Coming from a PfSense/Cisco world I thought I had an okay understanding of VLANs, L2 and L3. However, after hours of digging through manuals and forum posts regarding Mikrotik and VLANs, I am left with more questions than I had initially. Most guides explain advanced setups and focuses on trunks and HW offloading. While this is great, it doesn´t cover my basic questions.
Can someone explain the steps involved in a simple VLAN setup, as well as the bridge´s role in VLANs for ROS?

After setting up VLAN interfaces, IP addresses, firewall rules, DHCP pools and servers I have access to WAN from the different VLANs, but not other LANs/VLANs.
Setup:
RB760iGS
Untagged LAN for trusted devices with multicast for Chromecast, AirPlay and Spotify Connect
Trusted devices on VLAN 120
IoT on VLAN 13
Unifi Management on VLAN 99
HW offloading not required, as very little traffic will pass between the VLANs. I do, however, want to restrict traffic to my firewall rules. This exercise is for educational, home lab purposes, and not to be used in production.