This is top class certification exam of Microsoft. It is designed by group of Microsoft advanced level official certification experts. It has covered all the aspects of depth in the technical questions and delivery methodology of official Microsoft certification by following the complete exam syllabus. This certification questions will give you the most realistic experience in the real world exam.
Exam Details:
This Exam contains multiple choices, multi selection and true or false questions.
Exam Time Limit: 90 Minutes
Exam Syllabus:
Implement
Server Hardening Solutions (25-30%)
·
This objective may include but is not limited to: Determine
hardware and firmware requirements for secure boot and encryption key
functionality; deploy BitLocker encryption; deploy BitLocker without a Trusted
Platform Module (TPM); deploy BitLocker with a TPM only; configure the Network
Unlock feature; configure BitLocker Group Policy settings; enable Bitlocker to
use secure boot for platform and BCD integrity validation; configure BitLocker
on Cluster Shared Volumes (CSVs) and Storage Area Networks (SANs); implement
BitLocker Recovery Process using self-recovery and recovery password retrieval
solutions; configure Bitlocker for virtual machines (VMs) in Hyper-V; determine
usage scenarios for Encrypting File System (EFS); configure the EFS recovery
agent; manage EFS and BitLocker certificates, including backup and restore
·
This objective may include but is not limited to: Implement
antimalware solution with Windows Defender; integrate Windows Defender with
WSUS and Windows Update; configure Windows Defender using Group Policy;
configure Windows Defender scans using Windows PowerShell; implement AppLocker
rules; implement AppLocker rules using Windows PowerShell; implement Control
Flow Guard; implement Code Integrity (Device Guard) Policies; create Code
Integrity policy rules; create Code Integrity file rules
·
This objective may include but is not limited to: Determine
requirements for implementing Credential Guard; configure Credential Guard
using Group Policy, WMI, command prompt, and Windows PowerShell; implement NTLM
blocking
·
This objective may include but is not limited to: Install and
configure Microsoft Security Compliance Toolkit; create, view, and import
security baselines; deploy configurations to domain and non-domain joined
servers
Secure a Virtualization
Infrastructure (5-10%)
·
This objective may include but is not limited to: Install and
configure the Host Guardian Service (HGS); configure Admin-trusted attestation;
configure TPM-trusted attestation; configure the Key Protection Service using
HGS; migrate Shielded VMs to other guarded hosts; troubleshoot guarded hosts
·
This objective may include but is not limited to: Determine
requirements and scenarios for implementing Shielded VMs; create a shielded VM
using only a Hyper-V environment; enable and configure vTPM to allow an
operating system and data disk encryption within a VM; determine requirements
and scenarios for implementing encryption-supported VMs; troubleshoot Shielded
and encryption-supported VMs
Secure a Network Infrastructure
(10-15%)
·
This objective may include but is not limited to: Configure
Windows Firewall with Advanced Security; configure network location profiles;
configure and deploy profile rules; configure firewall rules for multiple profiles
using Group Policy; configure connection security rules using Group Policy, the
GUI management console, or Windows PowerShell; configure Windows Firewall to
allow or deny applications, scopes, ports, and users using Group Policy, the
GUI management console, or Windows PowerShell; configure authenticated firewall
exceptions; import and export settings
·
This objective may include but is not limited to: Determine
requirements and scenarios for Datacenter Firewall implementation with Software
Defined Networking; determine usage scenarios for Datacenter Firewall policies
and network security groups; Configure Datacenter Firewall Access Control Lists
·
This objective may include but is not limited to: Configure IPsec
transport and tunnel modes; configure IPsec authentication options; configure
connection security rules; implement isolation zones; implement domain
isolation; implement server isolation zones; determine SMB 3.1.1 protocol security
scenarios and implementations; enable SMB encryption on SMB Shares; configure
SMB signing via Group Policy; disable SMB 1.0; secure DNS traffic using DNSSEC
and DNS policies; install and configure Microsoft Message Analyzer (MMA) to
analyze network traffic
Manage Privileged Identities
(25-30%)
·
This objective may include but is not limited to: Create a new
administrative (bastion) forest in an existing Active Directory environment
using Microsoft Identity Manager (MIM); configure trusts between production and
bastion forests; create shadow principals in bastion forest; configure the MIM
Web portal; request privileged access using the MIM Web portal; determine
requirements and usage scenarios for Privileged Access Management (PAM)
solutions; create and Implement MIM policies; implement Just-in-Time
administration principals using time-based policies; request privileged access
using Windows PowerShell
·
This objective may include but is not limited to: Enable a JEA
solution on Windows Server 2016; create and configure session configuration
files; create and configure role capability files; create a JEA endpoint;
connect to a JEA endpoint on a server for administration; view logs; download
WMF 5.1 to a Windows Server 2008 R2; configure a JEA endpoint on a server using
Desired State Configuration (DSC)
·
This objective may include but is not limited to: Implement a PAWS
solution; configure User Rights Assignment group policies; configure security
options settings in Group Policy; enable and configure Remote Credential Guard
for remote desktop access; Implement an Enhanced Security Administrative
Environment (ESAE) administrative forest design approach; Determine usage
scenarios and requirements for implementing ESAE forest design architecture to
create a dedicated administrative forest
·
This objective may include but is not limited to: Install and
configure the LAPS tool; secure local administrator passwords using LAPS;
manage password parameters and properties using LAPS
Implement Threat Detection
Solutions (15-20%)
·
This objective may include but is not limited to: Determine the
differences and usage scenarios for using local audit policies and advanced
auditing policies; implement auditing using Group Policy and AuditPol.exe;
implement auditing using Windows PowerShell; create expression-based audit
policies; configure the Audit PNP Activity policy; configure the Audit Group
Membership policy; enable and configure Module, Script Block, and Transcription
logging in Windows PowerShell
·
This objective may include but is not limited to: Determine usage
scenarios for ATA; determine deployment requirements for ATA; install and
configure ATA Gateway on a dedicated server; install and configure ATA
Lightweight Gateway directly on a domain controller; configure alerts in ATA
Center when suspicious activity is detected; review and edit suspicious
activities on the attack time line
·
This objective may include but is not limited to: Determine usage
and deployment scenarios for OMS; determine security and auditing functions
available for use; determine Log Analytics usage scenarios
Implement Workload-Specific
Security (5-10%)
·
This objective may include but is not limited to: Determine usage
scenarios, supported server workloads, and requirements for deployments;
determine usage scenarios and requirements for Windows Server and Hyper-V
containers; install and configure containers
·
This objective may include but is not limited to: Install the File
Server Resource Manager (FSRM) role service; configure quotas; configure file
screens; configure storage reports; configure file management tasks; configure
File Classification Infrastructure (FCI) using FSRM; implement work folders;
configure file access auditing; configure user and device claim types;
implement policy changes and staging; perform access-denied remediation; create
and configure Central Access rules and policies; create and configure resource
properties and lists
How this exam is useful to you?
This exam is intended for the people who are preparing for the 70-744 Securing Windows Server 2016 Certification. This exam is prepared exclusively as per the real certification exam. This will definitely help to check your skills before attempting the main exam. Also it will give the complete idea how main exam will be.
This exam will evaluate your skills and will give you report on how far you are skillful in 70-744 Securing Windows Server 2016 certification exam.
In case you face any issues during the exam or you have any queries, email us at [email protected]
Wish you all the best for your certification exam and we are always ready to help you to get certified and grow in your career.
Extremely good mock exam
I got the feeling of writing real certification exam
This Windows Server 2016 certification exam has reached the expectation
All time best certifcations
Full value
Big Thanks to Vullam
Very good
All the questions in a Windows Server 2016 certification is very professional
Very realistic
The terms and conditions in Windows Server 2016 certification is absolutely matter
I am fan of Vullam
Best place to pass certification
The software exam is excellent
Good value for money
Very great amount of understanding kept in Windows Server 2016 certification exam
Very affordable
I am glad that I got opportunity to understand the real-time Windows Server 2016 certification exam
I got real feeling in the real Windows Server 2016 certification exam
I am so happy to you with a feedback on this Windows Server 2016 certification exam
Happily satisfied
I passed my certification just because of you
In this exam I got very good strength..
Very nice certification exam
Very tough but its very good
Real place for certification aspirants
Reallhy worthful
After passing Windows Server 2016 certification from here I got job
We can depend on it
Worth of money
Fantabulous
I got exactly equal score in the real certification for Windows Server 2016
Everythig is very good
Excellent and nice exam experience
I am very happy and confident for this Windows Server 2016 certification exam
Liked it so much
Very cool exam experience
Low price, more value
Exam Details:
This Exam contains multiple choices, multi selection and true or false questions.
Exam Time Limit: 90 Minutes
Check the instructions before starting the exam:
Read the exam instructions carefully and follow them to avoid any issues while writing the exam.
· Check the exam time limit before you start the exam.
· It is highly recommended to have faster internet access.
· No power cut shall happen during the exam. Hence the power backup for your system/laptop.
· In case your system/laptop gets shut down abruptly due to power cut, internet connectivity issues or any other reasons, your exam will be ended and will be considered as one attempt completed.
· Exam browser window shall not be closed once exam starts otherwise exam will be ended abruptly and same with losing your attempt as well.
· While writing the exam, if you click on back button of the browser tab then your exam will be ended abruptly and attempt will be lost. Hence it is highly recommended not use to back button of the browser button while/after writing the exam.
· Once exam time is completed, exam will be submitted automatically. Hence it is recommended to keep checking the timer which will be available at the exam window.
In case you face any issues during the exam, please email us at [email protected]
Copy Rights:
These are exams are prepared exclusively by Vullam experts team. This is copy right content. Copying or distribution of any of the exam content will considered as the violation of the terms and conditions and strict action will be taken against him/her as per the law.
Once Exam Starts:
· Once you click on the Start the Exam button, your exam starts.
· Timer at the right side of the exam page indicates the time remaining.
· Use Previous Question or Next Question buttons only to go to previous question or to go next question respectively.
· You can also find the questions right side of the exam window where you can select the question which you wanted to answer first.
· Once all questions are answered, you can submit all the answers.
· If you do not submit all the answers, your exam will not be evaluated and you will lose the exam attempt.
· Even if exam time out is done, exam will be submitted automatically
Once after exam is submitted:
· Once exam is submitted, your result will be shown in the screen immediately.
· Result shows Pass/Fail along with the achieved score.
· In the result user can find the questions which were answered correct and wrong.
· Once exam is submitted, result will emailed to the registered email id of the user.
· If the result is Pass then user will get the certificate of the exam to their registered email id.
In case you face any issues during the exam or you have any queries, email us at [email protected]
Wish you all the best for your certification exam and we are always ready to help you to get certified and grow in your career.
Please subscribe to this exam to view the exam documents.