Exam AZ-303:
Technologies – Skills Measured
Skills Measured
NOTE: The bullets that appear below each of the skills measured are intended to illustrate how we are assessing that skill. This list is not definitive or exhaustive.
NOTE: Most questions cover features that are General Availability (GA). The exam may contain questions on Preview features if those features are commonly used.
Implement and Monitor an Azure Infrastructure (50-55%)
Implement cloud infrastructure monitoring
Ø Monitor security
Ø Monitor performance
Ø Monitor health and availability
Ø Monitor cost
Ø Configure advanced logging
Ø Configure logging for workloads
Ø Initiate automated responses by using Action Groups
Ø Configure and manage advanced alerts
Implement storage accounts
Ø Select storage account options based on a use case
Ø Configure Azure Files and blob storage
Ø Configure network access to the storage account
Ø Implement Shared Access Signatures and access policies
Ø Implement Azure AD authentication for storage
Ø Manage access keys
Ø Implement Azure storage replication
Ø Implement Azure storage account failover
Implement VMs for Windows and Linux
Ø Configure High Availability
Ø Configure storage for VMs
Ø Select virtual machine size
Ø Implement Azure Dedicated Hosts
Ø Deploy and configure scale sets
Ø Configure Azure Disk Encryption
Automate deployment and configuration of resources
Ø Save a deployment as an Azure Resource Manager template
Ø Modify Azure Resource Manager template
Ø Evaluate location of new resources
Ø configure a virtual disk template
Ø deploy from a template
Ø manage a template library
Ø create and execute an automation runbook
Implement virtual networking
Ø Implement VNet to VNet connections
Ø Implement VNet peering
Implement Azure Active Directory
Ø add custom domains
Ø configure Azure AD Identity Protection
Ø implement self-service password reset
Ø implement Conditional Access including MFA
Ø configure user accounts for MFA
Ø configure fraud alerts
Ø configure bypass options
Ø configure Trusted IPs
Ø configure verification methods
Ø implement and manage guest accounts
Ø manage multiple directories
Implement and manage hybrid identities
Ø Install and configure Azure AD Connect
Ø Identity synchronization options
Ø configure and manage password sync and password write back
Ø configure single sign-on
Ø use Azure AD Connect Health
Implement Management and Security Solutions (25-30%)
Manage workloads in Azure
Ø migrate workloads using Azure Migrate
Ø implement Azure Backup for VMs
Ø implement disaster recovery
Ø implement Azure Update Management
Implement load balancing and network security
Ø implement Azure Load Balancer
Ø implement an application gateway
Ø implement a Web Application Firewall
Ø implement Azure Firewall
Ø implement Azure Firewall Manager
Ø implement the Azure Front Door Service
Ø implement Azure Traffic Manager
Ø implement Network Security Groups and Application Security Groups
Ø implement Bastion
Implement and manage Azure governance solutions
Ø create and manage hierarchical structure that contains management groups,
Subscriptions and resource groups
Ø assign RBAC roles
Ø create a custom RBAC role
Ø configure access to Azure resources by assigning roles
Ø configure management access to Azure
Ø interpret effective permissions
Ø set up and perform an access review
Ø implement and configure an Azure Policy
Ø implement and configure an Azure Blueprint
Manage security for applications
Ø implement and configure KeyVault
Ø implement and configure Managed Identities
Ø register and manage applications in Azure AD
Implement Solutions for Apps (10-15%)
Implement an application infrastructure
Ø create and configure Azure App Service
Ø create an App Service Web App for Containers
Ø create and configure an App Service plan
Ø configure an App Service
Ø configure networking for an App Service
Ø create and manage deployment slots
Ø implement Logic Apps
Ø implement Azure Functions
Implement container-based applications
Ø create a container image
Ø configure Azure Kubernetes Service
Ø publish and automate image deployment to the Azure Container Registry
Ø publish a solution on an Azure Container Instance
Implement and Manage Data Platforms (10-15%)
Implement NoSQL databases
Ø configure storage account tables
Ø select appropriate CosmosDB APIs
Ø set up replicas in CosmosDB
Implement Azure SQL databases
Ø configure Azure SQL database settings
Ø implement Azure SQL Database managed instances
Ø configure HA for an Azure SQL database
Ø publish an Azure SQL database
Implement and Monitor an Azure Infrastructure (50-55%)
Implement cloud infrastructure monitoring
Ø Monitor security
Ø Monitor performance
Ø monitor health and availability
Ø Monitor cost
Ø configure advanced logging
Ø configure logging for workloads
Initiate automated responses by using Action Groups
Ø configure and manage advanced alerts
Implement storage accounts
Ø select storage account options based on a use case
Ø configure Azure Files and blob storage
Ø configure network access to the storage account
Ø implement Shared Access Signatures and access policies
Ø implement Azure AD authentication for storage
Ø manage access keys
Ø implement Azure storage replication
Ø implement Azure storage account failover
Implement VMs for Windows and Linux
Ø configure High Availability
Ø configure storage for VMs
Ø select virtual machine size
Ø implement Azure Dedicated Hosts
Ø deploy and configure scale sets
Ø configure Azure Disk Encryption
Automate deployment and configuration of resources
Ø save a deployment as an Azure Resource Manager template
Ø modify Azure Resource Manager template
Ø evaluate location of new resources
Ø configure a virtual disk template
Ø deploy from a template
Ø manage a template library
Ø create and execute an automation runbook
Implement virtual networking
Ø implement VNet to VNet connections
Ø implement VNet peering
Implement Azure Active Directory
Ø add custom domains
Ø configure Azure AD Identity Protection
Ø implement self-service password reset
Ø implement Conditional Access including MFA
Ø configure user accounts for MFA
Ø configure fraud alerts
Ø configure bypass options
Ø configure Trusted IPs
Ø configure verification methods
Ø implement and manage guest accounts
Ø manage multiple directories
Implement and manage hybrid identities
Ø install and configure Azure AD Connect
Ø identity synchronization options
Ø configure and manage password sync and password writeback
Ø configure single sign-on
Ø use Azure AD Connect Health
Implement Management and Security Solutions (25-30%)
Manage workloads in Azure
Ø migrate workloads using Azure Migrate
Ø implement Azure Backup for VMs
Ø implement disaster recovery
Ø implement Azure Update Management
Implement load balancing and network security
Ø implement Azure Load Balancer
Ø implement an application gateway
Ø implement a Web Application Firewall
Ø implement Azure Firewall
Ø implement Azure Firewall Manager
Ø implement the Azure Front Door Service
Ø implement Azure Traffic Manager
Ø implement Network Security Groups and Application Security Groups
Ø implement Bastion
Implement and manage Azure governance solutions
Ø create and manage hierarchical structure that contains management groups,
Subscriptions and resource groups
Ø assign RBAC roles
Ø create a custom RBAC role
Ø configure access to Azure resources by assigning roles
Ø configure management access to Azure
Ø interpret effective permissions
Ø set up and perform an access review
Ø implement and configure an Azure Policy
Ø implement and configure an Azure Blueprint
Manage security for applications
Ø implement and configure KeyVault
Ø implement and configure Managed Identities
Ø register and manage applications in Azure AD
Implement Solutions for Apps (10-15%)
Implement an application infrastructure
Ø create and configure Azure App Service
Ø create an App Service Web App for Containers
Ø create and configure an App Service plan
Ø configure an App Service
Ø configure networking for an App Service
Ø create and manage deployment slots
Ø implement Logic Apps
Ø implement Azure Functions
Implement container-based applications
Ø create a container image
Ø configure Azure Kubernetes Service
Ø publish and automate image deployment to the Azure Container Registry
Ø publish a solution on an Azure Container Instance
Implement and Manage Data Platforms (10-15%)
Implement NoSQL databases
Ø configure storage account tables
Ø select appropriate CosmosDB APIs
Ø set up replicas in CosmosDB
Implement Azure SQL databases
Ø configure Azure SQL database settings
Ø implement Azure SQL Database managed instances
Ø configure HA for an Azure SQL database
Ø publish an Azure SQL database
The exam guide below shows the changes that were implemented on January 27, 2021.
No comments:
Post a Comment