
MS-100 just received a minor update, with some minor branding changes. It was also just announced that MS-100 and MS-101 will be replaced by MS-102 towards the middle of the year. There’s no MS-101 February update, so I’ll publish a more comprehensive post for MS-102 within the next week to help you decide which path makes more sense for you.
Deploy and manage a Microsoft 365 tenant (15-20%)
Plan and implement a Microsoft 365 tenant
- plan a tenant
- create a tenant
- implement and manage domains
- configure organizational settings, including security, privacy, and profile
Monitor Microsoft 365 tenant health
- create and manage service requests
- create an incident response plan
- monitor service health
- monitor application access
- configure and review reports, including Azure Monitor logs and Log Analytics workspaces
- schedule and review usage metrics, including Microsoft Viva insights and productivity score
Plan and manage user identity and roles (30—35%)
Plan identity synchronization
- design synchronization solutions for multitenant and multi-forest scenarios
- evaluate whether objects should be synchronized, not synchronized, or created as cloud only
- identify which Azure AD Connect features to enable, such as writeback and device synchronization
- identify synchronization pre-requisites, including connectivity method, permissions, and server requirements
- choose between Azure AD Connect and Azure AD Connect cloud sync
- plan user sign-in for Azure AD hybrid identities, including pass-through authentication, seamless, and SSO
Implement and manage identity synchronization with Azure AD
- prepare for identity synchronization by using IdFix
- configure and manage directory synchronization by using Azure AD Connect cloud sync
- configure and manage directory synchronization by using Azure AD Connect
- configure Azure AD Connect object filters
- monitor synchronization by using Azure AD Connect Health
- troubleshoot Azure AD Connect synchronization
Plan and manage Azure AD identities
- plan Azure AD identities
- create and manage users
- create and manage guest users
- create and manage groups, including Microsoft 365 groups
- manage and monitor Microsoft 365 license allocations
- perform bulk user management, including PowerShell
Plan and manage roles in Microsoft 365
- plan for role assignments
- manage roles in Microsoft 365 admin center
- manage administrative units
- plan and implement privileged identity management for Azure AD roles
Manage access and authentication (20—25%)
Plan and implement authentication
- choose an authentication method, including Windows Hello for Business, passwordless, and tokens
- implement and manage authentication methods
- implement and manage self-service password reset (SSPR)
- implement and manage Azure AD password protection
- configure and manage multi-factor authentication (MFA)
- investigate and resolve authentication issues
Plan and implement secure access
- plan and implement access reviews in Azure AD identity governance
- plan and implement entitlement packages in Azure AD identity governance
- plan for identity protection
- implement and manage Azure AD Identity Protection
- plan conditional access policies
- implement and manage conditional access policies
Plan and implement application access
- plan access and authentication to application registrations and Azure AD enterprise applications
- configure application registration in Azure AD
- manage user permissions for application registrations
- manage OAuth application requests in Azure AD, Microsoft Defender for Cloud Apps, and Microsoft 365 Defender
- configure Azure AD Application Proxy
- publish enterprise applications in Azure AD
Plan Microsoft 365 workloads and applications (20—25%)
Plan and implement Microsoft 365 Apps deployment
- plan for client connectivity to Microsoft 365 workloads
- plan Microsoft 365 App compatibility by using the Readiness Toolkit
- plan for Microsoft 365 Apps updates
- specify initial configuration for Microsoft 365 Apps by using the Microsoft 365 Apps admin center
- implement Microsoft 365 Apps deployment and software downloads
Plan and implement Exchange Online deployments
- plan for DNS records required by Exchange Online
- plan and implement an Exchange hybrid organization
- plan and implement mail routing, including connectors, mail flow rules, and remote domains
- plan and implement organizational settings
Plan and implement Microsoft SharePoint Online, OneDrive, and Microsoft Teams
- specify SharePoint site types, site collections, and lists
- plan a migration strategy for SharePoint Online and OneDrive
- identify hybrid requirements for SharePoint Online
- manage access configurations for SharePoint Online and Microsoft Teams
- manage SharePoint Online tenant and site settings
- map Phone System features to requirements
- plan and implement organizational settings
- plan, implement, and manage guest and external access