| Topic | Details |
| Implement an Identity Management Solution (25-30%) | |
| Implement initial configuration of Azure Active Directory | - configure and manage Azure Active Directory roles - configure and manage custom domains - configure and manage device registration options - configure delegation by using administrative units - configure tenant-wide settings |
| Create, configure and manage identities | - create, configure and manage users - create, configure and manage groups - manage licenses |
| Implement and manage external identities | - manage external collaboration settings in Azure Active Directory - invite external users (individually or in bulk) - manage external user accounts in Azure Active Directory - configure identity providers (social and SAML/WS-fed) |
| Implement and manage hybrid identity | - implement and manage Azure Active Directory Connect (AADC) - implement and manage Azure AD Connect cloud sync - implement and manage Password Hash Synchronization (PHS) - implement and manage Pass-Through Authentication (PTA) - implement and manage seamless Single Sign-On (SSO) - implement and manage Federation (excluding manual ADFS deployments) - implement and manage Azure Active Directory Connect Health - troubleshoot synchronization errors |
| Implement an Authentication and Access Management Solution (25-30%) | |
| Plan and implement Azure Multifactor Authentication (MFA) | - plan Azure MFA deployment (excluding MFA Server) - implement and manage Azure MFA settings - manage MFA settings for users |
| Manage user authentication | - administer authentication methods (FIDO2 / Passwordless) - implement an authentication solution based on Windows Hello for Business - configure and deploy self-service password reset - deploy and manage password protection - configure smart lockout thresholds - implement and manage tenant restrictions |
| Plan, implement and administer conditional access | - plan and implement security defaults - plan conditional access policies - implement conditional access policy controls and assignments (targeting, applications, and conditions) - testing and troubleshooting conditional access policies - implement application controls - implement session management |













| Welcome Firefly Open Source Community (https://bbs.t-firefly.com/) | Powered by Discuz! X3.1 |