MS-500 part 1 - Implement and manage identity and access
Offered By: Microsoft via Microsoft Learn
Course Description
Overview
- Module 1: Create, configure, and manage identities
- Create, configure, and manage users
- Create, configure, and manage groups
- Manage licenses
- Module 2: Explore identity synchronization
- Describe the Microsoft 365 authentication and provisioning options
- Explain directory synchronization
- Explain how Azure AD Connect enables coexistence between your on-premises Active Directory environment and Microsoft 365
- Module 3: Implement and manage hybrid identity
- Plan, design, and implement Azure Active Directory Connect (AADC)
- Manage Azure Active Directory Connect (AADC)
- Manage password hash synchronization (PHS)
- Manage pass-through authentication (PTA)
- Manage seamless single sign-on (Seamless SSO)
- Manage federation excluding manual ADFS deployments
- Troubleshoot synchronization errors
- Implement and manage Azure Active Directory Connect Health
- Module 4: Implement and manage external identities
- Manage external collaboration settings in Azure Active Directory
- Invite external users (individually or in bulk)
- Manage external user accounts in Azure Active Directory
- Configure identity providers (social and SAML/WS-fed)
- Module 5: Explore password management in Microsoft 365
- Manage user passwords
- Describe pass-through authentication
- Enable multifactor authentication
- Describe self-service password management
- Implement Azure AD Smart Lockout
- Create and perform an access review
- Module 6: Manage user authentication
- Administer authentication methods (FIDO2 / Passwordless)
- Implement an authentication solution based on Windows Hello for Business
- Configure and deploy self-service password reset
- Deploy and manage password protection
- Implement and manage tenant restrictions
- Module 7: Plan, implement, and administer Conditional Access
- Plan and implement security defaults.
- Plan Conditional Access policies.
- Implement Conditional Access policy controls and assignments (targeting, applications, and conditions).
- Test and troubleshoot Conditional Access policies.
- Implement application controls.
- Implement session management.
- Configure smart lockout thresholds.
- Module 8: Plan and implement privileged access
- Define a privileged access strategy for administrative users (resources, roles, approvals, and thresholds)
- Configure Privileged Identity Management for Azure AD roles
- Configure Privileged Identity Management for Azure resources
- Assign roles
- Manage PIM requests
- Analyze PIM audit history and reports
- Create and manage emergency access accounts
- Module 9: Plan and implement entitlement management
- Define catalogs.
- Define access packages.
- Plan, implement and manage entitlements.
- Implement and manage terms of use.
- Manage the lifecycle of external users in Azure AD Identity Governance settings.
- Module 10: Manage Azure AD Identity Protection
- Implement and manage a user risk policy
- Implement and manage sign-in risk policies
- Implement and manage MFA registration policy
- Monitor, investigate, and remediate elevated risky users
At the end of this module, you will be able to:
By the end of this module, you'll be able to:
By the end of this module you will be able to:
By the end of this module, you will be able to:
By the end of this module, you will be able to:
By the end of this module, you will be able to:
By the end of this module, you will be able to:
By the end of this module, you will be able to:
By the end of this module, you will be able to:
By the end of this module you will be able to:
Syllabus
- Module 1: Create, configure, and manage identities
- Introduction
- Create, configure, and manage users
- Exercise - assign licenses to users
- Exercise - restore or remove deleted users
- Create, configure, and manage groups
- Exercise - add groups in Azure Active Directory
- Manage licenses
- Exercise - change group license assignments
- Exercise - change user license assignments
- Knowledge check
- Summary and resources
- Module 2: Explore identity synchronization
- Introduction
- Examine authentication options in Microsoft 365
- Examine provisioning options in Microsoft 365
- Explore directory synchronization
- Explore Azure AD Connect
- Knowledge check
- Summary
- Module 3: Implement and manage hybrid identity
- Introduction
- Plan, design, and implement Azure Active Directory Connect
- Implement manage password hash synchronization (PHS)
- Implement manage pass-through authentication (PTA)
- Demo - Manage pass-through authentication and seamless single sign-on
- Implement and manage federation
- Trouble-shoot synchronization errors
- Implement Azure Active Directory Connect Health
- Manage Azure Active Directory Connect Health
- Knowledge check
- Summary and resources
- Module 4: Implement and manage external identities
- Introduction
- Manage external collaboration
- Exercise - configure external collaboration
- Invite external users - individually and in bulk
- Exercise - add guest users to directory
- Exercise - invite guest users bulk
- Demo - manage guest users in Azure Active Directory
- Manage external user accounts in Azure Active Directory
- Exercise - explore dynamic groups
- Configure identity providers
- Knowledge check
- Summary and resources
- Module 5: Explore password management in Microsoft 365
- Introduction
- Manage user passwords
- Explore pass-through authentication
- Enable multifactor authentication
- Explore self-service password management
- Implement Azure AD Smart Lockout
- Create and run an access review
- Knowledge check
- Summary
- Module 6: Manage user authentication
- Introduction
- Administer FIDO2 and passwordless authentication methods
- Implement an authentication solution based on Windows Hello for Business
- Exercise configure and deploy self-service password reset
- Deploy and manage password protection
- Implement and manage tenant restrictions
- Knowledge check
- Summary and resources
- Module 7: Plan, implement, and administer Conditional Access
- Introduction
- Plan security defaults
- Exercise - Work with security defaults
- Plan Conditional Access policies
- Implement Conditional Access policy controls and assignments
- Exercise - Implement Conditional Access policies roles and assignments
- Test and troubleshoot Conditional Access policies
- Implement application controls
- Implement session management
- Exercise - Configure authentication session controls
- Configure smart lockout thresholds
- Exercise - Manage Azure Active Directory smart lockout values
- Knowledge check
- Summary and resources
- Module 8: Plan and implement privileged access
- Introduction
- Define a privileged access strategy for administrative users
- Configure Privileged Identity Management for Azure resources
- Exercise configure Privileged Identity Management for Azure Active Directory roles
- Exercise assign Azure Active Directory roles in Privileged Identity Management
- Exercise assign Azure resource roles in Privileged Identity Management
- Analyze Privileged Identity Management audit history and reports
- Create and manage emergency access accounts
- Knowledge check
- Summary and resources
- Module 9: Plan and implement entitlement management
- Introduction
- Define access packages
- Exercise create and manage a resource catalog with Azure AD entitlement
- Configure entitlement management
- Exercise add terms of use acceptance report
- Exercise manage the lifecycle of external users with Azure AD identity governance
- Knowledge check
- Summary and resources
- Module 10: Manage Azure AD Identity Protection
- Introduction
- Review identity protection basics
- Implement and manage user risk policy
- Exercise enable sign-in risk policy
- Exercise configure Azure Active Directory multi-factor authentication registration policy
- Monitor, investigate, and remediate elevated risky users
- Knowledge check
- Summary and resources
Tags
Related Courses
Build a film club web app on Google AppEngineCoursera Project Network via Coursera Learn Authentication with Ruby on Rails
Codecademy User Authentication & Authorization in Express
Codecademy Node.js Certification Training
Edureka Windows Support Essentials: Configuration
Microsoft via edX