Search icon CANCEL
Subscription
0
Cart icon
Cart
Close icon
You have no products in your basket yet
Save more on your purchases!
Savings automatically calculated. No voucher code required
Arrow left icon
All Products
Best Sellers
New Releases
Books
Videos
Audiobooks
Learning Hub
Newsletters
Free Learning
Arrow right icon
Microsoft Security, Compliance, and Identity Fundamentals Exam Ref SC-900
Microsoft Security, Compliance, and Identity Fundamentals Exam Ref SC-900

Microsoft Security, Compliance, and Identity Fundamentals Exam Ref SC-900: Familiarize yourself with security, identity, and compliance in Microsoft 365 and Azure

By Dwayne Natwick
$33.99
Book May 2022 404 pages 1st Edition
eBook
$33.99
Print
$41.99
Subscription
$15.99 Monthly
eBook
$33.99
Print
$41.99
Subscription
$15.99 Monthly

What do you get with eBook?

Product feature icon Instant access to your Digital eBook purchase
Product feature icon Download this book in EPUB and PDF formats
Product feature icon Access this title in our online reader with advanced features
Product feature icon DRM FREE - Read whenever, wherever and however you want
Buy Now
Table of content icon View table of contents Preview book icon Preview Book

Microsoft Security, Compliance, and Identity Fundamentals Exam Ref SC-900

Chapter 1: Preparing for Your Microsoft Exam

You have decided to take the steps to get Microsoft certified. The SC-900 exam focuses on Security, Compliance, and Identity Fundamentals. This chapter will help you prepare for the Microsoft exam, along with the resources that can assist you with your learning. This will include helpful links, along with steps on how to gain access to a trial Microsoft 365 subscription and a month of free Microsoft Azure access for hands-on practice.

Once you have completed this chapter, you will become familiar with the tools that enable you to know what is needed to prepare for the exam, follow this book, and begin your journey within a security, compliance, and/or identity role.

In this chapter, we're going to cover the following main topics:

  • Preparing for the Microsoft exam
  • Resources available and accessing Microsoft Learn
  • Creating a Microsoft 365 trial subscription
  • Setting up a free month of Azure services
  • Exam objectives
  • Who should take the SC-900 exam?

Technical requirements

To follow along and complete the exercises within this book, you will need to have access to security, compliance, and identity services within Microsoft 365 and Azure. This can be accomplished by getting a trial subscription for Microsoft 365 and a free month of Azure. Advanced security services will also require an Enterprise + Mobility license. The steps to set up these licenses will be covered later in this chapter.

Preparing for the Microsoft exam

There are multiple aspects of preparing for the Microsoft exam. These include the resources available to prepare for the exam, the ability to access a subscription for hands-on learning, and how you are going to take your exam. If this is your first Microsoft exam, understanding the format that most of these exams will follow is important.

Let's take a closer look at each of these areas.

Resources to prepare for the exam

There are many resources available that can help you prepare for most Microsoft exams. This includes pre-recorded content from learning companies, live courses from Microsoft Learning Partners, and content that's been posted by the community and Microsoft blog articles. Each of these resources is helpful, but the pre-recorded content and live courses will come at a price. This may not be within your budget. Community and Microsoft blog articles generally provide a level of direction regarding where you need to go for each topic, but they do not get into specifics.

One of the best resources is Microsoft itself. Microsoft provides detailed documentation about each of their services via Microsoft Docs, which allows you to search freely and find the information that you need. This information is publicly available and free. Microsoft Docs is tied very closely to Microsoft Learn's content, which will be discussed later in this chapter.

To access and search Microsoft Docs, simply go to https://docs.microsoft.com.

Access to a subscription

When preparing for the Microsoft exam, it is highly recommended that you have had some level of hands-on experience with the services within the objectives. For fundamental-level exams, with the SC-900 being a fundamental-level exam, hands-on experience is extremely helpful in reinforcing your understanding. Microsoft courses have a GitHub repository for labs that are recommended and available to the public.

The lab guides can be found at this link: http://www.microsoft.com/learning.

Microsoft offers trial subscriptions for both Azure and Microsoft 365. The process of creating these trials will be covered later in this chapter.

Where to take the exam

Part of the preparation process of taking the exam includes where you are going to take it. Traditionally, there has only been the option to take these exams at a proctored exam site. Some may prefer this method because it is a controlled environment. Understanding the location and setup of the site can help lower your level of stress on the day of the exam. Making a trip to the site before your exam date can avoid any potential surprises on the day.

When the role-based exams became available, Microsoft provided an additional option of taking the exam remotely from your home or office by using a remote proctor. This may be your preferred option if you are more comfortable using your own equipment and environment. If you do not have this choice when scheduling your exam, then this option has not been made available to your region. If it is available, you will see options similar to the following:

Figure 1.1 – Selecting a location when scheduling the exam

Figure 1.1 – Selecting a location when scheduling the exam

There are some important steps to prepare for the remote proctor. From an equipment standpoint, you must have a device with a webcam, microphone, and speakers. You can only use one monitor, so ensure that you have a high resolution to avoid any issues when viewing the exam. It is highly recommended that you test your equipment before the day of the exam to avoid any issues with anti-malware software.

The location that you are going to take the exam in must be cleared of any papers, books, pens, and pencils. It must also be a quiet environment where no one will enter while you are taking the exam. You will be required to photograph the location and surrounding area when checking in. Valid identification is required as well. During the exam, you must remain within the view of the camera. This may feel intrusive and may not be a manner that is comfortable for some, but others may prefer being within their own environment.

Exam format

Microsoft exams are typically made up of 4-6 question types. These are case studies, multiple-choice, drag and drop, true/false, drop-down fill-in, and best answer scenarios. Let's provide some additional details about what each of these means, as follows:

  • Case study questions provide a hypothetical company setting within the current environment, proposed future environment, and the technical and business requirements. From this scenario, 6-8 questions are asked that may cover multiple objective areas of the exam. In most associate-level exams, you could see 1-3 of these case studies.
  • Multiple-choice questions are straightforward questions. Some multiple-choice questions may have more than one answer. Microsoft is generally transparent on how many correct answers need to be chosen for the question, and you will be alerted if you do not choose the correct number of selections.
  • Drag-and-drop questions are usually based on the steps of a process to test your knowledge of the order of operations to deploy a service. You are given more selections than needed and need to move the steps that apply to the question to the right-hand column in the proper sequence.
  • The next type of question is a modified type of true/false question. In these questions, you are usually provided with some exhibits or screenshots from within the Microsoft portals or tables that show what has been configured. There are then 3-4 statements about this information, where you need to select yes or no for each statement based on whether the statement is correct based on the information provided.
  • Drop-down fill-in questions are usually where you will find PowerShell or Azure CLI code. You will be asked to complete certain steps within a string of code where the blank sections provide drop-down selections to choose from.
  • The best answer scenario questions test your understanding of an objective area. Microsoft will warn you when you get to this section as you will no longer have the option to navigate back to the other questions. You will be provided a specific scenario that needs to be solved, along with a proposed solution. The requirement is to determine whether that solution is the best solution to solve the scenario at hand. After selecting yes or no, you may see the same scenario again with a different solution, where you must select yes or no again.

Each of these exam question types tests your level of understanding in different ways, and all of them are weighted against the exam objectives, which will be discussed later in this chapter.

With that, we have covered how to determine an exam's location and the types of questions that you may expect. The next few sections will cover the resources that will help you learn about the topics within the exam, as well as how to gain access to the solutions so that you can follow along with the exercises in this guide.

Resources available and accessing Microsoft Learn

Earlier in this chapter, some of the resources that are available for preparing for the exam were mentioned. Microsoft Learn was mentioned, along with Microsoft Docs, but Microsoft Learn requires its own section due to the amount of free content that it provides to help you prepare for the exam.

Accessing Microsoft Learn

Microsoft Learn is a great resource to get your learning path started. All the content on Microsoft Learn is free. When you create an account on Microsoft, your learning progress is tracked and you can acquire badges along the way. In addition, Microsoft creates learning challenges periodically with prizes, such as free exam vouchers. Creating a free account can be done by selecting the icon at the top right of the page and selecting Sign in, as shown in the following screenshot:

Figure 1.2 – Microsoft Learn site profile – Sign in

Figure 1.2 – Microsoft Learn site profile – Sign in

You can sign in with an existing Microsoft account or create one to get started, as indicated here:

Figure 1.3 – Create or sign in to a Microsoft account

Figure 1.3 – Create or sign in to a Microsoft account

You can get to Microsoft Learn by going to the following link: https://www.microsoft.com/learn.

Finding content on Microsoft Learn

Content on Microsoft Learn can be found in various ways. You can search for specific products, roles, or certifications. These options can be found on the selection ribbon at the top of the Learn home page, as shown in the following screenshot. The home page also provides several recommendations so that you can start your learning journey:

Figure 1.4 – Learn content navigation

Figure 1.4 – Learn content navigation

From the Learn content navigation tabs, select a drop-down arrow to filter for content in the specific Products, Roles, or Certifications areas:

Figure 1.5 – Filter categories under the Products drop-down menu

Figure 1.5 – Filter categories under the Products drop-down menu

Once you have selected an area of interest, or simply chosen Browse all paths, you can search for specific topics and filter for individual courses or learning paths, as shown in the following screenshot:

Figure 1.6 – Browse all content in Microsoft Learn

Figure 1.6 – Browse all content in Microsoft Learn

This section has shown you how to access Microsoft Learn and browse for modules and learning paths. The next section will assist you in finding content specific to the SC-900 exam.

Exam pages on Microsoft Learn

Another common area within Microsoft Learn is the exam pages. For any exam provided by Microsoft, there is an exam page and a certification page that is located within Microsoft Learn. These pages provide an overview of the exam or certification, the roles of individuals that may be interested in the exam, the objective areas for the exam, scheduling the exam, and the Microsoft Learn learning path to prepare for the exam. These pages are extremely helpful when you are preparing for an exam rather than just learning to gain general technical knowledge. The following screenshot shows us searching for the SC-900 exam, where you can see sc-900 being typed in the search box:

Figure 1.7 – Browse for the SC-900 exam

Figure 1.7 – Browse for the SC-900 exam

The following screenshot shows the exam page for the SC-900 exam:

Figure 1.8 – SC-900 exam page

Figure 1.8 – SC-900 exam page

As you continue to prepare for the SC-900 exam, it is recommended that you use this exam page as a reference.

You should now have access to log in and browse the content on Microsoft Learn. The next section will show you how to sign up for a trial subscription to Microsoft 365 services and sign up for a month of free Azure services.

Creating a Microsoft 365 trial subscription

If you are new to Microsoft 365 and Azure, getting hands-on experience is important – not just for exam preparation, but also for professional development. If you are getting certified to open doors to new job opportunities, you must understand the administration portals and how to work within them. This book will provide some exercises that will get you familiar with how to work within Microsoft 365, advanced security and compliance solutions, and Azure Active Directory. To follow along, it is recommended that you have a subscription to Microsoft 365 and Enterprise + Mobility. The steps to create these when using a 30-day trial are provided in the following sections.

Office 365 or Microsoft 365 trial subscription

Many of the features and capabilities discussed within the exam objectives require you to have an enterprise-level license within Microsoft 365. The available enterprise licenses are the E3 and E5 licenses. Microsoft offers 30-day trial licenses for these, so as you prepare for the exam, you can create a trial subscription and be able to follow along with the exercises.

To get started, as shown in the following screenshot, navigate to https://www.microsoft.com/en-us/microsoft-365/enterprise/compare-office-365-plans and select Try for free under the Office 365 E5 plan:

Figure 1.9 – Signing up for an Office 365 trial subscription

Figure 1.9 – Signing up for an Office 365 trial subscription

Follow the steps provided to create an account, as shown in the following screenshot. If you have already created an account, you may need to use a different email address to obtain the free trial:

Figure 1.10 – Office 365 E5 subscription sign-up form

Figure 1.10 – Office 365 E5 subscription sign-up form

After completing the form and creating your Microsoft 365 tenant, you will have access to Microsoft 365's services and the administration panel. The next section will show you how to sign up for an additional add-on service that will be required to follow the exercises in this book, as well as gaining full hands-on preparation for your exam.

Enterprise Mobility + Security subscription

In addition to the Office 365 E5 trial subscription, you will need access to advanced security and compliance features, as well as an Azure Active Directory Premium license for many of the solutions and services that will be discussed within the exam objectives. The best way to obtain these features is through an Enterprise Mobility + Security E5 license. Microsoft also offers this as a 30-day free trial:

  1. To get started, navigate to this link: https://www.microsoft.com/en-us/microsoft-365/enterprise-mobility-security/compare-plans-and-pricing.
  2. Then, select Try now under the Enterprise Mobility + Security E5 plan, as shown in the following screenshot:
Figure 1.11 – Signing up for an EMS E5 trial subscription

Figure 1.11 – Signing up for an EMS E5 trial subscription

This is an add-on license to Microsoft 365, so you should enter the same email address that you used to sign up for the Office 365 E5 subscription in the box shown in the following screenshot:

Figure 1.12 – EMS E5 subscription sign-up form

Figure 1.12 – EMS E5 subscription sign-up form

You should now have everything that you need for your hands-on exam preparation and to follow the exercises in this book. The next section will provide an overview of the objectives that will be covered in the exam and throughout this book.

Free month of Azure services

Since this exam includes security, compliance, and identity services for Microsoft 365 and Azure, it is recommended that you have access to Azure as well. Microsoft offers a free month of services from Azure. If you have not taken advantage of this offer previously, you can sign up at this link: https://azure.microsoft.com/.

Once you've done that, you can select Free account at the top right or Get started for free in the middle of the page, as shown in the following screenshot:

Figure 1.13 – Microsoft Azure sign-up page

Figure 1.13 – Microsoft Azure sign-up page

Once you have created these trial subscriptions as described, you will be ready to follow the exercises in this book. Hands-on learning is an important tool for understanding topics, so it is highly recommended that you complete the steps within this section and follow along. The next section will discuss the structure of the exam and its objectives.

Exam objectives

This book will cover the specific objectives of the SC-900 Microsoft Security, Compliance, and Identity Fundamentals exam. The structure of this book follows these objectives closely. However, there is an added section on monitoring and management that provides additional emphasis on furthering your career within the areas of security, compliance, and identity.

As is the case with all Microsoft exams, each objective area is weighted differently. The weight of each objective is meant to be used as a guide to help you understand the potential number of questions to expect in these areas for the exam. The objectives that are covered within the SC-900 exam are shown in the following table:

Additional details on the topics that make up these objectives can be found at this link: https://query.prod.cms.rt.microsoft.com/cms/api/am/binary/RE4Myp5.

Note that the weights do not mean that if an objective is weighted at 10%, you will only get 5 questions out of 50 on this area. Microsoft exams use a scoring scale of 1,000 based on the type of question and the objectives that are covered within the question. Many questions may have elements of multiple objectives, so they get working into percentages. The weights of the objectives can help you understand the level of importance that is being placed on the objective.

Now that you know the objective areas that are covered in this exam, you may be wondering how this exam and certification can assist in professional development and career advancement. The next section will provide some insight into the types of roles that this exam highlights.

Who should take the SC-900 exam?

Now that you understand more about Microsoft exams, paths to learning, and the specific areas covered in the SC-900 exam, it is important to think about the roles that someone should have or want before preparing for this exam. The SC-900 exam is the Security, Compliance, and Identity Fundamentals exam, so it covers a broad range of services and solutions for maintaining security and compliance within Microsoft 365, Azure, and hybrid infrastructures. Anyone that wishes to work with Microsoft cloud technologies will benefit from learning the objectives of this exam.

This exam will also help you obtain a role in security, compliance, or identity administration within Microsoft 365 or Azure. This exam is a starting point that helps determine your areas of interest while providing you with a rounded understanding of the broad range of security, compliance, and identity services and solutions within Microsoft's cloud technologies.

Summary

In this chapter, we covered the areas that will prepare you for the Security, Compliance, and Identity Fundamentals exam and the setup required to follow along with the exercises covered within this book. We also provided an overview of what to expect when taking the Microsoft exam.

The next chapter will discuss the various concepts that make up the foundation of security, compliance, and identity.

Left arrow icon Right arrow icon

Key benefits

  • Grasp Azure AD services and identity principles, secure authentication, and access management
  • Understand threat protection with Microsoft 365 Defender and Microsoft Defender for Cloud security management
  • Learn about security capabilities in Microsoft Sentinel, Microsoft 365 Defender, and Microsoft Intune

Description

Cloud technologies have made building a defense-in-depth security strategy of paramount importance. Without proper planning and discipline in deploying the security posture across Microsoft 365 and Azure, you are compromising your infrastructure and data. Microsoft Security, Compliance, and Identity Fundamentals is a comprehensive guide that covers all of the exam objectives for the SC-900 exam while walking you through the core security services available for Microsoft 365 and Azure. This book starts by simplifying the concepts of security, compliance, and identity before helping you get to grips with Azure Active Directory, covering the capabilities of Microsoft’s identity and access management (IAM) solutions. You'll then advance to compliance center, information protection, and governance in Microsoft 365. You'll find out all you need to know about the services available within Azure and Microsoft 365 for building a defense-in-depth security posture, and finally become familiar with Microsoft's compliance monitoring capabilities. By the end of the book, you'll have gained the knowledge you need to take the SC-900 certification exam and implement solutions in real-life scenarios.

What you will learn

Become well-versed with security, compliance, and identity principles Explore the authentication, access control, and identity management capabilities of Azure Active Directory Understand the identity protection and governance aspects of Azure and Microsoft 365 Get to grips with the basic security capabilities for networks, VMs, and data Discover security management through Microsoft Defender for Cloud Work with Microsoft Sentinel and Microsoft 365 Defender Deal with compliance, governance, and risk in Microsoft 365 and Azure

Product Details

Country selected

Publication date : May 26, 2022
Length 404 pages
Edition : 1st Edition
Language : English
ISBN-13 : 9781801815994
Vendor :
Microsoft
Category :
Concepts :

What do you get with eBook?

Product feature icon Instant access to your Digital eBook purchase
Product feature icon Download this book in EPUB and PDF formats
Product feature icon Access this title in our online reader with advanced features
Product feature icon DRM FREE - Read whenever, wherever and however you want
Buy Now

Product Details


Publication date : May 26, 2022
Length 404 pages
Edition : 1st Edition
Language : English
ISBN-13 : 9781801815994
Vendor :
Microsoft
Category :
Concepts :

Table of Contents

24 Chapters
Preface Chevron down icon Chevron up icon
1. Section 1: Exam Overview Chevron down icon Chevron up icon
2. Chapter 1: Preparing for Your Microsoft Exam Chevron down icon Chevron up icon
3. Section 2: The Key Concepts of Security, Compliance, and Identity Chevron down icon Chevron up icon
4. Chapter 2: Describing Security Methodologies Chevron down icon Chevron up icon
5. Chapter 3: Understanding Key Security Concepts Chevron down icon Chevron up icon
6. Chapter 4: Key Microsoft Security and Compliance Principles Chevron down icon Chevron up icon
7. Section 3: The Microsoft Identity Management Solutions Chevron down icon Chevron up icon
8. Chapter 5: Defining Identity Principles/Concepts and the Identity Services within Azure AD Chevron down icon Chevron up icon
9. Chapter 6: Describing the Authentication and Access Management Capabilities of Azure AD Chevron down icon Chevron up icon
10. Chapter 7: Describing the Identity Protection and Governance Capabilities of Azure AD Chevron down icon Chevron up icon
11. Section 4: The Microsoft Security Solutions for Microsoft 365 and Azure Chevron down icon Chevron up icon
12. Chapter 8: Describing Basic Security Services and Management Capabilities in Azure Chevron down icon Chevron up icon
13. Chapter 9: Describing Security Management and Capabilities of Azure Chevron down icon Chevron up icon
14. Chapter 10: Describing Threat Protection with Microsoft 365 Defender Chevron down icon Chevron up icon
15. Chapter 11: Describing the Security Capabilities of Microsoft Sentinel Chevron down icon Chevron up icon
16. Chapter 12: Describing Security Management and the Endpoint Security Capabilities of Microsoft 365 Chevron down icon Chevron up icon
17. Section 5: The Microsoft Compliance Monitoring Capabilities within Microsoft 365 and Azure Chevron down icon Chevron up icon
18. Chapter 13: Compliance Management Capabilities in Microsoft Chevron down icon Chevron up icon
19. Chapter 14: Describing Information Protection and Governance Capabilities of Microsoft 365 Chevron down icon Chevron up icon
20. Chapter 15: Describing Insider Risk, eDiscovery, and Audit Capabilities in Microsoft 365 Chevron down icon Chevron up icon
21. Chapter 16: Describing Resource Governance Capabilities in Azure Chevron down icon Chevron up icon
22. Chapter 17: Final Assessment/ Mock Exam Chevron down icon Chevron up icon
23. Other Books You May Enjoy Chevron down icon Chevron up icon

Customer reviews

Top Reviews
Rating distribution
Empty star icon Empty star icon Empty star icon Empty star icon Empty star icon 0
(0 Ratings)
5 star 0%
4 star 0%
3 star 0%
2 star 0%
1 star 0%
Top Reviews
No reviews found
Get free access to Packt library with over 7500+ books and video courses for 7 days!
Start Free Trial

FAQs

How do I buy and download an eBook? Chevron down icon Chevron up icon

Where there is an eBook version of a title available, you can buy it from the book details for that title. Add either the standalone eBook or the eBook and print book bundle to your shopping cart. Your eBook will show in your cart as a product on its own. After completing checkout and payment in the normal way, you will receive your receipt on the screen containing a link to a personalised PDF download file. This link will remain active for 30 days. You can download backup copies of the file by logging in to your account at any time.

If you already have Adobe reader installed, then clicking on the link will download and open the PDF file directly. If you don't, then save the PDF file on your machine and download the Reader to view it.

Please Note: Packt eBooks are non-returnable and non-refundable.

Packt eBook and Licensing When you buy an eBook from Packt Publishing, completing your purchase means you accept the terms of our licence agreement. Please read the full text of the agreement. In it we have tried to balance the need for the ebook to be usable for you the reader with our needs to protect the rights of us as Publishers and of our authors. In summary, the agreement says:

  • You may make copies of your eBook for your own use onto any machine
  • You may not pass copies of the eBook on to anyone else
How can I make a purchase on your website? Chevron down icon Chevron up icon

If you want to purchase a video course, eBook or Bundle (Print+eBook) please follow below steps:

  1. Register on our website using your email address and the password.
  2. Search for the title by name or ISBN using the search option.
  3. Select the title you want to purchase.
  4. Choose the format you wish to purchase the title in; if you order the Print Book, you get a free eBook copy of the same title. 
  5. Proceed with the checkout process (payment to be made using Credit Card, Debit Cart, or PayPal)
Where can I access support around an eBook? Chevron down icon Chevron up icon
  • If you experience a problem with using or installing Adobe Reader, the contact Adobe directly.
  • To view the errata for the book, see www.packtpub.com/support and view the pages for the title you have.
  • To view your account details or to download a new copy of the book go to www.packtpub.com/account
  • To contact us directly if a problem is not resolved, use www.packtpub.com/contact-us
What eBook formats do Packt support? Chevron down icon Chevron up icon

Our eBooks are currently available in a variety of formats such as PDF and ePubs. In the future, this may well change with trends and development in technology, but please note that our PDFs are not Adobe eBook Reader format, which has greater restrictions on security.

You will need to use Adobe Reader v9 or later in order to read Packt's PDF eBooks.

What are the benefits of eBooks? Chevron down icon Chevron up icon
  • You can get the information you need immediately
  • You can easily take them with you on a laptop
  • You can download them an unlimited number of times
  • You can print them out
  • They are copy-paste enabled
  • They are searchable
  • There is no password protection
  • They are lower price than print
  • They save resources and space
What is an eBook? Chevron down icon Chevron up icon

Packt eBooks are a complete electronic version of the print edition, available in PDF and ePub formats. Every piece of content down to the page numbering is the same. Because we save the costs of printing and shipping the book to you, we are able to offer eBooks at a lower cost than print editions.

When you have purchased an eBook, simply login to your account and click on the link in Your Download Area. We recommend you saving the file to your hard drive before opening it.

For optimal viewing of our eBooks, we recommend you download and install the free Adobe Reader version 9.