Course Outline
Module 1: Attacks, breach detection, and Sysinternals tools
- Understanding attacks
- Detecting security breaches
- Examining activity with the Sysinternals tools
Module 2: Protecting credentials and privileged access
- Understanding user rights
- Computer and service accounts
- Protecting credentials
- Privileged Access Workstations and jump servers
- Local administrator password solution
Module 3: Limiting administrator rights with Just Enough Administration
- Understanding JEA
- Verifying and deploying JEA
Module 4: Privileged access management and administrative forests
- ESAE forests
- Overview of Microsoft Identity Manager
- Overview of JIT administration and PAM
Module 5: Mitigating malware and threats
- Configuring and managing Windows Defender
- Restricting software
- Configuring and using the Device Guard feature
Module 6: Analyzing activity with advanced auditing and log analytics
- Overview of auditing
- Advanced auditing
- Windows PowerShell auditing and logging
Module 7: Deploying and configuring Advanced Threat Analytics and Microsoft Operations Management Suite
- Deploying and configuring ATA
- Deploying and configuring Microsoft Operations Management Suite
- Deploying and configuring Azure Security Center
Module 8: Secure Virtualization Infrastructure
- Guarded fabric
- Shielded and encryption-supported virtual machines
Module 9: Securing application development and server-workload infrastructure
- Using SCT
- Understanding containers
Module 10: Planning and protecting data
- Planning and implementing encryption
- Planning and implementing BitLocker
- Protecting data by using Azure Information Protection
Module 11: Optimizing and securing file services
- File Server Resource Manager
- Implementing classification and file management tasks
- Dynamic Access Control
Module 12: Securing network traffic with firewalls and encryption
- Understanding network-related security threats
- Understanding Windows Firewall with Advanced Security
- Configuring IPsec
- Datacenter Firewall
Module 13: Securing network traffic
- Configuring advanced DNS settings
- Examining network traffic with Message Analyzer
- Securing and analyzing SMB traffic
Requirements
- Completion of courses 740, 741, and 742, or equivalent training.
- A robust, hands-on grasp of networking fundamentals, including TCP/IP, User Datagram Protocol (UDP), and Domain Name System (DNS).
- A thorough, practical understanding of Active Directory Domain Services (AD DS) principles.
- A solid, practical knowledge of Microsoft Hyper-V virtualization fundamentals.
- Familiarity with Windows Server security principles.
Audience
This course is designed for IT professionals responsible for the secure administration of Windows Server 2016 networks. These professionals typically operate within domain-based environments where access to the internet and cloud services is managed.
Individuals preparing for the 70-744 Securing Windows Server certification exam will also find this course highly beneficial.
Job role: Administrator
Exam preparation: 70-744
Testimonials (3)
Experience sharing, it's teacher's know-how and valuable.
Carey Fan - Logitech
Course - C/C++ Secure Coding
the knowledge of the trainer was very high - he knew what he was talking about, and knew the answers to our questions
Adam - Fireup.PRO
Course - Advanced Java Security
Very good to understand how a hacker would potentially analyse sites for weakness and tools they might employ .