We may earn an affiliate commission when you visit our partners.
Course image
John Christopher

Have access to the following:

  • Training from an instructor of over 20 years who has trained thousands of people and also a Microsoft Certified Trainer

  • Lecture that explains the concepts in an easy to learn method for someone that is just starting out with this material

  • Instructor led hands on and simulations to practice that can be followed even if you have little to no experience

Enroll now

What's inside

Learning objectives

  • Learn the concepts and perform hands on activities needed to pass the sc-900 exam
  • Gain a tremendous amount of knowledge involving securing microsoft 365 / azure services
  • Get loads of hands on experience with securing microsoft 365 / azure services
  • Utilize hands on simulations that can be access anytime, anywhere!

Syllabus

Introduction
Welcome to the course!
Understanding the Microsoft 365 and Azure Environment
Having a Solid Foundation of Active Directory Domains
Read more

Save this course

Create your own learning path. Save this course to your list so you can find it easily later.
Save

Activities

Coming soon We're preparing activities for SC-900: Microsoft Security, Compliance, & Identity with SIMS. These are activities you can do either before, during, or after a course.

Career center

Learners who complete SC-900: Microsoft Security, Compliance, & Identity with SIMS will develop knowledge and skills that may be useful to these careers:
Cloud Security Analyst
A Cloud Security Analyst plays a crucial role in safeguarding an organization's cloud infrastructure and data, often specializing in platforms like Microsoft Azure and Microsoft 365. This involves monitoring security threats, responding to incidents, and implementing security controls. Learners in this course gain significant knowledge in securing Microsoft 365 and Azure Services, which directly prepares them for this role. The course covers essential concepts such as Azure DDoS Protection, Azure Firewall, Network Security Groups, and utilizing Microsoft Defender for Cloud. It also provides hands-on experience with Microsoft Sentinel for threat detection and mitigation, alongside Microsoft 365 Defender services like Defender for Endpoint and Defender for Cloud Apps. These practical skills, reinforced by simulations, are vital for a Cloud Security Analyst to design, implement, and maintain robust cloud security postures. This course helps build a foundation in understanding the shared responsibility model and implementing Zero-Trust principles fundamental to cloud security.
Identity and Access Management Specialist
An Identity and Access Management Specialist is responsible for managing and securing digital identities and controlling access to resources within an organization. This critical role ensures that only authorized users can access specific systems and data. This course is exceptionally relevant, as it provides a deep dive into defining identity concepts and functions of Microsoft Entra ID, including creating user identities, managing hybrid identity, and implementing authentication methods like multi-factor authentication. Learners also gain practical experience with access management capabilities such as creating conditional access policies and implementing Microsoft Entra roles with role-based access control. The course further covers advanced identity protection and governance capabilities like access reviews and Privileged Identity Management, directly equipping future Identity and Access Management Specialists with the skills to secure identity as the primary security perimeter.
Security Operations Center Analyst
A Security Operations Center Analyst, or SOC Analyst, is at the forefront of cybersecurity defense, continuously monitoring for security incidents, analyzing threats, and responding to alerts to protect an organization's assets. This course directly contributes to developing the foundational competencies required for a Security Operations Center Analyst. It educates learners on defining the concepts of security information and event management and security orchestration, automation, and response through the lens of Microsoft Sentinel. The curriculum provides specific instruction on describing threat detection and mitigation capabilities in Microsoft Sentinel and outlines various Microsoft 365 Defender services such as Defender for Office 365 and Defender for Endpoint. With instructor-led hands-on and simulations, learners practice identifying and responding to threats using tools crucial for daily operation in a SOC environment.
Azure Security Engineer
An Azure Security Engineer is tasked with implementing, managing, and monitoring security controls, privacy, and compliance within the Microsoft Azure environment. This involves designing secure Azure solutions and ensuring that cloud resources are protected against evolving threats. This course is tailor-made for aspiring Azure Security Engineers, offering extensive knowledge and practical experience with core infrastructure security services in Azure. It details Azure distributed denial-of-service Protection, Azure Firewall, Web Application Firewall, network segmentation with virtual networks, and Azure Network Security Groups. Furthermore, the course describes security management capabilities of Azure, including Microsoft Defender for Cloud and security baselines for Azure. The hands-on simulations allow learners to create an Azure Firewall and configure Network Security Groups, providing the tangible experience essential for configuring and maintaining security in Azure.
Microsoft 365 Security Administrator
A Microsoft 365 Security Administrator manages and maintains the security posture of an organization's Microsoft 365 environment, implementing policies, monitoring security services, and responding to incidents specifically within this ecosystem. This course provides comprehensive knowledge directly applicable to the responsibilities of a Microsoft 365 Security Administrator. It covers describing Microsoft 365 Defender services, including Defender for Office 365, Defender for Endpoint, Defender for Cloud Apps, and Defender for Identity, along with using the Microsoft 365 Defender portal. Learners gain practical skills in implementing Microsoft Entra roles using Microsoft 365 and leveraging multi-factor authentication. The course also discusses compliance capabilities through the Microsoft Purview compliance portal, which is integral to securing data within Microsoft 365. This deep dive into Microsoft-specific security tools and practices is invaluable for securing the modern workplace.
Governance Risk and Compliance Administrator
A Governance Risk and Compliance Administrator ensures an organization adheres to legal, regulatory, and internal policy requirements while managing potential risks and maintaining a strong security posture. This course offers comprehensive insights into the compliance aspects of Microsoft's ecosystem, making it highly beneficial for a Governance Risk and Compliance Administrator. It delves into describing compliance concepts, the Microsoft Purview compliance portal, and Compliance Manager, including the use and benefits of compliance score. Learners also explore information protection and data lifecycle management, focusing on data classification, sensitivity labels, Data Loss Prevention, Records Management, and Retention Policies. The course's practical simulations, like creating a static deletion retention policy, provide tangible experience vital for implementing and maintaining compliance frameworks.
Data Loss Prevention Specialist
A Data Loss Prevention Specialist focuses on preventing sensitive data from leaving an organization's control, whether accidentally or maliciously. This role involves configuring and managing Data Loss Prevention solutions, classifying data, and implementing policies to protect information. This course is particularly relevant for a Data Loss Prevention Specialist, as it provides detailed instruction on information protection and data lifecycle management within Microsoft Purview. Learners are taught to describe data classification capabilities, sensitivity labels, and the core concepts and benefits of Data Loss Prevention. The course includes hands-on basics of using sensitivity labels and Data Loss Prevention, along with understanding Retention Policies and Records Management. The practical exposure to Purview's capabilities is crucial for anyone intending to specialize in safeguarding sensitive organizational data and ensuring its appropriate handling.
Information Security Analyst
An Information Security Analyst is a broad role focused on protecting an organization's information systems and data from cyber threats. This involves identifying vulnerabilities, implementing security measures, and responding to security incidents. This course helps build a foundation for an Information Security Analyst by covering fundamental security concepts like the shared responsibility model, defense in depth, and the Zero-Trust model. It also introduces various security technologies such as encryption and hashing. The curriculum provides extensive knowledge in securing Microsoft 365 and Azure Services, including hands-on experience with Microsoft Defender for Cloud and Microsoft Sentinel. Understanding identity concepts, multi-factor authentication, and role-based access control from the course are all critical elements an Information Security Analyst applies daily to maintain robust security.
Security Administrator
A Security Administrator implements and manages security systems, policies, and procedures to protect an organization's information technology assets and data. This role is broad, encompassing various aspects of cybersecurity operations, from identity management to infrastructure protection. This course provides comprehensive knowledge and hands-on skills highly relevant for a Security Administrator. It covers defining authentication and authorization, implementing multi-factor authentication, and managing password protection. Learners gain experience with Microsoft Entra roles, role-based access control, and Privileged Identity Management. Furthermore, the course details core infrastructure security services like Azure Firewall and Network Security Groups, alongside security management capabilities using Microsoft Defender for Cloud. The practical experience with these Microsoft security tools makes this course particularly appealing to those seeking to manage security within a Microsoft-centric environment.
Privacy Compliance Specialist
A Privacy Compliance Specialist ensures an organization's practices align with privacy laws and regulations, managing data privacy risks and upholding ethical data handling. This role often involves developing policies and advising on data protection strategies. This course provides an excellent foundation for a Privacy Compliance Specialist, as it covers Microsoft’s Service Trust Portal and privacy principles in detail. Learners explore the offerings of the Service Trust portal and gain insight into Microsoft’s privacy principles, which are crucial for understanding a major cloud provider's commitment to data privacy. Furthermore, the course delves into the Microsoft Purview compliance portal, describing compliance manager, data classification capabilities, and the use of sensitivity labels and Data Loss Prevention, all of which are directly applicable to maintaining and demonstrating privacy compliance within modern cloud environments.
Network Security Administrator
A Network Security Administrator is responsible for securing an organization's network infrastructure, implementing firewall rules, managing network access, and protecting against network-based attacks. This course provides valuable knowledge that may be helpful for a Network Security Administrator, particularly concerning cloud network security within Azure. It describes core infrastructure security services in Azure, including Azure distributed denial-of-service Protection, Azure Firewall, Web Application Firewall, and network segmentation with Azure virtual networks. Learners also gain practical experience with Azure Network Security Groups, with simulations to create an Network Security Group and add inbound rules. Understanding these concepts and gaining hands-on practice in securing cloud networks is relevant for a Network Security Administrator adapting to hybrid or cloud-native network environments.
Security Consultant
A Security Consultant advises organizations on cybersecurity strategies, risk assessment, and the implementation of security solutions. This role often involves analyzing existing security postures, recommending improvements, and guiding clients through complex security challenges. This course may be useful for an aspiring Security Consultant by equipping them with foundational knowledge in Microsoft Security, Compliance, and Identity. It provides a comprehensive understanding of concepts like the shared responsibility model, defense in depth, and Zero-Trust, which are crucial for strategic consulting. Learners will gain insight into various Microsoft security services, including Microsoft Entra ID for identity management, Azure security services like Firewalls, and compliance capabilities through Microsoft Purview. This breadth of knowledge, focused on a leading cloud provider, allows a Security Consultant to speak confidently and accurately about modern security architectures and compliance requirements.
Cloud Platform Engineer
A Cloud Platform Engineer designs, builds, and maintains the underlying infrastructure and services that support applications in cloud environments, like Microsoft Azure. While their primary focus is on platform reliability and scalability, securing these platforms is an integral part of their responsibilities. This course may be helpful for a Cloud Platform Engineer by providing essential knowledge in securing Microsoft 365 and Azure Services. It covers critical areas such as understanding the Microsoft 365 and Azure Environment, having a solid foundation of Active Directory Domains, and describing core infrastructure security services in Azure, including Firewalls, Network Security Groups, and Azure Key Vault. The hands-on activities, such as creating a virtual machine in Azure and configuring security components, are directly relevant for building secure cloud platforms from the ground up, ensuring security is integrated throughout the development lifecycle. This course helps integrate security best practices into their infrastructure design.
IT Systems Administrator
An IT Systems Administrator manages and maintains an organization's computer systems and servers, ensuring they run efficiently, securely, and reliably. This broad role often involves managing user accounts, network resources, and system security. This course may be helpful for an IT Systems Administrator by providing a solid foundation in managing identity and security within Microsoft environments. It covers essential topics such as understanding the Microsoft 365 and Azure Environment, having a solid foundation of Active Directory Domains, and describing functions and identity types of Microsoft Entra ID. Managing user identities, implementing multi-factor authentication, and understanding role-based access control are core skills directly addressed. Furthermore, the course provides insight into security concepts like defense in depth and using tools such as Microsoft Defender for Cloud, which are increasingly relevant for administrators overseeing hybrid or cloud-based systems.
Technical Support Engineer
A Technical Support Engineer provides assistance to users encountering technical issues with hardware, software, or network systems. This role is often a first point of contact for troubleshooting and resolving problems, requiring a solid understanding of the underlying technologies. This course may be useful for a Technical Support Engineer, particularly those supporting Microsoft products and cloud services. It provides fundamental knowledge of the Microsoft 365 and Azure Environment, Active Directory Domains, and Microsoft Entra ID. Key areas like defining authentication, multi-factor authentication, and access management capabilities of Microsoft Entra ID are crucial for troubleshooting user login and access issues. Understanding basic security concepts, such as password protection and the shared responsibility model, may also help in diagnosing and resolving common user-related security concerns within a Microsoft ecosystem.

Reading list

We haven't picked any books for this reading list yet.
Provides a practical guide to threat modeling, which critical aspect of securing any system, including Microsoft 365.
While not specific to Microsoft 365, this book provides valuable insights into the human element of information security, which is essential for understanding and mitigating security risks.
Provides a comprehensive overview of computer security, including topics such as cryptography, network security, and system security.
This comprehensive guide covers all aspects of Microsoft 365 security, including threat protection, identity and access management, and data governance.
Provides a practical guide to effective cybersecurity, covering topics such as risk management, incident response, and business continuity.
Provides a comprehensive overview of cloud security, including topics such as identity and access management, data protection, and threat protection.
While not specific to Microsoft 365, this book provides practical guidance on secure coding in Microsoft Azure, which can be applied to Microsoft 365 development.
Provides guidance on conducting security assessments and penetration tests on Azure resources.
Offers a collection of practical recipes for implementing common Azure security tasks.
Focuses on the security features and capabilities of Microsoft Azure, including access control, encryption, and monitoring.
Provides a comprehensive overview of identity and access management (IAM) for web applications, covering topics such as IAM architecture, identity federation, and access control. It good choice for those who want to learn more about IAM in the context of web applications.
Provides a comprehensive overview of identity management, covering topics such as identity lifecycle management, authentication and authorization, and access control. It good choice for those who want to learn more about the fundamentals of identity management.
Offers a unique perspective on IAM by applying systems engineering principles. It breaks down the complexities of IAM through established engineering concepts, making it valuable for understanding the underlying structure and processes.
Provides a comprehensive overview of identity and access management (IAM) in the cloud, covering topics such as IAM architecture, identity federation, and access control. It good choice for those who want to learn more about IAM in the context of cloud computing.

Share

Help others find this course page by sharing it with your friends and followers:

Similar courses

Similar courses are unavailable at this time. Please try again later.
Our mission

OpenCourser helps millions of learners each year. People visit us to learn workspace skills, ace their exams, and nurture their curiosity.

Our extensive catalog contains over 50,000 courses and twice as many books. Browse by search, by topic, or even by career interests. We'll match you to the right resources quickly.

Find this site helpful? Tell a friend about us.

Affiliate disclosure

We're supported by our community of learners. When you purchase or subscribe to courses and programs or purchase books, we may earn a commission from our partners.

Your purchases help us maintain our catalog and keep our servers humming without ads.

Thank you for supporting OpenCourser.

© 2016 - 2025 OpenCourser