Definitions and pro-tips for the MS-102 certification.
Access packages are bundles of resources, including group memberships, applications, and SharePoint sites, that can be assigned to users. They enable a self-service request process for access, often integrated with an approval workflow to maintain strict security boundaries.
App Protection Policies, often referred to as Mobile Application Management (MAM), allow administrators to manage and protect organizational data within specific apps without requiring full device enrollment. These policies prevent data leakage by controlling actions like copy-pasting between corporate and personal applications.
Co-management is a management state where Windows 10/11 devices are managed by both Microsoft Configuration Manager and Microsoft Intune. This allows organizations to transition workloads, such as compliance policies or app deployment, from on-premises management to the cloud.
Communication Compliance is a tool within Microsoft Purview that monitors internal and external communications for policy violations. It identifies inappropriate content, harassment, or sensitive data leaks across Teams, Exchange, and Viva Engage to maintain a professional and safe workplace.
Compliance Manager is a tool within the Microsoft Purview compliance portal that helps organizations track and improve their regulatory compliance posture. It provides a compliance score and a list of actionable recommendations to meet specific legal or industry standards.
Compliance Policies are rules defined in Microsoft Intune that determine whether a device is compliant based on specific security settings. Non-compliant devices can be blocked from accessing corporate resources via integration with Conditional Access.
Conditional Access is a tool used by Microsoft Entra ID to allow or block access based on specific signals. It evaluates criteria such as user location, device state, and application risk to enforce security policies before granting access to organizational resources.
Configuration Profiles are settings used by Microsoft Intune to push specific configurations and restrictions to managed devices. These profiles allow administrators to manage Wi-Fi settings, VPN configurations, email profiles, and browser restrictions across a fleet of corporate devices.
Content Search is a tool within the Microsoft Purview compliance portal used to find information across all Microsoft 365 services. It allows administrators to search for specific keywords or patterns across mailboxes, SharePoint sites, and OneDrive accounts for legal or investigative purposes.
Cross-Tenant Access Settings allow administrators to configure how their Microsoft Entra ID tenant interacts with other external tenants. This includes controlling B2B collaboration and synchronization settings to secure cross-organizational communication and identity trust.
A Custom Domain Name is a domain purchased from a registrar and verified in Microsoft 365 to allow users to send and receive emails using a professional address. This replaces the default .onmicrosoft.com domain provided during tenant creation.
Customer Lockbox is a security feature that ensures Microsoft engineers cannot access customer data to resolve a support request without the customer's explicit approval. This provides an additional layer of control and auditing for organizations with strict regulatory requirements.
Data Loss Prevention (DLP) is a security framework that prevents the accidental or intentional sharing of sensitive information outside the organization. It monitors content in Exchange, SharePoint, OneDrive, and Teams, triggering alerts or blocking actions when sensitive data patterns are detected.
eDiscovery is the process of identifying, collecting, and preserving electronic information for legal cases. Microsoft 365 offers Standard and Premium versions, with Premium providing advanced features like legal holds, custodian management, and predictive coding for larger datasets.
The Enrollment Status Page (ESP) is a feature in Microsoft Intune that shows the progress of device setup during the initial enrollment process. It prevents users from accessing the desktop until critical apps and configuration profiles are fully installed.
Exchange Online Archiving is a feature that provides users with additional storage space for old emails, moving them out of the primary mailbox. This helps maintain primary mailbox performance and satisfies long-term data retention requirements for legal or business reasons.
The Exchange Online Hybrid Configuration Wizard (HCW) is a tool used to configure the coexistence of an on-premises Exchange Server with Exchange Online. It automates the setup of mail flow, free/busy sharing, and migration settings between the two environments.
Exchange Online Mail Flow refers to the process and rules that govern how emails are routed from a sender to a recipient. It involves the use of connectors, transport rules, and filtering to ensure mail is delivered securely and efficiently.
Exchange Online Mailbox Delegation allows a user to grant another user permission to access their mailbox. Common types include 'Send As,' 'Send on Behalf of,' and 'Full Access,' enabling assistants or managers to manage emails without sharing account passwords.
Exchange Online Mailbox Plans are templates used to define the default settings, such as storage quotas and feature sets, for new mailboxes. These plans ensure consistency across the organization by automatically applying the correct configurations based on the assigned license.
Exchange Online Mailbox Quotas are the storage limits assigned to user mailboxes, determining the maximum amount of data a mailbox can hold. Exceeding these quotas prevents users from sending or receiving emails until the mailbox is cleaned or the license is upgraded.
Exchange Online Transport Rules are mail flow rules used to take specific actions on emails based on defined criteria, such as sender or recipient. They are commonly used for adding disclaimers, routing, or blocking specific content.
Insider Risk Management is a Microsoft Purview solution that identifies risky activities performed by internal users. It uses signals like mass file downloads or unauthorized data transfers to detect potential data theft or malicious behavior before it causes significant damage.
Mail-Enabled Security Groups are groups that combine the functionality of a security group for assigning permissions and a distribution group for sending emails. They allow administrators to manage access to resources while maintaining a communication channel.
The Microsoft 365 Admin Center is the primary web-based console used by administrators to manage users, licenses, billing, and global settings. It serves as the central gateway to specialized admin centers for Exchange, SharePoint, Teams, and Entra ID.
Microsoft 365 App Governance is a feature within Microsoft Defender for Cloud Apps that helps administrators manage the risk of third-party applications. It provides visibility into app permissions and usage to prevent 'app sprawl' and potential data exposure.
Microsoft 365 App Update Channels determine the frequency and timing with which Microsoft 365 Apps receive feature and security updates. Common channels include the Current Channel, Monthly Enterprise Channel, and Semi-Annual Enterprise Channel.
Microsoft 365 Apps Deployment Modes are the configuration options, such as Shared Computer Activation or Current Channel, used to deploy Office apps. These modes determine how updates are delivered and how licenses are activated in virtualized or shared environments.
Microsoft 365 Apps for Enterprise is a subscription-based suite of productivity applications, including Word, Excel, and PowerPoint. It provides the most comprehensive set of features and supports various deployment methods, including the Office Deployment Tool (ODT).
Microsoft 365 Apps Shared Computer Activation is a licensing mode designed for multi-user environments such as Virtual Desktop Infrastructure (VDI) or Remote Desktop Services (RDS). It allows multiple users to activate the software on a single device without consuming a permanent license seat per device.
Microsoft 365 Defender for Identity is a cloud-based security solution that leverages on-premises Active Directory signals to identify, detect, and investigate advanced threats. It monitors domain controllers to detect compromised identities and malicious insider threats.
Microsoft 365 Defender XDR is an integrated suite of security tools that provides cross-domain detection, prevention, and response across identities, endpoints, applications, and email. It correlates signals from multiple Defender products to identify complex attack patterns.
Microsoft 365 Global Administrator is the highest level of administrative privilege within a Microsoft 365 tenant. This role has unrestricted access to all administrative features and security settings across all services and subscriptions within the tenant.
Microsoft 365 Groups are membership-based collections of people, content, and tools that provide a shared workspace for collaboration. A group includes a shared mailbox, a calendar, a SharePoint team site, and a OneNote notebook, centralizing communication and document storage.
Microsoft 365 Groups Expiration Policy is a setting that automatically deletes inactive groups after a specified period unless the owner renews them. This prevents 'group sprawl' and ensures that the environment remains clean and manageable.
A Microsoft 365 License is a subscription-based entitlement that grants a user access to a specific set of services, apps, and features. Licenses are assigned to users or groups to enable functionality like Exchange Online, SharePoint, or Microsoft Teams.
Microsoft 365 Message Encryption (OME) is a feature that allows users to send encrypted emails to both internal and external recipients. It ensures that sensitive information remains protected during transit and is only accessible by authorized, authenticated users.
Microsoft 365 Score is a tool that helps administrators track the adoption and usage of Microsoft 365 features. It provides insights into how well the organization is utilizing its licenses to maximize productivity and business value.
Microsoft 365 Secure Score is a measurement of an organization's security posture based on the configuration of its Microsoft 365 services. It provides a numerical score and a list of recommended actions to reduce risk and improve overall security.
The Microsoft 365 Service Health Dashboard is a central administrative tool that provides the current status of Microsoft 365 services. It notifies administrators of service outages, planned maintenance, and known issues, allowing them to communicate impact to their users.
A Microsoft 365 Tenant is a dedicated instance of Microsoft 365 services provided to an organization. It represents the organizational boundary and contains all the users, groups, licenses, and configuration settings specific to that entity's cloud environment.
Microsoft 365 Tenant Migration is the process of moving data, users, and configurations from one Microsoft 365 tenant to another. This is typically required during corporate mergers, acquisitions, or divestitures, requiring careful planning of identity and content transfer.
Microsoft 365 Tenant Restrictions are network-level controls that prevent users from signing into unauthorized Microsoft 365 tenants. This prevents data exfiltration by ensuring users can only access their own corporate account or approved partner tenants.
The Microsoft 365 Unified Audit Log is a centralized repository that records activities across all Microsoft 365 services, including Exchange, SharePoint, Teams, and Entra ID. It allows administrators to search for specific events to investigate security incidents or track user activity.
Microsoft Defender for Endpoint is an enterprise endpoint security platform designed to prevent, detect, investigate, and respond to advanced threats. It provides comprehensive visibility into device health and uses behavioral analytics to identify malicious activity across Windows, macOS, Linux, and mobile platforms.
Microsoft Defender for Office 365 is a cloud-based security service that protects organizations against sophisticated threats like phishing, business email compromise, and malware. It provides advanced tools such as Safe Attachments and Safe Links to scan and neutralize threats before they reach the user.
Microsoft Entra B2B Collaboration allows organizations to share their applications and services with guest users from other tenants or external identities. It enables secure collaboration by allowing guests to use their own credentials to authenticate while the host organization manages their access permissions.
Microsoft Entra Cloud Sync is a lightweight agent-based synchronization tool that provides a simplified alternative to Microsoft Entra Connect. It offloads the synchronization logic to the cloud, reducing the on-premises infrastructure footprint and simplifying the deployment of identity sync.
Microsoft Entra Connect is a synchronization tool that bridges on-premises Active Directory Domain Services with Microsoft Entra ID. It ensures that user identities, groups, and passwords are consistent across both environments, enabling a seamless single sign-on experience for hybrid users.
Microsoft Entra Hybrid Joined is a device state where a device is joined to both an on-premises Active Directory and Microsoft Entra ID. This allows organizations to maintain legacy GPO management while leveraging cloud-based single sign-on and conditional access policies.
Microsoft Entra ID is a cloud-based identity and access management service that helps organizations secure identities and manage access to applications. It provides single sign-on (SSO), multi-factor authentication, and conditional access to protect resources across the Microsoft 365 ecosystem and external cloud services.
Microsoft Entra ID Access Reviews is a governance feature that allows administrators to periodically review and certify the access rights of users to groups, applications, or privileged roles. This ensures the principle of least privilege is consistently maintained.
Microsoft Entra ID Administrative Units are logical containers used to delegate administrative permissions over a specific subset of users, groups, or devices. This allows an organization to implement a decentralized management model where admins can manage their own department or region without having tenant-wide access.
Microsoft Entra ID App Consent is the process where a user or administrator grants a third-party application permission to access specific data in the tenant. This ensures that apps only access the resources they are explicitly authorized to use via OAuth 2.0 scopes.
Microsoft Entra ID App Registrations is the process of registering an application with the identity provider to enable authentication and authorization. This allows the application to request specific permissions to access Microsoft Graph and other protected APIs within the tenant.
Microsoft Entra ID Application Proxy is a service that allows users to access on-premises web applications from outside the corporate network without needing a VPN. It provides a secure remote access solution by routing traffic through the cloud and enforcing Entra ID authentication.
Microsoft Entra ID Authentication Methods is a centralized management area used to configure and enable the specific ways users can authenticate, such as SMS, voice calls, or authenticator apps. It allows admins to enforce specific MFA methods across the tenant.
Microsoft Entra ID B2B Direct Connect is a feature that allows users from two different organizations to collaborate in shared channels in Microsoft Teams without needing to be added as guest users. It relies on a mutual trust relationship between tenants.
Microsoft Entra ID B2C is a customer identity access management (CIAM) solution that enables organizations to sign up, sign in, and manage profiles for external customers. It supports social identity providers, local accounts, and custom policies for consumer-facing applications.
Microsoft Entra ID Connect Health is a monitoring service that provides insights into the health of identity synchronization and federation infrastructure. It helps administrators identify and resolve synchronization errors and connectivity issues between on-premises Active Directory and the cloud.
Microsoft Entra ID Dynamic Groups are groups where membership is automatically updated based on specific user attributes defined by a rule. This eliminates the need for manual membership management as users join, leave, or change roles within the organization.
Microsoft Entra ID Enterprise Applications are objects that represent a service principal for a specific application, enabling administrators to manage single sign-on (SSO) and permission assignments. They act as the identity of the application within the tenant to control access to resources.
Microsoft Entra ID Federation is a trust relationship between Microsoft Entra ID and an external identity provider, such as AD FS. It allows users to be authenticated by the external provider before being granted access to Microsoft 365 services.
Microsoft Entra ID Governance is a suite of tools designed to manage the identity lifecycle, including access reviews, entitlement management, and privileged access. It ensures that users have the right access to the right resources for the right amount of time.
Microsoft Entra ID Group-Based Licensing is a method of assigning licenses to users by adding them to a specific security group rather than assigning licenses individually. This streamlines license management and ensures users automatically receive the required services upon group membership.
Microsoft Entra ID Identity Protection is a service that helps identify, investigate, and remediate identity-based risks. It utilizes machine learning to detect anomalies, such as leaked credentials or atypical travel, to protect user accounts from unauthorized access.
Microsoft Entra ID Joined is a device state where the device is registered and managed solely by Microsoft Entra ID. This removes the dependency on on-premises Active Directory, enabling cloud-native authentication and management via Intune for a modern workplace experience.
Microsoft Entra ID Lifecycle Workflows are automation tools within Identity Governance that manage tasks related to the joiner, mover, and leaver processes. They allow admins to trigger specific actions, like sending welcome emails or disabling accounts, based on attribute changes.
Microsoft Entra ID Managed Identity is an identity automatically managed by Microsoft Entra ID for Azure resources to authenticate to other services without storing credentials in code. It simplifies secret management by eliminating the need for manual rotations.
Microsoft Entra ID Pass-through Authentication (PTA) is an authentication method that validates user passwords against the on-premises Active Directory in real-time. This is ideal for organizations that cannot store password hashes in the cloud for security reasons.
Microsoft Entra ID Password Hash Synchronization (PHS) is an authentication method that synchronizes a hash of the user's on-premises password hash to Microsoft Entra ID. This allows users to sign in to cloud services using their local credentials.
Microsoft Entra ID Password Protection is a service that prevents users from choosing weak or common passwords that are easily guessed by attackers. It uses a global banned password list and allows organizations to add their own custom banned words to strengthen identity security.
Microsoft Entra ID Passwordless Authentication is a security framework that replaces traditional passwords with stronger alternatives such as the Microsoft Authenticator app, FIDO2 security keys, or Windows Hello for Business. This approach significantly reduces the risk of credential theft and phishing attacks.
Microsoft Entra ID Privileged Identity Management (PIM) is a service that allows organizations to manage, control, and monitor access to important resources. It provides just-in-time (JIT) system administration, reducing the risk of permanent high-privileged accounts by requiring activation for elevated roles.
Microsoft Entra ID Security Defaults are a set of basic security settings that Microsoft applies to tenants to provide a baseline level of protection. These settings require multi-factor authentication (MFA) for all users and block legacy authentication protocols that are more susceptible to attack.
Microsoft Entra ID Self-Service Password Reset (SSPR) allows users to reset their own passwords without contacting IT helpdesk support. It utilizes pre-registered authentication methods, such as mobile apps or email, to verify the user's identity before allowing them to create a new password.
Microsoft Entra ID Service Principal is a local representation of a global application object in a specific Microsoft Entra ID tenant. It defines the specific permissions and access rights the application has within that specific tenant environment.
Microsoft Entra ID Terms of Use is a feature that allows administrators to present a legal agreement to users before they can access specific applications. Users must accept the terms to proceed, providing a verifiable audit trail of acceptance for compliance purposes.
Microsoft Entra ID Verified ID is a decentralized identity solution based on open standards that allows users to hold and present digitally signed credentials in a secure wallet. It enables verifiable claims without relying on a central identity provider.
Microsoft Entra Privileged Identity Management (PIM) is a service that allows organizations to manage, control, and monitor access to important resources. It provides just-in-time (JIT) system administration, ensuring that users have elevated permissions only when needed and for a limited duration to reduce risk.
Microsoft Entra Self-Service Password Reset (SSPR) enables users to reset their own passwords without contacting IT support. This reduces help desk costs and increases productivity by allowing users to regain account access using registered authentication methods like phone or email.
Microsoft Graph API is the unified gateway to data and intelligence in Microsoft 365. It provides a single endpoint to access data across users, groups, calendars, emails, and files, enabling developers to build integrated apps and complex automation.
Microsoft Intune App Configuration Policies allow administrators to provide predefined settings for apps without requiring user interaction. These policies ensure that apps are configured correctly upon installation, improving the user experience and ensuring corporate security standards are met automatically.
Microsoft Intune Compliance Policies are a set of rules that define the minimum security requirements a device must meet to be considered compliant. If a device fails these requirements, such as lacking a password or being jailbroken, it can be blocked from accessing corporate data.
Microsoft Intune Device Enrollment is the process of registering a device into Microsoft Intune management to apply security policies and configurations. Enrollment can be performed manually by the user or automatically via tools like Windows Autopilot.
Microsoft Intune Endpoint Analytics is a tool that provides data-driven insights into the performance and health of Windows devices. It helps administrators proactively identify issues affecting user productivity, such as slow boot times or application crashes.
Microsoft Intune Enrollment is the process of registering a device into Microsoft Intune management to apply security policies and deploy applications. Enrollment can be performed via various methods, including Company Portal, ADE, or Autopilot, depending on the OS.
The Microsoft Intune Enrollment Status Page (ESP) is a screen shown to users during the device setup process. It tracks the installation of required apps and profiles, ensuring the device is fully configured before the user reaches the desktop.
Microsoft Purview is a comprehensive family of data governance, risk, and compliance solutions that help organizations manage their data estate. It provides a unified platform for data discovery, classification, and protection across on-premises, multi-cloud, and SaaS environments.
Microsoft Purview Audit (Premium) is an advanced auditing capability that provides longer data retention and more detailed event logs than the Standard version. It includes high-value events like MailItemsAccessed, which are critical for forensic investigations after a breach.
Microsoft Purview Communication Compliance is a tool used to detect, capture, and take action on inappropriate or non-compliant communications. It monitors messages across Teams, Exchange, and Viva Engage to ensure adherence to corporate policies and regulatory requirements.
Microsoft Purview Compliance Manager is a management tool that provides a compliance score and a set of improvement actions to help organizations meet regulatory requirements. It maps technical settings to specific legal and regulatory frameworks for better visibility.
Microsoft Purview Customer Lockbox is a security feature that ensures Microsoft engineers cannot access customer data to resolve support issues without explicit, time-bound approval. This provides an additional layer of control and auditing for highly regulated organizations.
Microsoft Purview Data Classification is the process of identifying and labeling data based on its sensitivity or type. It uses Sensitive Information Types (SITs) and trainable classifiers to automatically detect patterns, such as credit card numbers or medical records, across the M365 ecosystem.
Microsoft Purview Data Lifecycle Management is the framework used to manage the entire lifespan of data, from creation to deletion. It encompasses retention policies and labels to ensure data is kept for necessary periods and deleted when no longer required.
Microsoft Purview Information Barrier is a compliance feature that prevents specific groups of users from communicating or collaborating with each other. It is primarily used in highly regulated industries, such as finance, to prevent conflicts of interest or the illegal sharing of inside information.
Microsoft Purview Information Protection is a suite of tools used to discover, classify, and protect sensitive information across an organization. It utilizes sensitivity labels to apply encryption and access restrictions to documents and emails, regardless of where they are stored.
Microsoft Purview Insider Risk Management is a security solution that identifies and mitigates risky activities within an organization by analyzing signals from across Microsoft 365. It focuses on internal threats, such as data theft or leaks, by detecting anomalous user behavior.
Microsoft Purview Records Management is a framework used to manage the lifecycle of documents and emails that must be preserved for legal or regulatory reasons. It prevents the accidental deletion or modification of critical business records and ensures compliance.
Microsoft Purview Retention Policies are settings that dictate how long an organization keeps its data across Microsoft 365 services. These policies ensure that critical information is preserved for legal or regulatory requirements and automatically deleted once the retention period expires to reduce liability.
Microsoft Purview Sensitivity Labels are tags applied to documents, emails, and files to classify and protect data based on its level of sensitivity. These labels can trigger encryption, watermarking, and access restrictions to ensure only authorized users can view the content.
Microsoft Secure Score is a measurement of an organization's security posture based on the configuration of Microsoft 365 services. It provides a numerical value and actionable recommendations to reduce risk by implementing specific security controls across the tenant.
Microsoft Teams External Access, also known as federation, allows users to find, call, and chat with people in other organizations using Teams or Skype for Business. Unlike guest access, users remain in their own home tenant and do not join a specific team.
Microsoft Teams Governance refers to the administrative framework used to control the creation, naming, and lifecycle of Teams. It involves implementing policies for membership, external access, and app usage to maintain security and organization.
Microsoft Teams Guest Access allows people outside the organization to join a team as guests. Guests can participate in channels, chat, and share files, but their access is limited to the specific team they were invited to, and they require a Microsoft account.
Microsoft Teams Meeting Policies are settings that control the meeting experience for users, including who can bypass the lobby, who can present, and whether recording is enabled. These policies are assigned to users or groups to standardize meeting behavior across the organization.
Microsoft Teams Messaging Policies are configurations that determine the communication capabilities of users, such as the ability to send Giphys, use memes, or delete sent messages. These policies ensure corporate communication standards are maintained and restricted where necessary.
OneDrive for Business is a cloud-based storage service that allows users to store, share, and synchronize files across devices. It integrates deeply with Microsoft 365 and provides individual storage quotas managed by the administrator via the SharePoint admin center.
Passwordless Authentication is a security approach that replaces traditional passwords with stronger methods like the Microsoft Authenticator app, FIDO2 security keys, or Windows Hello for Business. This significantly reduces the risk of credential theft and phishing attacks.
A Privileged Access Strategy is a security framework designed to minimize the number of permanent administrators in a tenant. It emphasizes the use of 'least privilege' and 'just-in-time' access to reduce the attack surface for identity-based threats.
Privileged Identity Management (PIM) is a service in Microsoft Entra ID that provides just-in-time (JIT) administrative access. It allows users to request elevated permissions for a limited duration, requiring approval or justification to reduce the risk of permanent standing privileges.
Resource Mailboxes are used for scheduling physical locations or equipment, such as conference rooms or company vehicles. They automate the booking process by accepting or declining meeting requests based on the availability of the resource.
Retention Labels are Microsoft Purview settings applied to individual items in SharePoint, OneDrive, and Exchange to control how long a file or email is kept. They ensure that specific data is preserved for a required period or deleted automatically after a set timeframe to meet regulatory requirements.
Retention policies are settings in Microsoft Purview that determine how long data is kept and when it is permanently deleted. They help organizations meet legal requirements and business needs by automating the preservation or disposal of content across Exchange, SharePoint, and OneDrive.
Role-Based Access Control (RBAC) is a method of restricting system access to authorized users based on their specific job roles. In Microsoft 365, this ensures that administrators have only the minimum permissions necessary to perform their assigned tasks, adhering to the principle of least privilege.
Safe Attachments is a feature of Microsoft Defender for Office 365 that scans email attachments in a virtual sandbox environment. It protects users from zero-day malware by analyzing the actual behavior of the file before it is delivered to the mailbox.
Safe Links is a security feature in Microsoft Defender for Office 365 that provides time-of-click verification of URLs in emails and documents. It protects users from phishing and malicious websites by scanning links in real-time every time they are clicked.
Security Defaults are a set of basic security settings applied to a Microsoft Entra ID tenant to protect against common identity-based attacks. They enforce multi-factor authentication (MFA) for all users and block legacy authentication protocols by default.
Self-Service Password Reset (SSPR) is a feature in Microsoft Entra ID that allows users to reset their own passwords without administrator intervention. This reduces help desk tickets and increases productivity by enabling users to securely verify their identity via pre-registered methods.
Sensitive Information Types (SITs) are pattern-based classifiers used by Microsoft Purview to identify specific types of sensitive data, such as credit card numbers. They utilize regular expressions and checksums to automatically detect and label content for protection and compliance.
Sensitivity Labels are Microsoft Purview tools used to classify and protect sensitive data within Microsoft 365. They allow administrators to apply visual markings, encryption, and access restrictions to documents and emails, ensuring that sensitive information remains protected regardless of where the file is stored or shared.
A Service Principal is a local representation of a global application object in a specific Microsoft Entra ID tenant. It acts as a security identity used by applications to access specific Azure or Microsoft 365 resources securely without user interaction.
Shared Mailbox is a specialized mailbox in Exchange Online that multiple users can access to monitor and send email from a common address. It does not require a separate license if it remains under 50GB and is accessed by licensed users.
Shared Mailboxes are specialized mailboxes used by multiple users to monitor and send email from a common address, such as [email protected]. They do not require a separate license if they remain under 50GB and have delegated access.
A SharePoint Online Site Collection is a group of related websites that share a common administration, permissions, and storage quota. It serves as the primary container for content, allowing organizations to organize data by department, project, or functional area.
SharePoint Online Site Collections are groups of related websites that share a common top-level site and administrative boundary. They allow administrators to manage permissions, storage quotas, and settings at a collective level, organizing content logically for different departments or projects.
The Unified Audit Log is a centralized repository in Microsoft 365 that records user and administrator activities across Exchange, SharePoint, OneDrive, and Teams. It allows administrators to search and investigate events to troubleshoot issues or conduct forensic security analysis.
Windows Autopilot is a collection of technologies used to set up and pre-configure new devices, getting them ready for productive use. It simplifies the deployment process by allowing IT admins to ship devices directly to users, who then enroll them automatically via the cloud.
Windows Update for Business (WUfB) is a service that allows IT administrators to manage how Windows updates are deployed to devices. It enables the use of update rings to phase deployment and ensure stability across the organization.
We're adding new exams every week. Let us know what you're studying for, and we'll bump it up our priority list! (Typical turnaround: 2-3 days)
Your feedback has been submitted successfully. We appreciate your help in making Cert Sensei better!