Skip to main content

Phase 3: Enterprise Architecture + Security (Weeks 13–16)

Objective: Raise the Phase 2 artifacts to the enterprise level: defensible architecture design (leading toward AZ-305) and AI security (leading toward SC-500) with threat modeling, guardrails, and a reusable enterprise checklist.

🎯 Expected Outcomes​

By completing this phase:

  • Threat model for the RAG/agent system with prioritized mitigations
  • Solid progress in AZ-305 with one documented architecture decision (ADR)
  • Red-team / guardrails exercise against your own AI system
  • Reusable enterprise security and architecture checklist
  • Ready for Gate CP3 (Week 16)
This plan is Microsoft-first

The anchor certifications are AZ-305 (architecture) and SC-500 (cloud & AI security). Open frameworks (OWASP LLM, MITRE ATLAS, NIST AI RMF) are used as a common risk language.


Week 13 β€” Threat model + mitigations​

Objective: model threats specific to AI systems (not only the traditional app).

ResourceLanguageType
OWASP Top 10 for LLM ApplicationsπŸ‡¬πŸ‡§Framework
MITRE ATLASπŸ‡¬πŸ‡§Threat matrix
Microsoft: Threat Modeling AI/MLπŸ‡ͺπŸ‡ΈGuide

Deliverable: threat model document for the Phase 2 system β€” prompt injection, data leakage, poisoning, model DoS β€” with mitigations prioritized by risk.

Week 14 β€” AZ-305: progress + security decision​

Objective: advance the architecture certification and ground one design decision.

ResourceLanguageType
AZ-305 Study GuideπŸ‡ͺπŸ‡ΈOfficial guide
Azure Well-Architected FrameworkπŸ‡ͺπŸ‡ΈFramework
Architecture Decision Records (ADR)πŸ‡ͺπŸ‡ΈPractice

Deliverable: ADR documenting a key architecture decision (identity, network, sensitive data storage, or model hosting) with alternatives and trade-offs.

Week 15 β€” Red-team / guardrails + enterprise checklist​

Objective: attack your own system and add defenses.

ResourceLanguageType
SC-500 Study GuideπŸ‡ͺπŸ‡ΈOfficial guide
Azure AI Content SafetyπŸ‡ͺπŸ‡ΈService
PyRIT β€” Python Risk Identification ToolkitπŸ‡¬πŸ‡§Open tool

Deliverable: red-team report (adversarial prompts + results) + implemented guardrails (content filter, output validation) + enterprise checklist for AI security.

Week 16 β€” CP3 close: architecture + security​

Objective: consolidate architecture and security into a presentable package.

ResourceLanguageType
NIST AI Risk Management FrameworkπŸ‡¬πŸ‡§Framework
ISO/IEC 42001πŸ‡¬πŸ‡§Standard

Checklist for Gate CP3:

  • Threat model with prioritized mitigations
  • Architecture ADR published
  • Red-team + guardrails demonstrated
  • Reusable enterprise security checklist
  • Verifiable progress in AZ-305 and SC-500

πŸ“‹ Phase 3 Checklist​

  • Threat model for the RAG/agent system (OWASP LLM + MITRE ATLAS)
  • ADR with architecture decision and trade-offs
  • Red-team exercise with applied guardrails
  • Enterprise security and architecture checklist
  • Exam plan for AZ-305 and SC-500
  • Gate CP3 approved

v4 Operations​

πŸ”— Resume Value​

"I designed and secured an enterprise-level AI system: threat model mapped to OWASP LLM Top 10 and MITRE ATLAS, architecture decisions documented (ADR) and aligned to the Well-Architected Framework, and guardrails validated with red-teaming β€” backed by AZ-305 and SC-500 certification work."

⏭️ Next Phase​

Phase 4: Value Realization + Content + Networking β†’