
Engage in hands-on simulations and web-based labs for AB-900 Copilot and agent administration, covering governance, privacy, Microsoft Graph, Azure ID, Purview, Copilot Studios, and sensitivity labels.
Clarify foundation concepts of the on-premise Active Directory environment, remote access (DMZ), virtualization, and the Microsoft cloud model (IaaS, PaaS, SaaS) with Azure and Microsoft 365.
Explore the foundations of Microsoft domains, active directory, domain controllers, DNS, Kerberos, LDAP, and replication, and how GPOs centralize management in the transition from on premises to cloud.
Explore foundational networking and security concepts, including VPN and RAS, DMZ perimeter networks, and virtualization with Hyper-V, illustrating elasticity to share RAM and CPU across on-premises and cloud scenarios.
Explore how cloud services evolved from virtualization, and distinguish IaaS, PaaS, and SaaS with Azure and Microsoft 365, including Intra ID, Intra Connect, and on-premise to cloud synchronization.
Understand that Microsoft's cloud services are constantly changing, requiring agility as menus and buttons move and features are renamed; stay proactive, monitor changes, and contact the instructor for big updates.
Learn how Microsoft renames core services, such as Azure Active Directory to IntraID, and how portal links migrate to admin.microsoft.com, defender.microsoft.com, purview.microsoft.com, and Intune.microsoft.com, with a dedicated portal page portals.examlabpractice.com.
Ask questions anytime and I will respond as I manage many learners, and learn to locate official information on docs.microsoft.com for Microsoft 365 dynamic query based groups.
We cover exam and test objectives in an order that makes learning sense, prioritizing foundational concepts before advanced ones, even if objectives appear out of order.
Earn a certificate of completion by watching all course videos; assignments don’t matter, and a final video explains how to obtain your certificate.
Learn how to handle simulations in Udemy course assignments, work around the checkmark bug, and run offsite simulations in a new tab, knowing certificates depend on videos, not checkmarks.
Create a free Microsoft 365 account with a free email, verify by phone, and cancel the 30-day trial; review Microsoft 365 E5 (or E3/Business Premium) and portal changes.
Activate the Azure free trial on portal.azure.com to receive $200 credit for 30 days. Switch to pay-as-you-go to build virtual machines, virtual networks, and firewall services.
Discover how the compliance blade was renamed to Microsoft Purview in the admin console and why some videos still show the old label.
Learn how Microsoft 365 licenses and subscriptions grant access to Teams, Exchange Online, SharePoint, and more, and how group-based licensing, highest SKU rules, and unassigned service controls determine user access.
Explore organization configurations in the Microsoft 365 admin center, including services, security and privacy, organization profile, and domain management with DNS verification and custom domains.
Manage Exchange Online mailboxes and groups via the Exchange Online admin center, linking licenses to users for automatic mailbox creation and configuring delegation, quotas, and shared mailboxes for recipients.
Identify how to configure SharePoint in MS365 by creating team or communication sites, and manage storage, permissions, retention, sensitivity labels, and integration with Teams and OneDrive.
Learn how SharePoint site permissions map to Microsoft 365 group roles, including owners, site owners, members, site members, site admins, and visitors, to control access and administration.
Explore the teams admin center to create and manage teams, assign owners, set privacy, configure channels, and adjust global and team settings for secure collaboration.
discover a simple method to redo simulations after completing an assignment by following go to summary, back to assignment, and instructions steps. access the simulation link anytime through these steps.
Discover the zero trust model: verify everything, assume breach, and grant least privilege. Learn how just-in-time administration, just enough access, PIM, and conditional access policies protect users, devices, and data.
Explore Microsoft Entra authentication methods, including OAuth 2.0, OpenID Connect, SAML, MFA, and passwordless options like the authenticator app and FIDO2 passkeys. Authenticate first, then authorize access across hybrid environments.
Explore Microsoft Inter ID authentication methods used by Azure and Microsoft 365, including primary and secondary auth, passwordless options (Windows Hello for Business, FIDO2, QR codes, Microsoft Authenticator), and MFA/SSPR.
Create and manage user identities across Microsoft Entra ID using portal.azure.com, admin.microsoft.com, and intro.microsoft.com; assign licenses, roles, groups, and attributes such as user principal name, display name, and office location.
Learn how to invite external users as guests using Microsoft Entra ID and Azure resources, enabling secure B2B access for contractors and consultants.
Learn to create and manage Microsoft 365 groups in the admin center, choosing group types (Microsoft 365, distribution, security, mail-enabled), setting owners and members, and configuring privacy and Teams integration.
Explore creating and managing groups in Microsoft intra ID via the Azure portal, including Microsoft 365 and security, and dynamic or manual membership through rules like department or job title.
Master Microsoft 365 threat protection stack to detect, block, and respond to threats across endpoints, identities, email, and cloud apps using Defender XDR and integrated tools.
Explore how Microsoft Defender XDR unifies SIEM and XDR to deliver AI insights, alerts, investigations, and automation across identities, endpoints, and cloud apps.
Administer Microsoft Entra ID via the Azure portal and the newer Entra ID portal, managing users, groups, devices, and roles across linked interfaces.
Explore how conditional access uses signals from identities, devices, apps, and data under a zero trust framework to block, grant, or restrict access, with real-time risk checks and enforcement.
Learn to create a conditional access policy using Microsoft templates, select a template such as block legacy authentication, configure review and create options, and use report-only mode to monitor risk.
Enable a single sign-on with Entra ID, signing in once to acquire a token for Outlook, Teams, SharePoint, and apps, while centralizing identity management and enabling MFA and conditional access.
Master multi-factor authentication by requiring two or more distinct factors such as password, device, or biometrics, and explore Azure AD integration.
Enable multi-factor authentication for Microsoft 365 and Azure using security defaults and authentication methods, and enforce it with conditional access policies across all users or groups.
Master rbac across intra ID, Azure, and Microsoft 365 by assigning owner, contributor, and reader roles with least privilege across management groups, subscriptions, resource groups, and resources.
Learn how to implement role-based access control in the Microsoft 365 admin center by viewing and assigning Entra ID roles across Exchange, Intune, Defender, and Purview.
Explore privileged identity management (PIM) within a zero-trust framework, applying least privilege and privilege bracketing to grant time-bound, approved access to Azure and Microsoft Entra ID services.
Explore how to implement privileged identity management in Microsoft Entra to grant temporary, just-in-time access with the User Administrator role, activated via MFA and time bounds.
Identify and troubleshoot sign-in issues using sign-in logs in Microsoft Entra ID, review authentication details and MFA, and evaluate conditional access policies with diagnostic and what-if tools.
Learn to read your Microsoft Entra identity secure score, track progress with the score history, and prioritize high-impact actions like MFA, conditional access, and legacy authentication controls.
Discover how app registrations in Microsoft Entra ID enable your internet-facing web app to authenticate and authorize users through Entra ID, using enterprise or personal Microsoft accounts.
Explore how enterprise apps are accessed across on-prem, cloud, and SaaS with Microsoft Entra ID, and how tenant and application settings control access with single sign-on and consent.
Register a new app in Microsoft Entra ID via the Azure portal, choose the accounts to authenticate (organizational directory only, multi-tenant, or personal), and configure a redirect URI.
Identify sensitive information types such as PII, financial data, HIPAA health data, IP, government data, and confidential business information, then apply data sensitivity labels and governance policies.
Learn to create and manage custom sensitive information types in Microsoft Purview, using built-in types, patterns, and tests to identify data like credit card info.
Master Microsoft data loss prevention (DLP) capabilities across Exchange Online, SharePoint, OneDrive, Teams, and endpoint devices. Identify regulatory, internal policy, and industry use cases to prevent data leakage.
Create a custom data loss prevention policy in Microsoft Purview by selecting financial templates, defining locations such as Exchange, SharePoint, OneDrive, and configuring policy tips, alerts, and simulation mode.
Explore Microsoft Purview's communication compliance and insider risk management to detect policy violations, harassment, confidential data sharing, and regulatory monitoring across email, Teams, Yammer, and external communications.
Implement Microsoft Purview data security posture management to protect ai data across Microsoft 365 and SharePoint. Enable data discovery, risk assessments, governance, and policy enforcement with Defender tools and Copilot.
Identify how sensitivity labels in Microsoft Purview classify data across documents and emails. Apply label policies with manual and automated labeling, watermarking, and encryption to enforce data protection.
Define and manage sensitivity labels in Microsoft Purview, configure protection settings and access control, assign permissions, and govern scope across data, emails, meetings, and sites.
Understand retention basics, including retention policies and labels, and how to preserve or delete information. Learn how disposition reviews enforce compliance across files, emails, and chats.
Create a static retention policy in Microsoft Purview data lifecycle management to retain items for five years across Exchange mailboxes, SharePoint and OneDrive, with auto-delete options and policy enforcement timing.
Explore how Microsoft 365 Copilot accesses data via Microsoft Graph and an LLM. See how data remains in the secure cloud, encrypted, permission-controlled, and not used to train the model.
Explore how Microsoft Graph connects Microsoft 365 data as a unified API and grounds Copilot responses with context from emails, chats, files, and meetings.
Understand how Microsoft Copilot uses permissions and controls in Microsoft 365 Purview Defender, via Microsoft Graph, and only accesses resources a user has rights to, configurable via Copilot settings.
Explore responsible AI for generative systems through four phases—identify, measure, mitigate, operate—using impact assessments, red teaming, and layered safety, with legal and governance considerations.
Identify compliance risks and receive actionable recommendations with Microsoft Purview Compliance Manager, a centralized dashboard that measures your posture against GDPR, NIST, and HIPAA.
Learn to identify sensitive information with Data Explorer and monitor user activity with Activity Explorer in Purview, and use data connectors to ingest data from various sources.
Identify insider risk using Microsoft Purview's insider risk management tools to detect, investigate, and escalate data leaks, IP theft, and compliance violations through policy-driven alerts and case workflows.
Configure an insider risk management policy in Microsoft Purview by selecting a custom policy template, enabling data leaks protection, setting triggering events and thresholds, and configuring alerts and connectors.
Identify and respond to data loss prevention alerts in Microsoft Purview by navigating to data loss prevention, recognizing policy-driven incidents, and filtering by user, status, or severity.
Identify policy violations generated by communication compliance using a machine learning classifier to flag inappropriate messages, apply policies, set reviewers and locations, and generate alerts and reports.
Explore microsoft purview activity explorer to identify user activities by viewing data explorer, content explorer, and activity explorer, and by examining sensitivity labels and reporting dashboards.
Monitor AI activity with DSPM for AI in Microsoft Purview using activity explorer and policy investigations to detect risks and analyze insider risk, DLP, and total interactions over time.
Use content search in Microsoft Purview eDiscovery to locate documents, create cases, and hold or undelete data, while configuring sources, keywords, and conditions and reviewing indexing status.
Explore how to diagnose oversharing in SharePoint and OneDrive using the admin center policies, external sharing controls, default link types, and site-level settings to enforce the most restrictive option.
Learn to use the SharePoint Data Access Governance report to identify oversharing, analyze sharing links and sensitivity labels, and generate CSV reports across thousands of sites to protect sensitive data.
Explore SharePoint advanced management features, including restricted access control, governance reports, and block download policies, to govern sharing, access, and content lifecycle across sites and OneDrive.
Compare Copilot and ai agents to understand how Copilot acts as a human-guided assistant while agents perform end-to-end workflows autonomously, enabling automated, proactive tasks.
Compare Copilot monthly per-user licensing with pay-as-you-go usage, highlighting SharePoint integration, agents, and budgeting controls for admin oversight.
Identify which Copilot features can be enabled or disabled, including pinning Copilot chat, taskbar settings, Opal frontier, self-service licenses, Edge and Bing integration, web search, and agents.
Explore Copilot's researcher, analyst, and custom agents: a find and explain assistant, an interpret, calculate, and recommend assistant, and trainable AI employees for workflows.
We really hope you'll agree, this training is way more than the average course on Udemy!
Have access to the following:
Training from an instructor of over 25 years who has trained thousands of people and also a Microsoft Certified Trainer
Lecture that explains the concepts in an easy to learn method for someone that is just starting out with this material
Instructor led hands on and simulations to practice that can be followed even if you have little to no experience
TOPICS COVERED INCLUDING HANDS ON LECTURE AND PRACTICE TUTORIALS:
Introduction
Welcome to the course
Understanding the Microsoft Environment
Having a Solid Foundation of Active Directory Domains
Having a Solid Foundation of RAS, DMZ, and Virtualization
Having a Solid Foundation of the Microsoft Cloud Services
DONT SKIP: The first thing to know about Microsoft cloud services
Questions for John Christopher
Order of concepts covered in the course
Certificate of Completion
Setting up for hands on
IMPORTANT Using Assignments in the course
Creating a free Microsoft 365 Account
Getting your free Azure credit
Compliance blade renamed to Microsoft Purview
Identify the core objects of Microsoft 365 services
Explain how license types assigned to users and groups affect access to MS365
Explore the organization configurations by using the Microsoft 365 admin center
Identify the appropriate objects to configure by using the Exchange Online admin
Identify the appropriate objects to configure by using SharePoint in MS365
Identify the appropriate roles and permissions for sites in SharePoint in MS365
Identify the appropriate objects to configure by using the Teams admin center
Understand the Microsoft 365 security principles
Explain the core Zero Trust principles
Understand authentication for authorization
Configure authentication methods
User identity creation
External user identity creation
Group creation in Microsoft 365
Group creation in Azure
Understand threat protection and intelligence
Understand features and capabilities of Microsoft Defender XDR
Identify the core security features of Microsoft 365 services
Understand features and capabilities of Microsoft Entra
Understand conditional access policies
Implement a conditional access policy from a template
Understand the purpose and benefits of SSO
Understand multi-factor authentication (MFA)
Implement multi-factor authentication (MFA)
Understand the concepts of role based access control (RBAC)
Implement role based access control (RBAC)
Identify the role of Privileged Identity Management (PIM) in an organization
Using Privileged Identity Management (PIM) in an organization
Identify the appropriate tools to troubleshoot common sign-in issues
Interpret Identity Secure Score in Microsoft Entra ID
Understand App registrations and Enterprise apps
Understand the concepts of Enterprise apps in Microsoft Entra
Create an App registrations in Microsoft Entra
Understand Microsoft Purview
Understand features and capabilities of Microsoft Purview Information Protection
Data classification with sensitive info types in Microsoft Purview
Understand features and capabilities of Data Loss Prevention (DLP) in Microsoft Purview
Create a Data Loss Prevention (DLP) policy in Microsoft Purview
Understand Microsoft Purview Communication Compliance & Insider Risk Management
Understand Microsoft Purview Data Security Posture Management (DSPM) for AI
Identify the use cases for sensitivity labels in Microsoft Purview
Create sensitivity labels in Microsoft Purview
Understand retention
Create retention policies Microsoft Purview Data Lifecycle Management
Understand data security implications of Copilot
Understand how Copilot accesses data
Understand how Microsoft Graph influences Copilot responses
Understand how Copilot uses permissions and other controls in Microsoft 365
Understand responsible AI principles
Identify data protection and governance risks for Microsoft 365 and Copilot
Identify compliance risks & recommendations by using Purview Compliance Manager
Identify sensitive information by using Microsoft Purview Data Explorer
Identify risks by using Insider Risk Management
Implement an Insider Risk Management policy using Microsoft Purview
Identify and respond to alerts generated by Microsoft Purview DLP
Identify policy violations generated by Communication Compliance
Identify user activities reported by Microsoft Purview activity explorer
Discover and manage AI activity by using DSPM for AI
Search for files and emails by using Content search in MS Purview eDiscovery
Identify and monitor oversharing in SharePoint in Microsoft 365
Identify the tools to troubleshoot oversharing in an organization
Run a data access governance report in SharePoint
Understand features and capabilities of SharePoint Advanced Management
Understand features and capabilities of Copilot and agents
Compare the built-in capabilities of Copilot and agents
Compare Copilot monthly license model to pay-as-you-go, including SharePoint
Identify which Copilot features can be enabled or disabled
Identify use cases for Researcher, Analyst, and custom agents
Perform basic administrative tasks for Copilot
Assign Copilot licenses
Monitor and manage Copilot pay-as-you-go billing policies
Monitor Copilot usage and adoption, Copilot Analytics and the MS365 admin center
Manage prompts, including saving, sharing, scheduling, and deleting
Perform basic administrative tasks for agents
Identify how to configure user access to agents
Create an agent
Understand approval process for agents
Monitor agents, including usage, operational insights, and agent lifecycle