with Azure Key Vault, and implementing security policies with Azure Policy, RBAC, and Infrastructure as Code.
Another focus is on securing data, storage, databases, and network connections. You will work with Azure Storage, Azure SQL, Private Endpoints, Private Link, Azure Firewall, and Network Watcher, among others.
Newly added or significantly expanded are the security requirements around AI applications and agents. You will learn to identify risks in Microsoft™ Copilot and AI applications and implement security controls using Microsoft™ Purview, Microsoft™ Entra Agent ID, Microsoft™ Copilot Studio, and Microsoft™ Foundry. The course also covers protecting AI workloads with Defender for AI Service and configuring guardrails.
Additionally, the Microsoft™ training covers securing virtual machines, servers, containers, and Azure application platforms. With Azure Arc, security controls can also be extended to hybrid and multicloud environments. For assessing the security posture and protecting workloads, Microsoft™ Defender for Cloud, Defender CSPM, and Defender Vulnerability Management are among the tools used.
For Security Operations and monitoring, CS500 covers Microsoft™ Sentinel – from connecting various data sources and collecting event data to automation rules and playbooks. You will also learn how to set up Microsoft™ Security Copilot with workspaces, permissions, plugins, and agents.
What you will learn in the CS500 training:
Secure identities, applications, and privileged access with Microsoft™ Entra ID
Manage keys, secrets, and certificates with Azure Key Vault
Implement security policies, roles, and permissions with Azure Policy and RBAC
Protect storage, databases, and network connections in Azure
Secure AI applications and agents with Microsoft™ Purview, Entra Agent ID, Copilot Studio, and Microsoft™ Foundry
Protect servers, virtual machines, containers, and Azure application platforms
Extend security controls to hybrid and multicloud environments
Assess security risks and vulnerabilities with Microsoft™ Defender for Cloud
Collect, analyze event data, and implement automated processes with Microsoft™ Sentinel
Configure Microsoft™ Security Copilot for security workloads
The 4-day CS500 training is particularly aimed at Security Engineers, Administrators, and technical specialists with practical experience in administering Azure and hybrid environments.
It specifically prepares you for the Microsoft™ SC-500 exam, which must be taken separately via Pearson VUE.