Continue your lesson
Trace device identity, enrollment, assignment, policy evaluation, deployment, and reporting as separate stages.
Block 1 of 3Compare Security baseline · Endpoint detection and response policy
Current · 12 min
Compare Security baseline · Endpoint detection and response policy
Optional concept notes
Security baseline
Applies a Microsoft-recommended group of endpoint security settings from one profile.
Endpoint detection and response policy
Onboards supported devices to collect endpoint telemetry for post-breach detection, investigation, and response.
Complete one provider lesson, then answer four related questions. That is enough for today; more practice is optional.
Your lesson stays open here while the provider opens in another tab. Choose one source; the notes above are optional.
Block 2 of 3Compare Microsoft Defender Antivirus policy · Microsoft Defender Firewall policy · Attack surface reduction rules
18 min
Compare Microsoft Defender Antivirus policy · Microsoft Defender Firewall policy · Attack surface reduction rules
Optional concept notes
Microsoft Defender Antivirus policy
Configures real-time protection, malware scan behavior, exclusions, and cloud-delivered protection.
Microsoft Defender Firewall policy
Controls firewall profiles and connection behavior on managed Windows endpoints.
Attack surface reduction rules
Blocks or audits risky behaviors commonly used by malware and malicious scripts.
Complete one provider lesson, then answer four related questions. That is enough for today; more practice is optional.
Your lesson stays open here while the provider opens in another tab. Choose one source; the notes above are optional.
Block 3 of 3Compare Disk encryption policy · Account protection policy · Windows LAPS policy
15 min
Compare Disk encryption policy · Account protection policy · Windows LAPS policy
Optional concept notes
Disk encryption policy
Configures BitLocker requirements recovery information and encryption behavior.
Account protection policy
Manages local groups Windows Hello and credential protection settings.
Windows LAPS policy
Rotates and stores a unique managed local administrator password for each device.
Complete one provider lesson, then answer four related questions. That is enough for today; more practice is optional.
Your lesson stays open here while the provider opens in another tab. Choose one source; the notes above are optional.
Practice the reasoning here
Build a small fictional pilot. Map each user, device, group, policy, and report before deciding where a failed deployment should be repaired.
- State the expected result before changing or testing anything.
- Name the observation, command, log, or report that would confirm it.
- Explain why the closest alternative does not fit the same requirement.
Check the whole objective
This unlocks objective 3.1 for recall. The latest checkpoint needs 70% or higher; a lower result puts the lesson back near the front of your timeline.