Search icon CANCEL
Subscription
0
Cart icon
Your Cart (0 item)
Close icon
You have no products in your basket yet
Save more on your purchases! discount-offer-chevron-icon
Savings automatically calculated. No voucher code required.
Arrow left icon
Explore Products
Best Sellers
New Releases
Books
Videos
Audiobooks
Learning Hub
Free Learning
Arrow right icon
Arrow up icon
GO TO TOP
Microsoft 365 Identity and Services Exam Guide MS-100

You're reading from   Microsoft 365 Identity and Services Exam Guide MS-100 Expert tips and techniques to pass the MS-100 exam on the first attempt

Arrow left icon
Product type Paperback
Published in Jun 2023
Publisher Packt
ISBN-13 9781838987947
Length 462 pages
Edition 1st Edition
Tools
Arrow right icon
Author (1):
Arrow left icon
Aaron Guilmette Aaron Guilmette
Author Profile Icon Aaron Guilmette
Aaron Guilmette
Arrow right icon
View More author details
Toc

Table of Contents (22) Chapters Close

Preface 1. Part 1: Planning and Implementing a Microsoft 365 Tenant
2. Chapter 1: Planning and Implementing a Microsoft 365 Tenant FREE CHAPTER 3. Chapter 2: Monitoring Microsoft 365 Tenant Health 4. Part 2: Planning and Managing User Identity and Roles
5. Chapter 3: Planning Identity Synchronization 6. Chapter 4: Implementing and Managing Identity Synchronization with Azure AD 7. Chapter 5: Planning and Managing Azure AD Identities 8. Chapter 6: Planning and Managing Roles in Microsoft 365 9. Part 3: Managing Access and Authentication
10. Chapter 7: Planning and Implementing Authentication 11. Chapter 8: Planning and Implementing Secure Access 12. Chapter 9: Planning and Implementing Application Access 13. Part 4: Planning Microsoft 365 Workloads and Applications
14. Chapter 10: Planning and Implementing Microsoft 365 Apps Deployment 15. Chapter 11: Planning and Implementing Exchange Online Deployments 16. Chapter 12: Planning and Implementing Microsoft SharePoint Online, OneDrive, and Microsoft Teams 17. Part 5: Preparation
18. Chapter 13: Practice Exam 1 19. Chapter 14: Practice Exam 2 20. Index 21. Other Books You May Enjoy

Planning for role assignments

One of the core tenets of security is the use of a least-privilege model. Least privilege means delegating the minimum level of permissions to accomplish a particular task. In the context of Microsoft 365 and Azure AD, this translates to using the built-in roles for services, applications, and features where possible, instead of granting the Global Administrator role. Limiting the administrative scope for services based on roles is commonly referred to as role-based access control (RBAC).

In order to help organizations plan for a least-privileged deployment, Microsoft currently maintains this list of least-privileged roles necessary to accomplish certain tasks, grouped by application or content area: https://learn.microsoft.com/en-us/azure/active-directory/roles/delegate-by-task.

When planning role assignments in your organization, you can choose to assign roles directly to users or via a specially designated Azure AD group. If you want to use groups...

lock icon The rest of the chapter is locked
Register for a free Packt account to unlock a world of extra content!
A free Packt account unlocks extra newsletters, articles, discounted offers, and much more. Start advancing your knowledge today.
Unlock this book and the full library FREE for 7 days
Get unlimited access to 7000+ expert-authored eBooks and videos courses covering every tech area you can think of
Renews at $19.99/month. Cancel anytime
Banner background image