M55606A - Microsoft 365 Security Administration

Course Description

In this course you will learn how to secure user access to your organization’s Microsoft 365 resources using the security & compliance features of Microsoft Entra ID, Microsoft Defender and Microsoft Purview as they pertain to Microsoft 365. This includes user password protection, multi-factor authentication, Identity Protection, Microsoft Entra Connect, and conditional access in Microsoft 365. You will also learn about threat protection technologies that help protect your Microsoft 365environment. Specifically, you will learn about threat vectors and Microsoft’s security solutions to mitigate threats. You will learn about Secure Score, Exchange Online protection, Microsoft 365 Defender, and threat management. In the course you will learn about information protection technologies from Microsoft Purview. The course discusses information rights managed content, message encryption, as well as labels, policies and rules that support data loss prevention and information protection. Lastly, you will learn about archiving and retention in Microsoft 365 as well as data governance and how to conduct content searches and investigations. This course covers data retention policies and tags, in-place records management for SharePoint, email retention, and how to conduct content searches that support eDiscovery investigations.
5 Days
Contact us for pricing
 

Audience Profile

This course is an alternative to the SC-200 and SC-400 courses and at appropriate level for Microsoft 365 administrators. This course sits at level 200 to300, the Security Administrator course covers the full range of security, compliance, privacy and trust features. Microsoft 365 Administrators will find this course aligned to their day to day requirements. Specialist security and compliance administrators should continue to target SC-200 and SC-400 courses.

The Microsoft 365 Security administrator collaborates with the Microsoft 365 Enterprise Administrator, business stakeholders and other workload administrators to plan and implement security strategies and to ensures that the solutions comply with the policies and regulations of the organization. This role proactively secures Microsoft 365 enterprise environments. Responsibilities include responding to threats, implementing, managing and monitoring security and compliance solutions for the Microsoft 365 environment. They respond to incidents, investigations and enforcement of data governance. The Microsoft 365 Security administrator is familiar with Microsoft 365 workloads and hybrid environments. This role has strong skills and experience with identity protection, information protection, threat protection, security management and data governance.

User and Group Management

Identity and Access Management concepts
Plan your identity and authentication solution
User accounts and roles
Password Management
Lab : Initialize your tenant – users and groups
Set up your Microsoft 365 tenant
Manage users and groups
Lab : Password management
Configure Self-service password reset (SSPR) for user accounts in Entra ID
Deploy Entra ID Smart Lockout

Identity Synchronization and Protection

Plan directory synchronization
Configure and manage synchronized identities
Entra ID Identity Protection
Lab : Implement Identity Synchronization
Set up your organization for identity synchronization

Identity and Access Management

Application Management
Identity Governance
Manage device access
Role Based Access Control (RBAC)
Solutions for external access
Privileged Identity Management
Lab : Use Conditional Access to enable MFA
MFA Authentication Pilot (require MFA for specific apps)
MFA Conditional Access (complete an MFA roll out)
Lab : Configure Privileged Identity Management
Manage Azure resources
Assign directory roles
Activate and deactivate PIM roles
Directory roles
PIM resource workflows
View audit history for admin roles in PIM

Security in Microsoft 365

Zero Trust
Threat vectors and data breaches
Security strategy and principles
Microsoft security solutions
Secure Score
Lab : Use Microsoft Secure Score
Improve your secure score in the Microsoft 365 Defender Portal

Threat Protection

Exchange Online Protection (EOP)
Microsoft Defender for Office 365
Manage Safe Attachments
Manage Safe Links
Microsoft Defender for Identity
Microsoft Defender for Endpoint
Lab : Manage Microsoft 365 Security Services
Implement Microsoft Defender Policies

Threat Management

Security dashboard
Threat investigation and response
Microsoft Sentinel
Lab : Using Attack Simulator
Conduct a simulated Spear phishing attack

Microsoft Defender for Cloud Apps

Defender for Cloud Apps
Use Defender for Cloud Apps information

Mobility

Mobile Application Management (MAM)
Mobile Device Management (MDM)
Deploy mobile device services
Enroll devices to Mobile Device Management

Microsoft Purview Compliance portal

Microsoft Purview Compliance portal
Protect your sensitive data with Microsoft Purview
What is Compliance Manager?

Information Protection and Governance

Archiving and retention in Exchange
Retention in Microsoft 365
Retention policies in the Microsoft Purview Compliance Portal
Governance and records management
Information protection concepts
Sensitivity labels
Lab : Archiving and Retention

Microsoft 365 Encryption

Microsoft 365 Encryption
Deploy message encryption in Microsoft Purview
Lab : Configure Purview Message Encryption

Insider Risk Management

Insider Risk
Privileged Access
Information barriers
Building ethical walls in Exchange Online
Lab : Privileged Access Management
Set up privileged access management and process a request

Discover and Respond

eDiscovery
Content Search
Audit Log Investigations
Lab : Manage Search and Investigation
Investigate your Microsoft 365 Data
Respond to a data subject request using eDiscovery

SecurityMicrosoft AzureAzure SecurityCloud ComputingMicrosoft 365Azure