Book Image

Microsoft Security, Compliance, and Identity Fundamentals Exam Ref SC-900

By : Dwayne Natwick
Book Image

Microsoft Security, Compliance, and Identity Fundamentals Exam Ref SC-900

By: Dwayne Natwick

Overview of this book

Cloud technologies have made building a defense-in-depth security strategy of paramount importance. Without proper planning and discipline in deploying the security posture across Microsoft 365 and Azure, you are compromising your infrastructure and data. Microsoft Security, Compliance, and Identity Fundamentals is a comprehensive guide that covers all of the exam objectives for the SC-900 exam while walking you through the core security services available for Microsoft 365 and Azure. This book starts by simplifying the concepts of security, compliance, and identity before helping you get to grips with Azure Active Directory, covering the capabilities of Microsoft’s identity and access management (IAM) solutions. You'll then advance to compliance center, information protection, and governance in Microsoft 365. You'll find out all you need to know about the services available within Azure and Microsoft 365 for building a defense-in-depth security posture, and finally become familiar with Microsoft's compliance monitoring capabilities. By the end of the book, you'll have gained the knowledge you need to take the SC-900 certification exam and implement solutions in real-life scenarios.
Table of Contents (24 chapters)
1
Section 1: Exam Overview
3
Section 2: The Key Concepts of Security, Compliance, and Identity
7
Section 3: The Microsoft Identity Management Solutions
11
Section 4: The Microsoft Security Solutions for Microsoft 365 and Azure
17
Section 5: The Microsoft Compliance Monitoring Capabilities within Microsoft 365 and Azure

Describe the use of Microsoft Secure Score

In Chapter 9, Describing Security Management and Capabilities of Azure, there was a section that described Cloud Security Posture Management (CSPM). In Azure, this is accomplished using Microsoft Defender for Cloud. For Microsoft 365 resources, the same can be accomplished within the Microsoft 365 Defender portal. As Microsoft Defender for Cloud provides a secure score for Azure AD and Azure resources, Microsoft 365 Defender provides Secure Score for Azure AD and Microsoft 365 resources, including identity, devices, and applications. Figure 12.6 shows the Secure Score tile:

Figure 12.6 – Microsoft 365 Defender Secure Score

Microsoft 365 Defender Secure Score is made up of the following areas to manage your security posture:

  • Secure Score is the adapted score based on best practices and controls in place for Identity, Devices, and Applications. Figure 12.6 shows an example of the Secure Score.
  • Improvement...