We may earn an affiliate commission when you visit our partners.
Course image
Kevin Brown

This course is designed to teach students that are knowledgeable about Windows Server how to secure Windows Server 2016 by providing practical exercises that demonstrate configurations that you can follow along with.

In this course you will learn:

Read more

This course is designed to teach students that are knowledgeable about Windows Server how to secure Windows Server 2016 by providing practical exercises that demonstrate configurations that you can follow along with.

In this course you will learn:

  • Types of attacks and how they can be mitigated

  • Understand and configure privileged access management

  • Explore Sysinternals security tools

  • Configure Jump Servers

  • Secure User and Computer accounts

  • Control applications, including application versions that are allowed

  • Protect data by using EFS and BitLocker encryption

  • Secure network/internet traffic by using IPsec encryption

  • Learn to use PowerShell Remote management

  • Configure the Windows firewall to provide for a secure environment

  • Manage password policies

  • Manage NTLM

  • Deploy Dynamic Access Control to provide extra data protection

  • Implement Service Accounts

  • Deploy Server Core operating systems

  • Deploy Read Only Domain Controllers

  • Implement auditing

  • Manage Windows Defender on the Server operating system

  • Manage access to removable storage

  • Use Group Policy Preferences to provide enhanced security

  • And more....

Enroll now

What's inside

Learning objectives

  • Implement a more secure windows server deployment
  • Understand have to centrally manage security settings in a domain environment

Syllabus

Course topics

Outline of topics that will be covered in this course

Udemy has had issues with some videos having moments of blurred screens. The cause of this is the Auto (1080p) setting in the Udemy player that dynamically changes at times. The recommendation is to change the Udemy player setting to 720p- that will stop all blurriness in Udemy videos.

Read more

Lab setup configuration and image download of lab setup

Understand the different types of attack models that are currently used

Learn to develop a basic security strategy

Examine how a privileged access workstation can be used to protect resources

Understanding Privileged Access Workstations

Configure the Windows firewall to provide secure access for privileged access workstations

Understand basic firewall concepts

Examine how to use jump servers as a means of providing secure access

Learn the different types of remote management that be used and how they are configured

Learn how to enable and use powershell remoting

Configure the windows firewall to allow remote management

Take a deep dive into the Windows firewall

Understand the purpose of IPsec encryption

Configure IPsec polices on the source and destination server

Use wireshark to capture network traffic

Understand the different types of network location profiles and how to manage them

Encrypt filed and folders using native encryption

Understand how BitLocker works

Configure BitLocker using local policies and group polices

A deep dive into dynamic access control

Learn the security features of the active directory admin center

Examine a detailed breakdown of all autorun services and applications on your server

Examine currently logged on sessions using Sysinternals tools

Explore the need for service accounts

Use powershell to configure service accounts

Learn about the different types of password policies

Configure password polices

Understand NTLM authentication and how to manage NTLM

Learn how AppLocker polices can be used

Configure AppLocker to control which applications can run

Understand the benefits of using Server Core

Configure Windows Server Core

Explore how delegation works

Understand the types of activities that can be audited

Examine security options using group policy

Traffic lights

Read about what's good
what should give you pause
and possible dealbreakers
Covers privileged access management, which is essential for administrators looking to enhance security and prevent unauthorized access to critical resources
Explores Sysinternals security tools, which are valuable for diagnosing and troubleshooting Windows systems, as well as identifying potential security vulnerabilities
Teaches how to configure Jump Servers, which are used to provide secure access to internal resources and isolate them from direct exposure to the internet
Explains how to protect data using EFS and BitLocker encryption, which are important for maintaining data confidentiality and preventing unauthorized access to sensitive information
Details how to secure network traffic using IPsec encryption, which is crucial for protecting data in transit and ensuring secure communication between systems
Focuses on securing Windows Server 2016, which may be an older operating system, so learners should consider whether the skills are transferable to newer versions

Save this course

Create your own learning path. Save this course to your list so you can find it easily later.
Save

Reviews summary

Practical securing windows server 2016

According to learners, this course offers a largely practical approach to securing Windows Server 2016. Many students found the hands-on demonstrations and labs to be particularly useful and effective for understanding complex security concepts. Reviewers frequently commented on the instructor's expertise and clear explanations across a range of topics including privileged access, Sysinternals, and encryption methods. While focused specifically on Windows Server 2016, which might be a consideration for those working with newer versions, the foundational principles and techniques taught are often applicable. The course is generally well-structured and detailed, providing actionable strategies for enhancing server security.
Course is specific to Windows Server 2016.
"Great content if you are specifically working with Windows Server 2016."
"Just be aware this is focused solely on the 2016 version."
"While some concepts are transferable, the specific commands and interfaces shown are for Server 2016."
Course covers a wide range of security topics.
"I was impressed by the breadth of security features covered, from IPsec to DAC."
"The syllabus accurately reflects the content; it dives into many useful areas."
"Learned about Sysinternals tools and AppLocker, which I hadn't fully explored before."
Instructor demonstrates strong knowledge of the subject.
"The instructor clearly knows this topic inside and out. Very knowledgeable."
"His explanations were clear and easy to follow, even for complex areas."
"You can tell the instructor has real-world experience securing servers."
The course provides helpful hands-on demonstrations.
"The hands-on demonstrations and practical exercises were the most valuable part of the course for me."
"I really appreciated being able to follow along with the instructor's demos."
"Seeing the configurations live really helped solidify my understanding of the security concepts."
Requires some prior Windows Server knowledge.
"This course is definitely for those already knowledgeable about Windows Server basics."
"Might be challenging if you don't have previous admin experience."
"I found myself needing to look up some fundamental Windows Server concepts first."

Activities

Be better prepared before your course. Deepen your understanding during and after it. Supplement your coursework and achieve mastery of the topics covered in Securing Windows Server 2016 with these activities:
Review Windows Server Fundamentals
Solidify your understanding of core Windows Server concepts before diving into security configurations. This will provide a strong foundation for understanding the security implications of various settings.
Browse courses on Windows Server 2016
Show steps
  • Review the basics of Active Directory.
  • Familiarize yourself with Group Policy Management.
  • Understand the core roles and features of Windows Server.
Review 'Windows Server 2016 Inside Out'
Gain a deeper understanding of Windows Server 2016 by exploring its features and functionalities in detail. This will help you better grasp the security implications of various configurations.
Show steps
  • Read chapters related to Active Directory and Group Policy.
  • Explore sections on networking and storage management.
  • Review the book's coverage of core server roles.
Configure Windows Firewall Rules
Reinforce your understanding of Windows Firewall by practicing configuring various rules. This hands-on experience will solidify your knowledge of network security.
Show steps
  • Create rules to allow specific applications through the firewall.
  • Configure rules based on port numbers and protocols.
  • Experiment with different scope settings for firewall rules.
Four other activities
Expand to see all activities and additional details
Show all seven activities
Document a Security Hardening Procedure
Solidify your understanding of security best practices by documenting a step-by-step procedure for hardening a Windows Server 2016 system. This will force you to think critically about each security setting.
Show steps
  • Choose a specific security hardening goal (e.g., disabling unnecessary services).
  • Research the recommended steps for achieving that goal.
  • Document each step with clear instructions and screenshots.
Implement a Jump Server
Gain practical experience with secure access management by implementing a jump server in a lab environment. This will help you understand the benefits of this security measure.
Show steps
  • Set up a dedicated jump server in your lab environment.
  • Configure the firewall to allow access only from the jump server.
  • Test access to other servers through the jump server.
Develop a PowerShell Script for Auditing
Automate security auditing tasks by creating a PowerShell script that collects relevant security information. This will enhance your scripting skills and improve your ability to monitor security.
Show steps
  • Identify the security information you want to collect (e.g., failed login attempts).
  • Research PowerShell cmdlets for accessing that information.
  • Write a script to collect and format the data.
Review 'Mastering Windows Server 2016'
Deepen your understanding of advanced Windows Server 2016 security features by exploring this comprehensive guide. This will help you stay ahead of the curve in securing your systems.
Show steps
  • Read chapters related to advanced security configurations.
  • Explore sections on virtualization and cloud integration.
  • Review the book's coverage of disaster recovery and business continuity.

Career center

Learners who complete Securing Windows Server 2016 will develop knowledge and skills that may be useful to these careers:
Information Security Specialist
An Information Security Specialist is tasked with safeguarding an organization's information assets, frequently involving the protection of Windows Server infrastructure. This course, dedicated to securing Windows Server 2016 through hands-on exercises, is highly relevant for an information security specialist. It provides necessary skills in privileged access management, data encryption, and application control. The course also covers how to mitigate various types of attacks. An information security specialist will find this course's practical focus on securing Windows Server to be extremely valuable.
Security Analyst
A Security Analyst monitors and protects an organization's computer systems and networks, and this course provides valuable learning opportunities. This course focuses on practical exercises for securing Windows Server 2016, and it directly relates to the security analyst's need to recognize attack vectors and develop mitigation strategies. The course covers essential security configurations such as privileged access management, network traffic encryption with IPsec, and application control, which are crucial for performing a security analyst's job. By understanding Windows Server security, you can better protect against threats.
System Administrator
A System Administrator is responsible for maintaining the reliability and security of computer systems, often including Windows Servers. This course, with its focus on securing Windows Server 2016 through practical exercises, will help a system administrator to implement essential security configurations. A system administrator would find the sections on privileged access management, firewall configuration, and data protection mechanisms particularly useful. This course is also valuable for learning to audit systems, control applications, and manage user accounts for enhanced security.
Cloud Security Specialist
A Cloud Security Specialist is responsible for implementing security measures in cloud environments and many cloud solutions utilize Windows Server. The skills you gain from this course on securing Windows Server 2016 are directly transferable to protecting cloud-based Windows servers. This course's coverage of privileged access management, network security, and data protection mechanisms is crucial for a cloud security specialist to be able to secure cloud infrastructure. The ability to mitigate attacks and configure secure server settings using the methods in this course helps greatly in a cloud role.
Junior Security Consultant
A Junior Security Consultant assists senior consultants in assessing and improving an organizations' security. This course, which focuses on securing Windows Server 2016 using hands on exercises, will benefit a junior security consultant. The consultant will build a practical grounding in areas such as privileged access management, data encryption, and application control. Learning how to mitigate different types of attacks is essential for a junior security consultant to understand best practices and make effective recommendations.
Security Consultant
A Security Consultant advises organizations on improving their security posture, and often needs expertise in how to secure Windows Server environments. This course on securing Windows Server 2016 can be very helpful. The course content will enable a security consultant to advise clients on best practices for privileged access management, network security, and data protection. The practical knowledge in the course will give a security consultant a practical knowledge base and a better ability to recommend effective security strategies to clients.
Cybersecurity Engineer
A Cybersecurity Engineer is responsible for designing and implementing security systems, requiring a deep understanding of both offensive and defensive techniques. This course on securing Windows Server 2016 may be helpful as it gives practical skills in hardening server environments. The course directly addresses crucial aspects like privileged access management, network security, and data protection using EFS and BitLocker, and provides the means to secure remote access. The hands-on exercises offered are helpful for a cybersecurity engineer looking to implement robust server security.
IT Auditor
An IT Auditor evaluates the effectiveness of an organization's information systems and their controls. This course, which covers hardening Windows Server 2016, may be useful to an IT auditor. By understanding how to secure Windows Server by use of practical exercises, an IT auditor can better assess the security posture of systems. The course content on implementing auditing, managing password policies, and understanding various security configurations provides an IT auditor with a comprehensive view of security measures in Windows Server environments.
Infrastructure Engineer
An Infrastructure Engineer is responsible for the underlying technical structure of an information system, which often includes Windows Servers. This course gives practical exercises in securing Windows Server 2016, and may be useful to an infrastructure engineer. An infrastructure engineer will be better able to deploy and maintain secure server environments by learning about privileged access management and data protection. The course also covers server core deployments and read only domain controllers, which are essential for setting up infrastructure securely.
Security Operations Center Analyst
A Security Operations Center Analyst monitors and responds to security incidents. This course on securing Windows Server 2016 may be useful for this role because it provides a deeper understanding of security mechanisms. The course will teach how to mitigate attacks, and how to manage accounts and services. This experience can help an analyst to better identify threats and their attack vectors within the Windows Server environment. The practical exercises for securing Windows Server are relevant to the work of an operations analyst.
Network Engineer
A Network Engineer designs, implements, and manages network infrastructure, which includes ensuring secure communication. This course may be useful for network engineers because it provides practical knowledge about securing network traffic, especially within the Windows Server environment. The course's focus on configuring IPsec encryption, understanding firewall concepts, and securing remote access helps a network engineer implement secure network solutions. By understanding security configurations at the server level, the network engineer can have a better picture of the network security overall.
Compliance Analyst
A Compliance Analyst is responsible for ensuring that an organization's practices adhere to regulatory requirements. This course on securing Windows Server 2016 may be useful for a compliance analyst because it gives a practical understanding of security measures. With a knowledge of privileged access management, data encryption, and audit configuration, analysts can better understand and verify compliance with security policies. Compliance analysts will find this course valuable when developing and assessing security policies.
DevOps Engineer
A DevOps Engineer focuses on automating and streamlining the software development process, often dealing with server configurations. This course on securing Windows Server 2016, while not directly focused on automation, can be useful as it covers securing server environments, and this includes Windows Server. With a better understanding of areas like privileged access management, application control, and data encryption, a DevOps engineer can deploy more secure systems. Many DevOps pipeline configurations will involve the Windows server and the topics of this course enhance practical skills to manage them.
IT Manager
An IT Manager oversees the information technology infrastructure of an organization. This course on securing Windows Server 2016 may be useful for an IT manager because it gives practical knowledge for improving the security of their systems. The course’s content on privileged access management, network security, and data protection mechanisms will enable an IT manager to make informed decisions and to better oversee security strategies. This course also covers how to mitigate attacks, which is essential for managing a secure environment.
Technical Support Specialist
A Technical Support Specialist is responsible for providing technical assistance to users. This course on securing Windows Server 2016 may be helpful for a support specialist. With a good understanding of Windows server configurations, a support specialist will have a greater ability to resolve security related issues. This course also teaches how to secure user and computer accounts. This will be useful when trouble shooting user issues. This practical experience will enable an IT support specialist to assist users with more difficult security concerns.

Reading list

We've selected two books that we think will supplement your learning. Use these to develop background knowledge, enrich your coursework, and gain a deeper understanding of the topics covered in Securing Windows Server 2016.
Provides in-depth coverage of advanced Windows Server 2016 features, including security-related topics. It's a valuable resource for expanding your knowledge beyond the basics. It can be used as a reference to deepen your understanding of the topics covered in the course. It is helpful in providing additional depth.
Provides a comprehensive overview of Windows Server 2016, covering a wide range of topics from basic administration to advanced features. It's a valuable resource for understanding the underlying mechanisms of the operating system. While not solely focused on security, it provides essential context for making informed security decisions. It is useful as a reference tool.

Share

Help others find this course page by sharing it with your friends and followers:

Similar courses

Similar courses are unavailable at this time. Please try again later.
Our mission

OpenCourser helps millions of learners each year. People visit us to learn workspace skills, ace their exams, and nurture their curiosity.

Our extensive catalog contains over 50,000 courses and twice as many books. Browse by search, by topic, or even by career interests. We'll match you to the right resources quickly.

Find this site helpful? Tell a friend about us.

Affiliate disclosure

We're supported by our community of learners. When you purchase or subscribe to courses and programs or purchase books, we may earn a commission from our partners.

Your purchases help us maintain our catalog and keep our servers humming without ads.

Thank you for supporting OpenCourser.

© 2016 - 2025 OpenCourser