SC-300: Microsoft Identity and Access Administrator

via Udemy

Go to Course: https://www.udemy.com/course/sc-300-microsoft-identity-and-access-administrator-gt/

Overview

This SC-300 course by Christopher Nett is a meticulously organized Udemy course designed for IT professionals aiming to pass the SC-300: Microsoft Identity and Access Administrator exam. This course systematically guides you from the basics to advanced concepts of Microsoft Identity.The course is always aligned with Microsoft's latest study guide and exam objectives:Skills at a glanceImplement and manage user identities (20-25%)Implement authentication and access management (25-30%)Plan and implement workload identities (20-25%)Plan and automate identity governance (25-30%)Implement and manage user identities (20-25%)Configure and manage a Microsoft Entra tenantConfigure and manage built-in and custom Microsoft Entra rolesRecommend when to use administrative unitsConfigure and manage administrative unitsEvaluate effective permissions for Microsoft Entra rolesConfigure and manage domains in Microsoft Entra ID and Microsoft 365Configure Company branding settingsConfigure tenant properties, user settings, group settings, and device settingsCreate, configure, and manage Microsoft Entra identitiesCreate, configure, and manage usersCreate, configure, and manage groupsManage custom security attributesAutomate bulk operations by using the Microsoft Entra admin center and PowerShellManage device join and device registration in Microsoft Entra IDAssign, modify, and report on licensesImplement and manage identities for external users and tenantsManage External collaboration settings in Microsoft Entra IDInvite external users, individually or in bulkManage external user accounts in Microsoft Entra IDImplement Cross-tenant access settingsImplement and manage cross-tenant synchronizationConfigure external identity providers, including protocols such as SAML and WS-FedImplement and manage hybrid identityImplement and manage Microsoft Entra Connect SyncImplement and manage Microsoft Entra Cloud SyncImplement and manage password hash synchronizationImplement and manage pass-through authenticationImplement and manage seamless single sign-on (SSO)Migrate from AD FS to other authentication and authorization mechanismsImplement and manage Microsoft Entra Connect HealthImplement authentication and access management (25-30%)Plan, implement, and manage Microsoft Entra user authenticationPlan for authenticationImplement and manage authentication methods, including certificate-based, temporary access pass, OAUTH tokens, Microsoft Authenticator, and FIDO2Implement and manage tenant-wide Multi-factor Authentication (MFA) settingsConfigure and deploy self-service password reset (SSPR)Implement and manage Windows Hello for BusinessDisable accounts and revoke user sessionsImplement and manage Microsoft Entra password protectionEnable Microsoft Entra Kerberos authentication for hybrid identitiesPlan, implement, and manage Microsoft Entra Conditional AccessPlan Conditional Access policiesImplement Conditional Access policy assignmentsImplement Conditional Access policy controlsTest and troubleshoot Conditional Access policiesImplement session managementImplement device-enforced restrictionsImplement continuous access evaluationConfigure authentication contextImplement protected actionsCreate a Conditional Access policy from a templateManage risk by using Microsoft Entra ID ProtectionImplement and manage user risk by using Identity Protection or Conditional Access policiesImplement and manage sign-in risk by using Identity Protection or Conditional Access policiesImplement and manage Multifactor authentication registration policiesMonitor, investigate and remediate risky users and risky sign-insMonitor, investigate, and remediate risky workload identitiesImplement access management for Azure resources by using Azure rolesCreate custom Azure roles, including both control plane and data plane permissionsAssign built-in and custom Azure rolesEvaluate effective permissions for a set of Azure rolesAssign Azure roles to enable Microsoft Entra ID login to Azure virtual machinesConfigure Azure Key Vault role-based access control (RBAC) and access policiesImplement Global Secure AccessDeploy Global Secure Access clientsDeploy Private AccessDeploy Internet AccessDeploy Internet Access for Microsoft 365Plan and implement workload identities (20-25%)Plan and implement identities for applications and Azure workloadsSelect appropriate identities for applications and Azure workloads, including managed identities, service principals, user accounts, and managed service accountsCreate managed identitiesAssign a managed identity to an Azure resourceUse a managed identity assigned to an Azure resource to access other Azure resourcesPlan, implement, and monitor the integration of enterprise applicationsPlan and implement settings for enterprise applications, including application-level and tenant-level settingsAssign appropriate Microsoft Entra roles to users to manage enterprise applicationsDesign and implement integration for on-premises apps by using Microsoft Entra Application ProxyDesign and implement integration for software as a service (SaaS) appsAssign, classify, and manage users, groups, and app roles for enterprise applicationsConfigure and manage user and admin consentCreate and manage application collectionsPlan and implement app registrationsPlan for app registrationsCreate app registrationsConfigure app authenticationConfigure API permissionsCreate app rolesManage and monitor app access by using Microsoft Defender for Cloud AppsConfigure and analyze cloud discovery results by using Defender for Cloud AppsConfigure connected appsImplement application-enforced restrictionsConfigure Conditional Access app controlCreate access and session policies in Defender for Cloud AppsImplement and manage policies for OAuth appsManage the Cloud app catalogPlan and automate identity governance (25-30%)Plan and implement entitlement management in Microsoft EntraPlan entitlementsCreate and configure catalogsCreate and configure access packagesManage access requestsImplement and manage terms of use (ToU)Manage the lifecycle of external usersConfigure and manage connected organizationsPlan, implement, and manage access reviews in Microsoft EntraPlan for access reviewsCreate and configure access reviewsMonitor access review activityManually respond to access review activityPlan and implement privileged accessPlan and manage Microsoft Entra roles in Microsoft Entra Privileged Identity Management (PIM), including settings and assignmentsPlan and manage Azure resources in PIM, including settings and assignmentsPlan and configure groups managed by PIMManage the PIM request and approval processAnalyze PIM audit history and reportsCreate and manage break-glass accountsMonitor identity activity by using logs, workbooks, and reportsReview and analyze sign-in, audit, and provisioning logs by using the Microsoft Entra admin centerConfigure diagnostic settings, including configuring destinations such as Log Analytics workspaces, storage accounts, and event hubsMonitor Microsoft Entra ID by using KQL queries in Log AnalyticsAnalyze Microsoft Entra ID by using workbooks and reportingMonitor and improve the security posture by using Identity Secure ScorePlan and implement Microsoft Entra Permissions ManagementOnboard Azure subscriptions to Permissions ManagementEvaluate and remediate risks relating to Azure identities, resources, and tasksEvaluate and remediate risks relating to Azure highly privileged rolesEvaluate and remediate risks relating to Permissions Creep Index (PCI) in AzureConfigure activity alerts and triggers for Azure subscriptions

Skills

Reviews