


SC-400 Certification details
Overview
As an information protection and compliance administrator, you plan and implement risk and compliance controls in the Microsoft Purview compliance portal.
In this role, you translate an organization’s risk and compliance requirements into technical implementation. You’re responsible for implementing and managing solutions for content classification, data loss prevention (DLP), information protection, data lifecycle management, records management, privacy, risk, and compliance.
You work with other roles that are responsible for governance, data, and security to evaluate and develop policies to address an organization’s risk reduction and compliance goals. You assist workload administrators, business application owners, human resources departments, and legal stakeholders to implement technology solutions that support the necessary policies and controls.
You should have experience with Microsoft 365 services, including:
Microsoft 365 Apps
Microsoft Exchange Online
Microsoft SharePoint
Microsoft OneDrive
Microsoft Teams
You should also be familiar with PowerShell.
Skills measured
Implement information protection
Implement DLP
Implement data lifecycle and records management
Monitor and investigate data and activities by using Microsoft Purview
Manage insider and privacy risk in Microsoft 365
SC-100 Certification details
As a Microsoft cybersecurity architect, you translate a cybersecurity strategy into capabilities that protect the assets, business, and operations of an organization. You design, guide the implementation of, and maintain security solutions that follow Zero Trust principles and best practices, including security strategies for identity, devices, data, AI, applications, network, infrastructure, and DevOps. Plus, you design solutions for Governance and Risk Compliance (GRC), security operations, and security posture management.
As a cybersecurity architect, you continuously collaborate with leaders and practitioners in security, privacy, engineering, and other roles across an organization to plan and implement a cybersecurity strategy that meets the business needs of an organization.
As a candidate for this exam, you have experience implementing or administering solutions in the following areas: identity and access, platform protection, security operations, data and AI security, application security, and hybrid and multicloud infrastructures. You should have expert skills in at least one of those areas, and you should have experience designing security solutions that include Microsoft security technologies.
Skills measured
Design solutions that align with security best practices and priorities
Design security operations, identity, and compliance capabilities
Design security solutions for infrastructure
Design security solutions for applications and data