Followers

Exam AZ-303: Microsoft Azure Architect Expert

 

 Exam AZ-303: 

Technologies – Skills Measured

Skills Measured

NOTE: The bullets that appear below each of the skills measured are intended to illustrate how we are assessing that skill. This list is not definitive or exhaustive.

NOTE: Most questions cover features that are General Availability (GA). The exam may contain questions on Preview features if those features are commonly used.

Implement and Monitor an Azure Infrastructure (50-55%)

Implement cloud infrastructure monitoring

Ø  Monitor security

Ø  Monitor performance

Ø  Monitor health and availability

Ø  Monitor cost

Ø  Configure advanced logging

Ø  Configure logging for workloads

Ø  Initiate automated responses by using Action Groups

Ø  Configure and manage advanced alerts

Implement storage accounts

Ø  Select storage account options based on a use case

Ø  Configure Azure Files and blob storage

Ø  Configure network access to the storage account

Ø  Implement Shared Access Signatures and access policies

Ø  Implement Azure AD authentication for storage

Ø  Manage access keys

Ø  Implement Azure storage replication

Ø  Implement Azure storage account failover

Implement VMs for Windows and Linux

Ø  Configure High Availability

Ø  Configure storage for VMs

Ø  Select virtual machine size

Ø  Implement Azure Dedicated Hosts

Ø  Deploy and configure scale sets

Ø  Configure Azure Disk Encryption

Automate deployment and configuration of resources

Ø  Save a deployment as an Azure Resource Manager template

Ø  Modify Azure Resource Manager template

Ø  Evaluate location of new resources

Ø  configure a virtual disk template

Ø  deploy from a template

Ø  manage a template library

Ø  create and execute an automation runbook

Implement virtual networking

Ø  Implement VNet to VNet connections

Ø  Implement VNet peering

Implement Azure Active Directory

Ø  add custom domains

Ø  configure Azure AD Identity Protection

Ø  implement self-service password reset

Ø  implement Conditional Access including MFA

Ø  configure user accounts for MFA

Ø  configure fraud alerts

Ø  configure bypass options

Ø  configure Trusted IPs

Ø  configure verification methods

Ø  implement and manage guest accounts

Ø  manage multiple directories

Implement and manage hybrid identities

Ø  Install and configure Azure AD Connect

Ø  Identity synchronization options

Ø  configure and manage password sync and password write back

Ø  configure single sign-on

Ø  use Azure AD Connect Health

Implement Management and Security Solutions (25-30%)

Manage workloads in Azure

Ø  migrate workloads using Azure Migrate

Ø  implement Azure Backup for VMs

Ø  implement disaster recovery

Ø  implement Azure Update Management

Implement load balancing and network security

Ø  implement Azure Load Balancer

Ø  implement an application gateway

Ø  implement a Web Application Firewall

Ø  implement Azure Firewall

Ø  implement Azure Firewall Manager

Ø  implement the Azure Front Door Service

Ø  implement Azure Traffic Manager

Ø  implement Network Security Groups and Application Security Groups

Ø  implement Bastion

Implement and manage Azure governance solutions

Ø  create and manage hierarchical structure that contains management groups,

Subscriptions and resource groups

Ø  assign RBAC roles

Ø  create a custom RBAC role

Ø  configure access to Azure resources by assigning roles

Ø  configure management access to Azure

Ø  interpret effective permissions

Ø  set up and perform an access review

Ø  implement and configure an Azure Policy

Ø  implement and configure an Azure Blueprint

Manage security for applications

Ø  implement and configure KeyVault

Ø  implement and configure Managed Identities

Ø  register and manage applications in Azure AD

Implement Solutions for Apps (10-15%)

Implement an application infrastructure

Ø  create and configure Azure App Service

Ø  create an App Service Web App for Containers

Ø  create and configure an App Service plan

Ø  configure an App Service

Ø  configure networking for an App Service

Ø  create and manage deployment slots

Ø  implement Logic Apps

Ø  implement Azure Functions

Implement container-based applications

Ø  create a container image

Ø  configure Azure Kubernetes Service

Ø  publish and automate image deployment to the Azure Container Registry

Ø  publish a solution on an Azure Container Instance

Implement and Manage Data Platforms (10-15%)

Implement NoSQL databases

Ø  configure storage account tables

Ø  select appropriate CosmosDB APIs

Ø  set up replicas in CosmosDB

Implement Azure SQL databases

Ø  configure Azure SQL database settings

Ø  implement Azure SQL Database managed instances

Ø  configure HA for an Azure SQL database

Ø  publish an Azure SQL database

Implement and Monitor an Azure Infrastructure (50-55%)

Implement cloud infrastructure monitoring

Ø  Monitor security

Ø  Monitor performance

Ø  monitor health and availability

Ø  Monitor cost

Ø  configure advanced logging

Ø  configure logging for workloads

Initiate automated responses by using Action Groups

Ø  configure and manage advanced alerts

Implement storage accounts

Ø  select storage account options based on a use case

Ø  configure Azure Files and blob storage

Ø  configure network access to the storage account

Ø  implement Shared Access Signatures and access policies

Ø  implement Azure AD authentication for storage

Ø  manage access keys

Ø  implement Azure storage replication

Ø  implement Azure storage account failover

Implement VMs for Windows and Linux

Ø  configure High Availability

Ø  configure storage for VMs

Ø  select virtual machine size

Ø  implement Azure Dedicated Hosts

Ø  deploy and configure scale sets

Ø  configure Azure Disk Encryption

Automate deployment and configuration of resources

Ø  save a deployment as an Azure Resource Manager template

Ø  modify Azure Resource Manager template

Ø  evaluate location of new resources

Ø  configure a virtual disk template

Ø  deploy from a template

Ø  manage a template library

Ø  create and execute an automation runbook

Implement virtual networking

Ø  implement VNet to VNet connections

Ø  implement VNet peering

Implement Azure Active Directory

Ø  add custom domains

Ø  configure Azure AD Identity Protection

Ø  implement self-service password reset

Ø  implement Conditional Access including MFA

Ø  configure user accounts for MFA

Ø  configure fraud alerts

Ø  configure bypass options

Ø  configure Trusted IPs

Ø  configure verification methods

Ø  implement and manage guest accounts

Ø  manage multiple directories

Implement and manage hybrid identities

Ø  install and configure Azure AD Connect

Ø  identity synchronization options

Ø  configure and manage password sync and password writeback

Ø  configure single sign-on

Ø  use Azure AD Connect Health

Implement Management and Security Solutions (25-30%)

Manage workloads in Azure

Ø  migrate workloads using Azure Migrate

Ø  implement Azure Backup for VMs

Ø  implement disaster recovery

Ø  implement Azure Update Management

Implement load balancing and network security

Ø  implement Azure Load Balancer

Ø  implement an application gateway

Ø  implement a Web Application Firewall

Ø  implement Azure Firewall

Ø  implement Azure Firewall Manager

Ø  implement the Azure Front Door Service

Ø  implement Azure Traffic Manager

Ø  implement Network Security Groups and Application Security Groups

Ø  implement Bastion

Implement and manage Azure governance solutions

Ø  create and manage hierarchical structure that contains management groups,

Subscriptions and resource groups

Ø  assign RBAC roles

Ø  create a custom RBAC role

Ø  configure access to Azure resources by assigning roles

Ø  configure management access to Azure

Ø  interpret effective permissions

Ø  set up and perform an access review

Ø  implement and configure an Azure Policy

Ø  implement and configure an Azure Blueprint

Manage security for applications

Ø  implement and configure KeyVault

Ø  implement and configure Managed Identities

Ø  register and manage applications in Azure AD

Implement Solutions for Apps (10-15%)

Implement an application infrastructure

Ø  create and configure Azure App Service

Ø  create an App Service Web App for Containers

Ø  create and configure an App Service plan

Ø  configure an App Service

Ø  configure networking for an App Service

Ø  create and manage deployment slots

Ø  implement Logic Apps

Ø  implement Azure Functions

Implement container-based applications

Ø  create a container image

Ø  configure Azure Kubernetes Service

Ø  publish and automate image deployment to the Azure Container Registry

Ø  publish a solution on an Azure Container Instance

Implement and Manage Data Platforms (10-15%)

Implement NoSQL databases

Ø  configure storage account tables

Ø  select appropriate CosmosDB APIs

Ø  set up replicas in CosmosDB

Implement Azure SQL databases

Ø  configure Azure SQL database settings

Ø  implement Azure SQL Database managed instances

Ø  configure HA for an Azure SQL database

Ø  publish an Azure SQL database

 

The exam guide below shows the changes that were implemented on January 27, 2021.

 

No comments:

Post a Comment