Security services in Microsoft 365 Flashcards
What security features does microsoft provide?
- Help protect users’ identities and control access to resources.
- Help protect against advanced threats.
- Recover quickly from security attacks.
- Control access to data by ensuring documents and emails are seen only by authorized people.
- Have control over security tools to enable visibility of your organization’s security infrastructure.
What main category can company security fall under?
- Identity. You manage this through Azure AD.
- Devices. These are managed by Windows Defender Security Center and Intune.
- Apps and data. You manage these using Office 365 Security & Compliance Center and Microsoft
Cloud App Security. - Infrastructure. You managed this with Azure Security Center
What can you use the Security and Compliance center for?
- View security alerts and configure security alert policies.
- Define and manage security roles (known as Permissions) for your users.
- Configure labels and label policies that allow you to identify and classify documents, email messages,
and so on. - Create and manage data loss prevention (DLP) policies.
- Manage data governance.
- Manage threats.
- Manage mail flow.
- Manage data privacy.
What is Cloud App Security?
is an add-on that you can combine with your Microsoft 365 subscription. Cloud App Security provides you with visibility of your cloud apps and services. It also provides sophisticated
analytics to help to identify and combat security threats, and enables you to control data flow in and out of your organization.
What features does Cloud App Security provide?
- Identify cloud apps used in your organization.
- Protect your sensitive information.
- Identify and mitigate threats in your cloud apps.
- Ensure compliance.
What can you use Azure Security Center for?
- Monitor security across on-premises and cloud workloads.
- Apply the policy to ensure compliance with security standards.
- Find and fix vulnerabilities before they can be exploited.
- Use access and application controls to block malicious activity.
- Leverage advanced analytics and threat intelligence to detect attacks.
- Simplify investigation for rapid threat response.
What is Microsoft MyAnalytics?
MyAnalytics lets you see how you spend your time at work. MyAnalytics accesses data from your Office 365 use to help you determine how you can become more efficient during your work day:
How does MyAnalytics work?
MyAnalytics uses data from your Office 365 mailbox; specifically, data about emails, meetings, and Skype calls and chats. MyAnalytics does not require an agent or tracking software on your device to capture this data
What is Microsoft Workplace Analytics?
Workplace Analytics helps you understand how your organization spends its time by providing you with information on how groups collaborate across your organization. This insight enables business decision-makers to push for cultural transformation within the organization.
What are the differences between Exchange Online and on-premises Exchange Server?
- Unlimited storage. Many on-premises deployments of Exchange Server place relatively low limits on mailbox sizes, such as one or two gigabytes (GB). Exchange Online supports larger mailboxes of 50 GB
or larger depending on the plan you have purchased. - High availability. For an on-premises Exchange Server, you need to purchase and configure hardware to store multiple mailbox copies and configure load balancing to achieve high availability. For true high availability, you also need an alternate data center. Whereas Exchange Online is automatically highly available with your data replicated to multiple data centers.
- Backups. Exchange Online does not have any built-in methods for configuring backups. Instead, you configure retention through single-item recovery and litigation hold.
- Automatic integration with other Office 365 features. Exchange Online offers additional features such as Office 365 groups, which integrate multiple Office 365 features. Another example is the online viewing and editing of email attachments.
- New features. Exchange Online has many features that do not exist in an on-premises Exchange server. Some of these features may be integrated into the on-premises Exchange servers in the future, but they will always appear first in Exchange Online because development happens there first.
- No access to Exchange Online databases or servers. Unlike an on-premises Exchange server where
you administer and manage Exchange servers and databases, Microsoft manages these items in
Exchange Online.
What are the differences between SharePoint Online and an on-premises SharePoint Server?
- Anti-malware protection is not included in SharePoint Server.
- Claims-based authentication is only provided with the SharePoint Server.
- Data loss prevention policies are available in SharePoint Online as part of Microsoft 365 E3 or Microsoft 365 E5 subscriptions.
- Encryption at rest is not available in SharePoint Server.
What is the difference between Skype for Business Online and an on-premises Skype for Business Server?
- Clients. The Skype for Business Online E3 and E5 subscriptions include the full Skype for Business
client, which is not provided with Skype for Business Server 2015. - Persistent chat. This feature is available in Skype for Business Server, but not for Skype for Business
Online. - Network Quality of Service (QoS) Differentiated Services Code Point (DSCP). This feature is
unavailable in Skype for Business Online. - AOL and Yahoo! Federation. This feature is unavailable in Skype for Business Online.
- Skype for Business meeting dial-in via Audio Conferencing (first-party). This feature is only available in Skype for Business Online with an Office 365 E5 subscription.
Skype for Business meeting dial-in via Certified Audio 6. Conferencing Provider (ACP). This feature is only available with Skype for Business Online. - Skype Meeting Broadcast. This feature is only available with Skype for Business Online.
- Voice calling auto attendants. This feature is only available in Skype for Business Online with an Office 365 E5 subscription.
- Unified Messaging interoperability with Exchange Server. This feature is only available with Skype
for Business Server.
What is Windows as a service model?
Windows as a service are the approach Microsoft introduced with Windows 10 to deploy, update and service the operating system. Instead of releasing a new version of Windows every three to five years, as the company did with past iterations of the operating system, Microsoft will continually update Windows 10. The updates are categorized in two ways: feature updates and quality updates.
How are revisions and updates propagated?
Feature updates, Quality updates, Servicing channels, Deployment rings,
What are Feature updates?
hese add new functionality and are released twice a year. Microsoft aims to package new features into biannual updates that can be readily deployed using existing management tools.
What are quality updates?
These provide greater reliability through security updates and fixes and are usually
issued at least once a month. On the second Tuesday of each month, a cumulative update is released
which supersedes all previous updates. This helps to ensure that organizations’ devices more closely
align to those used for testing in Microsoft.
What are servicing channels?
Windows as a service offer three servicing channels: the Windows Insider
Program, semi-annual, and long-term servicing.
What are deployment rings?
These updates are within tools such as Windows Server Update Services (WSUS). With deployment rings, you can group devices to receive updates via each of the servicing channels.
What are servicing channels?
Allow enterprises to decide when to deploy features:
The Semi-Annual channel receives feature updates twice per year.
The Long-Term Servicing Channel is used for specialized devices that have new feature releases every 2-3 years, such as ATMs.
What is Windows Insider Program?
Users become familiar with feature updates before they are released to
the wider public. This enables organizations to use these feature updates before the wider public
deployment. In addition, users can provide feedback to Microsoft to help resolve any issues with
updates.
What is semi- annual channels?
Computers configured in the Semi-Annual Channel receive updates as soon
as Microsoft publishes them. There are two Semi-Annual Channels: semi-annual (targeted) is aimed at
a subset of your users, while semi-annual is aimed at all other users.
What are long-term servicing channels?
For computers and other devices that perform a single task or several specialized tasks, the long-term servicing channel prevents configured devices from receiving feature updates. However, quality updates delivery is not affected. Note that the Long-term Servicing Channel is available only in the Windows 10 Enterprise LTSB edition.
What are deployment rings?
In Windows 10, you can use deployment rings to further control how and when updates are applied to
your devices.
What are windows as a service?
Windows as a service help streamline this process by helping to avoid these major shifts in the organizational
infrastructure. Instead, it provides continual updates for devices.
What methods are used to aid with deployment?
Cloud-based methods and On-premises methods.
What are Cloud-based methods?
Cloud-based methods include Windows Autopilot, Subscription Activation,
and either Azure AD or MDM. These three methods enable you to join a device running Windows 10 to Azure AD, and to configure the device according to organizational standards.
What are On-premises methods?
You can use tools such as Microsoft Deployment Toolkit (MDT) and SCCM to support on-premises methods. These tools support bare metal computer, refresh, and replace scenarios. In addition, you can use In-place upgrades to upgrade a device from a supported operating system to Windows 10.