Microsoft Certified:Security, Compliance, and Identity Fundamentals
The Microsoft Certified: Security, Compliance, and Identity Fundamentals certification validates foundational knowledge of security, compliance, and identity concepts across Microsoft cloud services. It is ideal for business stakeholders, IT professionals, and students interested in Microsoft solutions.
595 practice questions · Updated 2026-07-28
4Domains
14Objectives
112Concepts
595Questions
SC-900 Curriculum
Every domain, objective, and concept the SC-900 exam measures.
- Shared Responsibility Model
- Defense-in-Depth
- Zero Trust Model
- Encryption
- Hashing
- Governance Concepts
- Risk Management
- Compliance Concepts
- Identity as Security Perimeter
- Authentication Definition
- Authorization Definition
- Identity Providers
- Directory Services
- Active Directory Overview
- Federation Concept
- Microsoft Entra ID Overview
- Identity Types in Microsoft Entra ID
- Agent ID in Microsoft Entra ID
- Hybrid Identity Concept
- Hybrid Identity Implementation
- Authentication Methods Overview
- Password-Based Authentication
- Passwordless Authentication
- Biometric Authentication
- Multifactor Authentication (MFA)
- MFA Methods
- Conditional Access Policies
- Password Protection
- Password Management
- Self-Service Password Reset (SSPR)
- Conditional Access Policies
- Conditional Access Conditions
- Conditional Access Controls
- Role-Based Access Control (RBAC)
- Microsoft Entra Roles
- Custom Roles in Microsoft Entra
- Role Assignments
- Microsoft Entra ID Governance Overview
- Identity Lifecycle Management
- Access Reviews Purpose
- Conducting Access Reviews
- Microsoft Entra Privileged Identity Management Features
- Role Activation and Deactivation
- Microsoft Entra ID Protection Overview
- Risk Detection and Response
- Azure DDoS Protection Overview
- Azure DDoS Protection Tiers
- Azure Firewall Functionality
- Azure Firewall Policy Management
- Azure Web Application Firewall (WAF) Features
- Azure WAF Deployment
- Azure Virtual Networks Segmentation
- Network Security Groups (NSGs) Function
- NSG Rule Configuration
- Azure Bastion Service
- Azure Key Vault Overview
- Azure Key Vault Integration
- Microsoft Defender for Cloud Overview
- Defender for Cloud Features
- Cloud Security Posture Management (CSPM)
- Security Policies in Azure
- Security Standards in Azure
- Security Recommendations in Azure
- Cloud Workload Protection
- SIEM Definition
- SOAR Definition
- Microsoft Sentinel SIEM Capabilities
- Microsoft Sentinel SOAR Capabilities
- Threat Detection in Microsoft Sentinel
- Threat Mitigation in Microsoft Sentinel
- Microsoft Defender XDR Overview
- Microsoft Defender for Office 365
- Microsoft Defender for Endpoint
- Microsoft Defender for Cloud Apps
- Microsoft Defender for Identity
- Microsoft Defender Vulnerability Management
- Microsoft Defender Threat Intelligence
- Microsoft Defender Portal
- Service Trust Portal Overview
- Compliance Offerings
- Security and Privacy Reports
- Audit Reports
- Microsoft Privacy Principles
- Data Minimization
- Transparency
- Security Safeguards
- User Control
- Microsoft Purview Portal Overview
- Navigating Microsoft Purview Portal
- Compliance Manager Overview
- Compliance Manager Assessments
- Compliance Score Introduction
- Benefits of Compliance Score
- Data Classification Capabilities
- Content Explorer Benefits
- Activity Explorer Benefits
- Sensitivity Labels
- Sensitivity Label Policies
- Data Loss Prevention (DLP)
- Records Management
- Retention Policies
- Retention Labels
- Retention Label Policies
- Insider Risk Management Overview
- Insider Risk Policies
- Risk Indicators
- eDiscovery Overview
- eDiscovery Cases
- Content Search
- Audit Logging
- Audit Log Search
- Advanced Audit Capabilities
Ready to practice?Test your knowledge with exam-style questions or take an intelligent quiz tailored to your level.
Percentages reflect share of the current practice bank, not official exam weightings — no structured per-skill weight is published for SC-900, so none is invented.