Microsoft

Identity and Security Enforcement

Microsoft

Identity and Security Enforcement

 Microsoft

Instructor: Microsoft

Included with Coursera PlusLearn more

Ask Coursera

Gain insight into a topic and learn the fundamentals.
Intermediate level

Recommended experience

7 hours to complete
Flexible schedule
Learn at your own pace
Gain insight into a topic and learn the fundamentals.
Intermediate level

Recommended experience

7 hours to complete
Flexible schedule
Learn at your own pace

What you'll learn

  • Compare six cloud-only M365 authentication methods and recommend the right approach based on user roles, device platforms, and security needs.

  • Map the three core Microsoft Zero-Trust principles to M365 security controls within the Entra ID and Defender Admin Portal environments.

  • Configure Conditional Access policies to enforce specific regional sign-in restrictions and enhance organizational security posture.

  • Interpret the Identity Secure Score in the Defender Admin Portal and enable Privileged Identity Management for just-in-time role elevation.

Details to know

Shareable certificate

Add to your LinkedIn profile

Recently updated!

August 2026

Assessments

19 assignments¹

AI Graded see disclaimer
Taught in English

See how employees at top companies are mastering in-demand skills

 logos of Petrobras, TATA, Danone, Capgemini, P&G and L'Oreal

Build your Support and Operations expertise

This course is part of the Microsoft 365 and Agent Administration Professional Certificate
When you enroll in this course, you'll also be enrolled in this Professional Certificate.
  • Learn new concepts from industry experts
  • Gain a foundational understanding of a subject or tool
  • Develop job-relevant skills with hands-on projects
  • Earn a shareable career certificate from Microsoft

There are 11 modules in this course

This module introduces the Zero Trust security model and the three core principles Microsoft uses to define it. You'll learn what each principle means, why it exists, and how to recognize it in the context of Microsoft 365 security administration, including the conceptual map you'll apply to specific Microsoft 365 controls.

What's included

3 videos1 reading1 assignment

This module moves from principle recognition to applied mapping. You'll review the specific native Microsoft 365 controls that implement each Zero Trust principle, then complete a mapping worksheet that pairs each principle with its corresponding control, mirroring the job task directly and producing a reference artifact you can use in future security conversations.

What's included

1 video2 readings3 assignments

This module introduces the six cloud-only Microsoft 365 authentication methods as a structured decision framework. You'll learn what each method is, whether it is passwordless, which platforms it supports, and the key distinctions that determine when each method is the right choice, building the comparison foundation.

What's included

2 videos2 readings1 assignment

This module moves from method recognition to applied recommendation. You'll watch a realistic service-desk scenario walk through the decision framework across three distinct user profiles, then complete a written recommendation activity where you select and justify the appropriate authentication method for a new set of user profiles—mirroring the job task directly.

What's included

3 readings3 assignments

This module establishes the conceptual foundation for Conditional Access policy configuration. You'll learn what Conditional Access is, how Named Locations define the geographic boundaries a policy enforces, and how the policy evaluation logic determines whether a sign-in is allowed or blocked, building the understanding you need before configuring any policy.

What's included

3 videos1 reading1 assignment

This module moves from policy logic to applied configuration. You'll review the step-by-step sequence for creating the Named Location approved list and the "Block-Non-Trusted-Regions" Conditional Access policy in the Microsoft Entra admin center, then follow the full configuration and testing sequence, documenting the outcome at each step and confirming the policy blocks access from an unapproved country as expected.

What's included

2 videos2 readings2 assignments

This module introduces the Identity Secure Score—what it measures, how it's calculated, and how to read the dashboard. You'll learn to navigate the key sections of the Secure Score view, understand what each metric represents, and recognize the difference between a recommendation that's eligible for prioritization and one that should be filtered out before you ever weigh impact and effort.

What's included

2 videos1 reading1 assignment

This module moves from dashboard literacy to applied analysis. You'll watch a realistic walkthrough of the prioritization process using a provided dashboard scenario, then complete a written analysis activity where you interpret a dashboard snapshot, apply the high-impact, low-effort framework, and produce a prioritized quick-wins submission—mirroring the job task of recording the top three quick wins and submitting them to a team lead.

What's included

1 video2 readings3 assignments

This module introduces Privileged Identity Management and the just-in-time access model it enforces. You'll learn what PIM is, why standing admin privileges create a security risk, how JIT access reduces that risk, and how the MFA approval requirement adds a verification layer before elevation is granted.

What's included

3 videos1 reading1 assignment

This module moves from PIM concepts to applied configuration. You'll review the step-by-step sequence for enabling PIM, assigning the Helpdesk Admin role as an eligible assignment, and configuring the activation settings—then follow the full activation flow to confirm MFA prompts before elevation is granted. A walkthrough-based activity is provided for all learners; an optional live practice path is available for learners with trial access to an Entra ID P2 or Microsoft 365 E5 tenant.

What's included

1 video3 readings2 assignments

In this project, you'll produce a Security Posture Assessment, a structured analysis document that evaluates the identity and security posture of a simulated Microsoft 365 tenant, identifies prioritized findings, and documents escalation recommendations for the identity/security team. The assessment integrates the Zero-Trust mapping, authentication method analysis, Conditional Access review, Secure Score prioritization, and PIM awareness skills built across the course into a single professional deliverable that mirrors the kind of security review a junior Microsoft 365 admin would submit to an identity/security team lead. All findings are documented as observations and escalation recommendations, not configuration decisions or policy actions the learner owns independently.

What's included

1 video2 readings1 assignment

Earn a career certificate

Add this credential to your LinkedIn profile, resume, or CV. Share it on social media and in your performance review.

Instructor

 Microsoft
415 Courses2,757,435 learners

Offered by

Microsoft

Explore more from Support and Operations

Why people choose Coursera for their career

Felipe M.

Learner since 2018
"To be able to take courses at my own pace and rhythm has been an amazing experience. I can learn whenever it fits my schedule and mood."

Jennifer J.

Learner since 2020
"I directly applied the concepts and skills I learned from my courses to an exciting new project at work."

Larry W.

Learner since 2021
"When I need courses on topics that my university doesn't offer, Coursera is one of the best places to go."

Chaitanya A.

"Learning isn't just about being better at your job: it's so much more than that. Coursera allows me to learn without limits."

Frequently asked questions

¹ Some assignments in this course are AI-graded. For these assignments, your data will be used in accordance with Coursera's Privacy Notice.