Plan and implement Microsoft Entra multifactor authentication
Manage user authentication
Plan, implement, and administer Conditional Access
Manage Microsoft Entra ID Protection
Implement access management for Azure resources
100

This feature allows for Non-GA's to use MFA without requiring any additional cost.

What are security defaults on?

100

Bad passwords, good password and, Better password and, Best Passowrdless are examples of. 

What are authentication methods?

100

Policies that are if-then statements: If an assignment is met, then apply these access controls

What is Conditional Access?

100

Is a service that enables organizations to view the security posture of any account.

What is Identity protection?

100

Is the authorization system to manage access to Azure resources.

What is Azure role-based access control (Azure RBAC)?

200

Gives users the ability to change or reset their password, with no administrator or help desk involvement

What is SSPR?

200

An open specification for passwordless authentication.

What is FIDO2?

200

Limit the experience of the user/application within a specific cloud application.

What are Conditional Access session controls?

200

Minimum Entra tier to be able to use Identity protection.

Microsoft Entra ID Premium P2 or M365 E5?

200

Provide an automatically identity in Microsoft Entra ID for applications to use when connecting to resources

What are Managed Identities?

300

Minimum Entra tier to be able to use SSPR, MFA and Conditional Access.

What is Entra Premium P1 or M365 E3?

300

Mobile application that provides an extra layer of security to your online accounts by generating time-based one-time passwords (TOTPs)

What is an Authenticator App?

300

Provides a means to verify who you are using more than just a username and password.

What is MFA registration policy?

300

Determines whether a user, application, or group, can do operations on Key Vault secrets, keys, and certificates.

What is a Key Vault Access policy?

400

Are categories of authentication factors. 

What are something you know, possess and are?

400

Provides a global and custom banned password list to prevent users from creating easy to guess passwords that are weak against dictionary-based attacks.

What is Microsoft Entra password protection?

400

A cloud-based security solution that helps secure your identity monitoring across your organization including On-Premise.  Requires an agent to be installed on DCs

What is Microsoft Defender for Identity?

M
e
n
u