Secure Windows Server infrastructure
At a glance
-
Level
-
Skill
-
Product
-
Role
-
Subject
Learn how to secure the Windows Server operating system using Exploit Protection, Windows Defender Application Control, Credential Guard, OSConfig security baselines, LAPS, and Microsoft Defender for Servers, and secure Active Directory Domain Services including password policies, Microsoft Entra Password Protection, and domain controller hardening.
Prerequisites
- Experience administering Windows Server operating systems
- Familiarity with Active Directory Domain Services (AD DS) concepts
- Basic knowledge of PowerShell and Group Policy
Achievement Code
Would you like to request an achievement code?
Modules in this learning path
Learn how to harden the security configuration of your Windows Server operating system environment. Secure administrative access to Privileged Access Workstations (PAWs), apply security baselines, and secure domain controllers and SMB traffic.
This module explores using Microsoft Defender for Endpoint to provide additional protection and monitor devices against threats.
This module explains the built-in security features of Windows clients and how to implement them using policies.
This module focuses on maintaining security in an Active Directory environment. It covers things from permissions management to authentication methods to identifying problematic accounts.
Protect your Active Directory environment by securing user accounts to least privilege and placing them in the Protected Users group. Learn how to limit authentication scope and remediate potentially insecure accounts.
This module focuses on effectively managing security controls in Microsoft Entra ID by securing identities, authentication, and authorization to protect users, groups, and external identities against threats while ensuring secure and seamless access to resources.
This module explores comprehensive security monitoring and governance for Azure DevOps environments. Learn to implement pipeline security, configure Microsoft Defender for Cloud for threat protection and compliance, manage Azure Policy for governance enforcement, secure resources with locks, use Microsoft Defender for Identity threat detection, and integrate GitHub Advanced Security with Microsoft Defender for unified security visibility across your development lifecycle.