Season 8
Own delivery end to end: pipelines, review, rollout and a capstone you can show an employer.
The deploy button is not the ending.
What you will cover
Episode 1
Stop Deploying by Memory
Branch protection with a required review and a required status check that actually blocks an unready merge; reading the commit/PR audit trail to find who changed what and when; using it to diagnose and recover from an unreviewed regression; team-scale collaborator roles.
Episode 2
From Commit to Candidate
CI/CD stages and explicit dependencies; triggers; dependency-cache keys; artifact and commit traceability; inspect repeat-build evidence while accounting for mutable external inputs and environment differences.
Episode 3
The Environment Is Part of the Code
Infrastructure as code: parameterised templates, declared-versus-observed state, reviewed plans, scoped deployment identities and workload federation; distinguish fixture snapshot restore from a production rollback or backup strategy.
Episode 4
The Security Gate Says No
Security and compliance gates in a delivery pipeline: separating blocking risk from noise; scanning shipped dependencies against advisories at a chosen severity; checking where a dependency came from; scoped, short-lived pipeline credentials; independent approvals; rotating an exposed secret; and keeping scan evidence linked to a traceable artifact.
Episode 5
The Tests Passed. The AI Got Worse.
Separate unit, integration, security and AI-evaluation gates; AI-quality metrics with sample size and margin of error; conservative thresholds; holdout contamination; releasing gradually with a canary; rolling back to the last known-good release; and recording a release decision that says what the measurement can and can't support.
Episode 6
Creator Night: The Feed Is Failing
Incident response under pressure: ordering actions into stabilise, diagnose and follow up; scoping a failure from logs; recording hypotheses with evidence; mitigating with a verified rollback; reasoning about a latent defect and the missing guard that spread it; communicating accurately without overclaiming; and writing a blameless, checkable incident record.
Episode 7
Creator Night: The Bill and the Breach
Bounded incident evidence, least-privilege containment and approval checks; capacity controls distinct from budget alerts; distinguish attack traffic from a client fault; test retry and cost changes and record the security and cost findings.
Episode 8
You Are the Engineer
Owning an engineering recommendation end to end: clarifying a brief into constraints, gaps and assumptions; building and testing a safe core; securing and staging a release through the gates; diagnosing an unfamiliar fault; and defending a release decision language by language with evidence, a tested rollback and an operational handover.
Certification checkpoint
Designing and Implementing Microsoft DevOps Solutions
AZ-400
5 capstone projects
Read the Azure DevOps Expert guide5 practice projects