We may earn an affiliate commission when you visit our partners.
Course image
John Christopher

We really hope you'll agree, this training is way more than the average course on Udemy.

Have access to the following:

  • Training from an instructor of over 20 years who has trained thousands of people and also a Microsoft Certified Trainer

  • Lecture that explains the concepts in an easy to learn method for someone that is just starting out with this material

  • Instructor led hands on and simulations to practice that can be followed even if you have little to no experience

  • Foundation of Active Directory Domains

  • Read more

    We really hope you'll agree, this training is way more than the average course on Udemy.

    Have access to the following:

    • Training from an instructor of over 20 years who has trained thousands of people and also a Microsoft Certified Trainer

    • Lecture that explains the concepts in an easy to learn method for someone that is just starting out with this material

    • Instructor led hands on and simulations to practice that can be followed even if you have little to no experience

  • Foundation of Active Directory Domains

  • A foundation for Remote Access, DMZs, and Virtualization

  • A foundation of the Microsoft Cloud Services

  • DO NOT SKIP: Azure AD has been renamed

  • Creating a trial Microsoft 365/Azure Account

  • DO NOT SKIP: Using assignments in the course

  • Questions for John Christopher

  • User Identity administration as well as understanding PowerShell concepts

    • Introduction to Creating and Managing User Identities

    • The First Concept of Microsoft's Cloud

    • Creating and Managing User Identities

    • Working with guest users

    • Understanding the foundational concepts of Microsoft PowerShell Administration

    • Using PowerShell to Manage Microsoft 365 Cloud Resources

    Working with Groups in Microsoft 365

    • Group management in Microsoft 365

    Password Lockout Management in Microsoft 365

    • Introduction to Password Lockout Management in Microsoft 365

    • Configuring the Password Lockout settings

    Administrative units, Role Based Access Control and Privileged Identity Management (PIM)

    • Concepts of administrative units

    • Introduction to Assigning Roles

    • Role permissions in Microsoft 365 and Entra ID (formerly Azure AD)

    • Role groups in MS Defender and Microsoft Purview

    • Understanding Privileged Identity Management (PIM)

    • Configuring and implementing Privileged Identity Management (PIM)

    Multi-Factor Authentication In Microsoft 365

    • Introduction to Multi-Factor Authentication

    • Implementing Multi-Factor Authentication

    Self Service Password Reset (SSPR)

    • Introduction to Self Service Password Reset (SSPR)

    • Implementing and configure SSPR

    Entra ID (formerly Azure AD) Identity Protection

    • Intro to Entra Identity Protection ( Formerly Azure AD Identity Protection)

    • Implementing Entra Identity Protection (formerly Azure AD Identity Protection)

    Conditional Access and Compliance Policies

    • Introduction to Conditional Access Policies

    • Controlling access using Conditional Access Policies

    • Understanding Device Compliance Policies

    • Implementing Device Compliance Policies using Endpoint Manage (Intune)

    Foundations of Microsoft 365 threat concepts and dashboards

    • Concepts of the Zero Trust Model

    • Introduction to Microsoft Defender

    • Introduction to Microsoft Purview for compliance management

    Microsoft Purview information protection and data lifecycle management

    • Understanding Sensitivity Labels

    • Implementing sensitive info types

    • Implementing retention in Microsoft Purview

    • Configuring sensitivity labels and sensitivity label policies

    Managing Data Loss Prevention (DLP) in Microsoft Purview

    • Introduction to Data Loss Prevention

    • Implementing Data Loss Prevention in Microsoft 365

    • Reviewing DLP alerts, events, and reports

    Secure endpoints by using Microsoft Defender for Endpoint

    • Plan a Microsoft Defender for Endpoint solution

    • Defender for Endpoint configuration

    Implement and manage Microsoft Defender for Office 365

    • Introduction to Microsoft Defender for Office365 (formerly ATP)

    • Implementing Defender for Office 365 policies

    • Reviewing threats identified in Defender for Office 365

    • Using attack simulations

    Monitor Microsoft 365 Security with Microsoft Sentinel

    • Understanding Azure Sentinel

    • Connecting to Azure Sentinel

    • Using Azure Sentinel

    Implement and manage Microsoft Defender for Cloud Apps and Defender for Identity

    • Plan Microsoft Defender for Cloud Apps implementation

    • Manage entries in the Microsoft Defender for Cloud Apps catalog

    • Configure Microsoft Defender Cloud Apps connectors

    • Configure Microsoft Defender for Cloud Apps policies and templates

    • Review Defender for Cloud App activity log

    • Review, interpret and respond to Microsoft Defender for Cloud Apps

    • Understanding Microsoft Defender for Identity

    • Basic setup for Microsoft Defender for Identity

    Microsoft Purview audit logs and reports

    • Standard and Premium auditing concepts

    • Plan for and configure auditing

    • Investigating a unified audit log

    • Using compliance manager along with looking at compliance reports

    • Alert policies

    • Using audit retention policies

    Discover and respond to compliance queries in Microsoft 365

    • Understanding eDiscovery Standard vs Premium

    • Content search

    • Creating an eDiscovery search

    Microsoft Purview Communication Compliance

    • Understanding communication compliance

    • Communication compliance policy creation

    • Communication compliance alerts and reports

    Implement and manage Microsoft Purview Insider Risk Management

    • Understanding insider risk management

    • Insider risk management policy creation

    • Insider risk activities, alerts, and reports

    • Insider risk cases, forensic evidence settings, and notice templates

    Enroll now

    What's inside

    Learning objectives

    • Learn the concepts and perform hands on activities needed to master microsoft 365 security
    • Gain a tremendous amount of knowledge involving securing microsoft 365 and azure services
    • Get loads of hands on experience with securing microsoft 365 and azure ad
    • Utilize hands on simulations that can be access anytime, anywhere!

    Syllabus

    Understand the different ways in the Microsoft Cloud that you can create and manage user identities
    This introduction will help you understand what you'll be learning in the course as well as show you how to get a free Microsoft 365/Azure account to use for hands on
    Read more

    This video will help you understand what is involved in this course and how the course will help you learn the MS-500 material

    This lecture helps make sure you have a foundation of Active Directory

    This lecture helps make sure you have a foundation of RAS DMZs and Virtualization

    This lecture will help you have a foundation of Microsoft Cloud services

    This video shows how the assignments work in Udemy

    This lesson provides an introduction to the ways Microsoft deals with user identities

    This lecture provides a walkthrough demonstration of dealing with User Identities

    In this demonstration, I will walk through the creation of a dynamic security group that will auto assign iPhones that get added to your organization

    This introduction video explains the concept of Password Lockout Management in Microsoft 365

    In this demonstration, I'm going to step into the Azure portal and explain how to configure the password lockout settings

    This demonstration will walk you through understand roles, role permissions, and how to assign an identity to a role

    This lecture will cover the concepts of what PIM is and how it can help secure roles

    This lecture will demonstrate how to set up PIM to give a user access to a role for a temporary amount of time

    In this demonstration, I will walk you through implementing MFA (Multi-Factor Authentication)

    In this demonstration, I will show you how to configure SSPR and explain the different settings available

    This demonstration will walk you through using Azure AD Identity Protection to implement a risky user and risky sign-in policy

    This demonstration will walk you through the different options within Conditional Access Policies along with show you how to create a policy

    This lecture will walk you through setting up a Device Compliance Policy

    In this introduction, I will discuss the concepts of Data Loss Prevention in Microsoft 365 and how it can help protect your data from being exfiltrated

    This lecture will explain the concepts of Azure Sentinel

    This lecture will demonstrate how to get Azure Sentinel up and running

    This lecture will demonstrate using Azure Sentinel

    Save this course

    Create your own learning path. Save this course to your list so you can find it easily later.
    Save

    Activities

    Coming soon We're preparing activities for Microsoft 365 Security Admin Course with practice SIMs. These are activities you can do either before, during, or after a course.

    Career center

    Learners who complete Microsoft 365 Security Admin Course with practice SIMs will develop knowledge and skills that may be useful to these careers:
    Microsoft 365 Security Administrator
    The Microsoft 365 Security Administrator role is at the heart of protecting an organization's digital assets within the Microsoft ecosystem. This professional manages and implements security solutions for Microsoft 365 and Azure services. This course is directly aligned with the expertise required for a Microsoft 365 Security Administrator, providing comprehensive training in user identity administration, group management, role based access control, Privileged Identity Management, and multi factor authentication. Learners gain practical experience with Microsoft Defender for Endpoint, Office 365, Cloud Apps, and Sentinel, along with Microsoft Purview for information protection and data loss prevention. The hands-on simulations are invaluable for mastering the configurations and policies necessary to secure Microsoft 365 environments effectively.
    Identity and Access Management Engineer
    An Identity and Access Management Engineer is responsible for securing user identities and controlling access to organizational resources. This course is exceptionally relevant for an Identity and Access Management Engineer, as it dives deep into user identity administration, including creating and managing identities, working with guest users, and understanding PowerShell for Entra ID formerly Azure AD. It provides detailed coverage of critical areas such as password lockout management, administrative units, role based access control, Privileged Identity Management, Multi Factor Authentication, Self Service Password Reset, and Entra ID Identity Protection. The practical, instructor led hands-on and simulations ensure learners can implement robust identity security solutions.
    Data Loss Prevention Specialist
    A Data Loss Prevention Specialist focuses on protecting sensitive information from leaving an organization's control without authorization. This course is exceptionally valuable for an aspiring Data Loss Prevention Specialist. It dedicates significant attention to managing Data Loss Prevention in Microsoft Purview, including understanding sensitivity labels, implementing sensitive info types, and configuring sensitivity label policies. Learners gain hands-on experience in implementing Data Loss Prevention policies in Microsoft 365 and critically, reviewing DLP alerts, events, and reports. This detailed practical instruction ensures professionals can effectively design, deploy, and manage robust data protection strategies using Microsoft Purview.
    Compliance Analyst
    A Compliance Analyst ensures an organization adheres to relevant laws, regulations, and internal policies, often focusing on data governance and risk management. This course provides comprehensive training beneficial for a Compliance Analyst, especially through its extensive coverage of Microsoft Purview. Learners explore concepts of Microsoft Purview for compliance management, implementing retention policies, and configuring sensitivity labels. Crucially, the course details Microsoft Purview audit logs and reports, eDiscovery standard versus premium, and Microsoft Purview Communication Compliance. It also covers implementing and managing Microsoft Purview Insider Risk Management, equipping professionals to build and maintain a strong compliance posture.
    Endpoint Security Specialist
    An Endpoint Security Specialist is focused on protecting end user devices like workstations, laptops, and mobile devices from cyber threats. This course is highly beneficial for an Endpoint Security Specialist, providing specific training in securing endpoints by using Microsoft Defender for Endpoint. Learners plan a Microsoft Defender for Endpoint solution, configure it, and manage and monitor it. Additionally, the course covers understanding and implementing Device Compliance Policies using Endpoint Manager Intune. This practical knowledge is essential for establishing and maintaining robust endpoint protection across an organization's device landscape, which is a core responsibility of this specialized security role.
    Cloud Security Engineer
    A Cloud Security Engineer designs, implements, and manages security measures for cloud-based systems and applications. This course offers substantial preparation for a Cloud Security Engineer role by providing extensive knowledge in securing Microsoft 365 and Azure Services. It covers foundational concepts like Zero Trust, Conditional Access Policies, and Device Compliance Policies using Endpoint Manager Intune. Learners gain experience with advanced threat protection using Microsoft Defender for Endpoint, Defender for Office 365, Defender for Cloud Apps, and Defender for Identity. Furthermore, the course teaches how to monitor Microsoft 365 security with Microsoft Sentinel, equipping professionals to safeguard cloud infrastructures against evolving threats.
    Security Operations Center Analyst
    A Security Operations Center Analyst is at the forefront of cybersecurity defense, continuously monitoring security systems, detecting threats, and initiating incident response. This course offers highly practical skills for a Security Operations Center Analyst, emphasizing monitoring Microsoft 365 Security with Microsoft Sentinel. Learners gain experience connecting to and using Azure Sentinel, which is crucial for real time threat detection. The curriculum also covers reviewing Data Loss Prevention alerts, events, and reports, along with analyzing threats identified in Microsoft Defender for Office 365 and reviewing Microsoft Defender for Cloud App activity logs, providing the necessary knowledge to identify and address security incidents effectively.
    Information Security Analyst
    An Information Security Analyst monitors an organization's networks and systems for security breaches, investigates incidents, and implements security solutions. This course provides a solid foundation for an Information Security Analyst by introducing concepts of the Zero Trust Model and Microsoft Defender, alongside practical experience with Microsoft Purview for compliance management. Learners understand threat concepts and dashboards, learn to review alerts and reports from Data Loss Prevention, Microsoft Defender for Office 365, and Microsoft Defender for Cloud Apps. The training in monitoring Microsoft 365 Security with Microsoft Sentinel is particularly useful, helping individuals develop the skills to detect, analyze, and respond to security incidents.
    Cloud Administrator
    A Cloud Administrator manages and maintains an organization's cloud infrastructure, ensuring its operational efficiency and security. This course is highly beneficial for a Cloud Administrator, as it focuses on the specifics of the Microsoft 365 and Azure environment. Learners acquire skills in creating and managing user identities, working with groups, and understanding foundational concepts of Microsoft PowerShell Administration, which are vital for cloud resource management. The course provides hands-on experience in configuring various services, including password lockout settings, Multi Factor Authentication, and Self Service Password Reset. This comprehensive administrative knowledge is crucial for effectively overseeing Microsoft cloud services.
    Information Technology Auditor
    An Information Technology Auditor evaluates an organization's IT infrastructure, policies, and operations to ensure security, compliance, and efficiency. This course, with its detailed focus on auditing and compliance within Microsoft 365, is highly relevant for an Information Technology Auditor. It thoroughly covers Standard and Premium auditing concepts, planning and configuring auditing, and investigating unified audit logs. Learners gain insight into using compliance manager, looking at compliance reports, and implementing audit retention policies. The sections on eDiscovery are also critical for auditing. An advanced degree in a related field may be typically required for this role.
    Cybersecurity Specialist
    A Cybersecurity Specialist identifies, assesses, and mitigates security risks to protect an organization's data and systems. This course is useful for a Cybersecurity Specialist as it delves into securing Microsoft 365 and Azure services through various technologies. It introduces the Zero Trust Model and provides in-depth knowledge of Microsoft Defender for Endpoint, Office 365, Cloud Apps, and Defender for Identity. Learners explore Entra ID Identity Protection, Conditional Access Policies, and the use of Microsoft Sentinel for monitoring. This comprehensive exposure to Microsoft's security stack helps build a strong understanding of threat landscapes and defense mechanisms within a widely adopted cloud environment.
    Systems Engineer
    A Systems Engineer designs, implements, and maintains complex IT infrastructures, often encompassing server, network, and cloud components. This course is useful for a Systems Engineer, as it helps build a foundation in key areas relevant to modern IT environments. The course provides a foundation of Active Directory Domains, Remote Access, DMZs, and Virtualization, alongside comprehensive training in Microsoft Cloud Services. Learners acquire skills in user identity administration, group management, and understanding advanced PowerShell Administration concepts for managing Microsoft 365 Cloud Resources. These foundational and practical skills are essential for managing contemporary enterprise systems where Microsoft technologies play a central role.
    Governance, Risk, and Compliance Manager
    A Governance Risk and Compliance Manager develops and oversees an organization's GRC programs, ensuring adherence to regulations, managing risks, and implementing strong governance. This course is useful for a Governance Risk and Compliance Manager, as it provides a comprehensive tactical understanding of how Microsoft 365 tools support GRC objectives. Learners gain detailed insight into Microsoft Purview for compliance management, including information protection, data lifecycle management, Data Loss Prevention, audit logs, eDiscovery, and Communication Compliance. The module on Insider Risk Management is particularly relevant. This knowledge of practical implementations helps inform strategic decisions in GRC. An advanced degree may be typically required for this role.
    Security Architect
    A Security Architect designs and builds robust security systems and strategies, often defining the overall security posture and frameworks. This course is useful for a Security Architect, as it provides a deep understanding of the practical implementation and capabilities of Microsoft 365 security features. Learners gain insight into the Zero Trust Model, Conditional Access Policies, Role Based Access Control, and Privileged Identity Management, which are critical for architectural design. This detailed knowledge of specific Microsoft security products and compliance tools, such as Microsoft Defender and Microsoft Purview, helps build the foundation for designing secure and compliant cloud solutions. An advanced degree may be typically required for this role.
    Technical Support Engineer
    A Technical Support Engineer provides assistance to users and other IT professionals, troubleshooting and resolving technical issues across various systems. This course may be helpful for a Technical Support Engineer as it covers many common areas that generate support requests. Learners gain practical knowledge of user identity administration, working with guest users, understanding password lockout management, and configuring Multi Factor Authentication and Self Service Password Reset. The hands-on exposure to these features means a Technical Support Engineer would be better equipped to diagnose and resolve user access, identity, and security related issues within a Microsoft 365 environment, potentially reducing problem resolution times.

    Reading list

    We haven't picked any books for this reading list yet.
    Provides a practical guide to threat modeling, which critical aspect of securing any system, including Microsoft 365.
    While not specific to Microsoft 365, this book provides valuable insights into the human element of information security, which is essential for understanding and mitigating security risks.
    This comprehensive guide covers all aspects of Microsoft 365 security, including threat protection, identity and access management, and data governance.
    Provides a practical guide to effective cybersecurity, covering topics such as risk management, incident response, and business continuity.
    Provides a comprehensive overview of computer security, including topics such as cryptography, network security, and system security.
    Provides a comprehensive overview of cloud security, including topics such as identity and access management, data protection, and threat protection.
    While not specific to Microsoft 365, this book provides practical guidance on secure coding in Microsoft Azure, which can be applied to Microsoft 365 development.
    This comprehensive guide covers all aspects of securing Google Cloud Platform, including identity and access management using Entra ID, as well as network security, data protection, and threat detection.
    Covers the fundamentals of identity and access management in cloud environments, including concepts, best practices, and implementation using Entra ID.
    This classic book on security engineering provides a deep dive into the principles of secure system design, including identity and access management, which are applicable to Entra ID.
    Provides an overview of how Entra ID can be used in the cloud. It covers topics such as Azure Active Directory integration, cloud security, and identity governance.
    Provides a comprehensive overview of identity and access management (IAM) for the Internet of Things (IoT), covering topics such as IAM architecture, identity federation, and access control. It good choice for those who want to learn more about IAM in the context of the IoT.
    Provides a comprehensive overview of identity and access management (IAM) for web applications, covering topics such as IAM architecture, identity federation, and access control. It good choice for those who want to learn more about IAM in the context of web applications.
    Provides a comprehensive overview of identity management, covering topics such as identity lifecycle management, authentication and authorization, and access control. It good choice for those who want to learn more about the fundamentals of identity management.
    Offers a unique perspective on IAM by applying systems engineering principles. It breaks down the complexities of IAM through established engineering concepts, making it valuable for understanding the underlying structure and processes.
    Provides a comprehensive overview of identity and access management (IAM) in the cloud, covering topics such as IAM architecture, identity federation, and access control. It good choice for those who want to learn more about IAM in the context of cloud computing.

    Share

    Help others find this course page by sharing it with your friends and followers:

    Similar courses

    Similar courses are unavailable at this time. Please try again later.
    Our mission

    OpenCourser helps millions of learners each year. People visit us to learn workspace skills, ace their exams, and nurture their curiosity.

    Our extensive catalog contains over 50,000 courses and twice as many books. Browse by search, by topic, or even by career interests. We'll match you to the right resources quickly.

    Find this site helpful? Tell a friend about us.

    Affiliate disclosure

    We're supported by our community of learners. When you purchase or subscribe to courses and programs or purchase books, we may earn a commission from our partners.

    Your purchases help us maintain our catalog and keep our servers humming without ads.

    Thank you for supporting OpenCourser.

    © 2016 - 2025 OpenCourser