
Explore the Microsoft 365 Security Administrator course, a full exam prep for the MS-500, with official training, labs, and hands-on demos covering identity, threat protection, compliance, and governance.
Prepare for MS-500 exam by learning to secure Microsoft 365 and Azure, synchronize on-premises identities to cloud, and manage identity, access, threat protection, information protection, and governance with hands-on labs.
Set up the lab by obtaining a Microsoft 365 E5 trial, an Azure subscription, and VirtualBox to run a domain controller VM that syncs on premises identities with Azure AD.
In this update, learn about renaming of Microsoft 365 security products—Azure ATP to Defender for Identity, Defender ATP to Defender for Endpoint, and Defender for Office 365—without functional changes.
Explore identity and access management concepts, including the zero trust model, hybrid identity, and identity governance with Azure AD, MFA, passwordless methods, and device health protections.
Explore the zero trust model, its concepts, and planning and networking approaches, emphasizing verify explicitly, least privilege, assume breach, micro-segmentation, and data protection using identity, devices, apps, and network controls.
Plan identity and authentication by comparing cloud, on premises, and hybrid provisioning. Explore Azure AD Connect, directory synchronization, and options like password hash sync and seamless sign on.
Master identity management with Azure AD privileged identity management and Privileged Access Management in Office 365, enabling just-in-time access, auditing, and time-bound, approval-based controls.
Plan directory synchronization with Azure AD Connect by preparing on-premises Active Directory, validating UPN suffixes, using the Microsoft 365 fix tool, and evaluating Azure AD Connect options.
Configure and manage synchronized identities with Azure AD Connect, covering prerequisites, express and custom setup, health monitoring, and directory synchronization between on-premises AD and Azure AD.
Configure and enforce password policies and multifactor authentication to secure Microsoft 365 access, and enable self-service password reset and passwordless options (Windows Hello for Business) with Azure AD.
Automate detection and remediation of identity risks, investigate risks in the portal, and export risk data to third-party tools, using the identity protection dashboard and risk policies.
Learn how Azure Active Directory conditional access controls access to apps and devices under specific conditions. Explore policies, federated authentication, application proxy, access reviews, and security defaults.
Learn to plan and enforce device compliance with Intune, create dynamic Azure AD groups, and author conditional access policies to control access to company resources.
Explore role based access control (rbac) in Azure, applying least privilege via role assignments across management group, subscription, resource group, and resource scopes, with monitoring via activity logs.
Explore external access solutions in Microsoft 365 security administration, including Azure AD B2B guest access, Office 365 external sharing, Teams external and guest access, and Customer Lockbox.
Explore threat vectors and data breaches in Microsoft 365, examining phishing, spoofing, spam, account breaches, elevation of privileges, data exfiltration, data deletion, spillage, coin mining.
Explore Microsoft security principles, defend in depth, and raise attacker costs using threat detection, attack simulator, and cloud-enabled protection to minimize risk.
Explore Microsoft 365 Security Center, Exchange Online Protection with Office 365 Advanced Threat Protection, and Cloud App Security to protect identities, data, and apps.
Learn how the Microsoft 365 secure score dashboard measures security posture, tracks improvement actions and points, and guides a risk-based roadmap for security enhancement.
Explore how Office 365 Advanced Threat Protection extends Exchange Online Protection with safe attachments and safe links, safeguarding SharePoint, OneDrive, and Teams through sandbox analysis and URL validation.
Create and manage safe attachments policies in Microsoft 365 security, use PowerShell and transport rules, and review dynamic delivery for end user experience.
Learn how to create and manage safe links policies in Microsoft 365, configure PowerShell commands, apply transport rules, and review the end-user experience.
Explore Azure Advanced Threat Protection and Defender for Identity by configuring domain controller sensors, monitoring network traffic, and generating alerts and reports to detect lateral movement and other attacks.
Explore Microsoft Defender Advanced Threat Protection, its cloud-based detection and response, integration with Security Center and Azure Security Center, and components like alerts, ATP, EDR, and application guard features.
Explore the security dashboard to visualize the global threat landscape, monitor malware trends and alerts, and investigate threats and manage incidents in the Microsoft 365 Security and Compliance Center.
Explore threat investigation and response in Microsoft 365, leveraging Threat Explorer, threat trackers, automated investigation and response, attack simulator, and the Microsoft Graph Security API.
Azure Sentinel is a cloud-native siem and soar that delivers intelligent analytics, threat intelligence, and automated response across data sources, enabling proactive hunting and rapid incident response.
Learn to deploy Microsoft cloud app security and configure policies. Use cloud discovery, app connectors, and conditional access app control to provide real-time visibility and protect data across cloud apps.
Use cloud app security and the cloud discovery dashboard to identify discovered apps, assess risk scores, manage alerts, and tailor policies for sanctions or blocks.
Explore mobile application management (MAM) to publish, configure, secure, monitor, and update apps with Intune app protection policies and Azure AD, with or without device enrollment under Unified Endpoint Manager.
Explore mobile device management (MDM) with Office 365 MDM and Intune, enroll devices, apply profiles and policies, and control access to email and documents across Windows, Android, and iOS.
Learn to enroll Windows 10, Android, and iOS devices to MDM, use DEP for iOS, apply enrollment rules, and leverage device enrollment manager and MFA.
Master information protection concepts in Microsoft 365 by examining protection lifecycle, digital estate, and four data classification methods—automatic, recommended, reclassification, and user set—using sensitivity labels and data loss prevention.
Explore sensitivity labels: classify and protect data across office apps and devices with encryption, watermarks, publish label policies, enable automatic labeling, and migrate from Azure Information Protection to unified labeling.
Explore in-place archiving in Exchange and in-place records management in SharePoint, covering archive mailboxes, recoverable items, retention policies, and governance of records across Microsoft 365.
Apply retention policies across Exchange mailboxes, SharePoint, and OneDrive to retain or delete data, using retention tags, preservation, and age calculations for compliance.
Discover how to implement archiving and retention in Exchange Online by creating retention tags and policies, applying them to mailboxes, and managing archive moves and deletions.
Learn how to implement in-place records management in SharePoint, build a file plan, convert active documents to records, and leverage retention policies and eDiscovery across sites.
This course is a complete preparation for the MS-500 exam. ( Including hands-on Labs)
The opportunity in cloud computing is clear. Most companies are implementing or investigating how to implement cloud technologies within their operations. One big topic is securing all cloud workloads and services.
Don't be left behind. Be ahead of the curve by getting certified as a Microsoft 365 Security Administrator, and be ready for the opportunity to advance your career.
All video lectures will cover all MS-500 exam topics and include hands on demonstrations on each topic.
The course also covers the latest changes/updates to the MS-500 exam as per Microsoft.
The course has been structured to follow the exact official Microsoft training plan. So if you want to pass your exam on your first attempt hit the enroll button now and you will get:
Video lectures on each topic of the exam with demos that fully prepare you for your exam as well as ensuring you can administer all Microsoft 365 security services and tools like a Pro
Review questions at the end of each section (quizz) to test your knowledge on the topics learned in the section
LABS at the end of each section. The labs follow the official Microsoft training labs and they are designed so you can practice yourself at your own pace when you aren't watching the videos. You will have step-by-step instructions available to complete each lab and instructions to prepare your lab environment and deploy the necesarry resources for the labs.
Links to official Microsoft resources/blogs/videos for further documentation available for each lesson on each topic
This course curriculum follows the Microsoft's MS-500 exam study areas:
Implement and manage identity and access (30-35%)
Implement and manage threat protection (20-25%)
Implement and manage information protection (15-20%)
Manage governance and compliance features in Microsoft 365 (20-25%)
The course has been updated in April 2021
Microsoft, Windows, Microsoft 365 and Microsoft Azure are either registered trademarks or trademarks of Microsoft Corporation in the United States and/or other countries. This course is not certified, accredited, affiliated with, nor endorsed by Microsoft Corporation.