
Course Description
This course covers the following key elements of Microsoft 365 administration: Microsoft 365 tenant management, Microsoft 365 identity synchronization, and Microsoft 365 security and compliance.
In Microsoft 365 tenant management, you learn how to configure your Microsoft 365 tenant, including your organizational profile, tenant subscription options, component services, user accounts and licenses, security groups, and administrative roles. You then transition to configuring Microsoft 365, with a primary focus on configuring Office client connectivity. Finally, you explore how to manage user-driven client installations of Microsoft 365 Apps for enterprise deployments.
The course then transitions to an in-depth examination of Microsoft 365 identity synchronization, with a focus on Azure Active Directory Connect and Connect Cloud Sync. You learn how to plan for and implement each of these directory synchronization options, how to manage synchronized identities, and how to implement password management in Microsoft 365 using multifactor authentication and self-service password management.
In Microsoft 365 security management, you begin examining the common types of threat vectors and data breaches facing organizations today. You then learn how Microsoft 365’s security solutions address each of these threats. You are introduced to the Microsoft Secure Score, as well as to Azure Active Directory Identity Protection. You then learn how to manage the Microsoft 365 security services, including Exchange Online Protection, Safe Attachments, and Safe Links. Finally, you are introduced to the various reports that monitor an organization’s security health. You then transition from security services to threat intelligence; specifically, using Microsoft 365 Defender, Microsoft Defender for Cloud Apps, and Microsoft Defender for Endpoint.
Once you have this understanding of Microsoft 365’s security suite, you then examine the key components of Microsoft 365 compliance management. This begins with an overview of all key aspects of data governance, including data archiving and retention, Microsoft Purview message encryption, and data loss prevention (DLP). You then delve deeper into archiving and retention, paying particular attention to Microsoft Purview insider risk management, information barriers, and DLP policies. You then examine how to implement these compliance features by using data classification and sensitivity labels.
Who Should Attend?
This course is designed for persons aspiring to the Microsoft 365 Administrator role and have completed at least one of the Microsoft 365 role-based administrator certification paths.
About this course
Course Outline
-
Deploy and manage a Microsoft 365 tenant (25–30%)
-
Implement and manage identity and access in Azure AD (25–30%)
-
Manage security and threats by using Microsoft 365 Defender (25–30%)
-
Manage compliance by using Microsoft Purview (15–20%)
-
Create a tenant
-
Implement and manage domains
-
Configure organizational settings, including security, privacy, and profile
-
Identify and respond to service health issues
-
Configure notifications in service health
-
Monitor adoption and usage
-
Create and manage users
-
Create and manage guest users
-
Create and manage contacts
-
Create and manage groups, including Microsoft 365 groups
-
Manage and monitor Microsoft 365 license allocations
-
Perform bulk user management, including PowerShell
-
Manage roles in Microsoft 365 and Azure AD
-
Manage role groups for Microsoft Defender, Microsoft Purview, and Microsoft 365 workloads
-
Manage delegation by using administrative units
-
Implement privileged identity management for Azure AD roles
-
Prepare for identity synchronization by using IdFix
-
Implement and manage directory synchronization by using Azure AD Connect cloud sync
-
Implement and manage directory synchronization by using Azure AD Connect
-
Monitor synchronization by using Azure AD Connect Health
-
Troubleshoot synchronization, including Azure AD Connect and Azure AD Connect cloud sync
-
Implement and manage authentication methods, including Windows Hello for Business, passwordless, tokens, and the Microsoft Authenticator app
-
Implement and manage self-service password reset (SSPR)
-
Implement and manage Azure AD Password Protection
-
Implement and manage multi-factor authentication (MFA)
-
Investigate and resolve authentication issues
-
Plan for identity protection
-
Implement and manage Azure AD Identity Protection
-
Plan Conditional Access policies
-
Implement and manage Conditional Access policies
-
Review and take actions to improve the Microsoft Secure Score in the Microsoft 365 Defender portal
-
Review and respond to security incidents and alerts in Microsoft 365 Defender
-
Review and respond to issues identified in security and compliance reports in Microsoft 365 Defender
-
Review and respond to threats identified in threat analytics
-
Implement policies and rules in Defender for Office 365
-
Review and respond to threats identified in Defender for Office 365, including threats and investigations
-
Create and run campaigns, such as attack simulation
-
Unblock users
-
Onboard devices to Defender for Endpoint
-
Configure Defender for Endpoint settings
-
Review and respond to endpoint vulnerabilities
-
Review and respond to risks identified in the Microsoft Defender Vulnerability Management dashboard
-
Implement and manage sensitive info types by using keywords, keyword lists, or regular expressions
-
Implement retention labels, retention label policies, and retention policies
-
Implement sensitivity labels and sensitivity label policies
-
Implement DLP for workloads
-
Implement Endpoint DLP
-
Review and respond to DLP alerts, events, and reports
Prerequisites
Before attending this course, students must have:
-
Completed a role-based administrator course such as Messaging, Teamwork, Security, Compliance, or Collaboration.
-
A proficient understanding of DNS and basic functional experience with Microsoft 365 services.
-
A proficient understanding of general IT practices.
-
A working knowledge of PowerShell.
Where
This will be a virtual event hosted on Microsoft Teams. In the Microsoft Teams platform and sessions, your name, email address, or title may be viewable by other participants. By joining this event, you agree to this experience.