Securing Windows Server 2016 (M20744)

Course Description

This 5-day, instructor-led course teaches IT professionals how they can enhance the security of the IT infrastructure that they administer. This course begins by emphasizing the importance of assuming that network breaches have occurred
already, and then teaches you how to protect administrative credentials and rights to help ensure that administrators can perform only the tasks that they need to, when they need to.

This course explains how you can use auditing and the Advanced Threat Analysis feature in Windows Server 2016 to identify security issues. You will also learn how to mitigate malware threats, secure your virtualization platform, and use deployment options such as Nano server and containers to enhance security. The course also explains how you can help protect access to files by using encryption and dynamic access control, and how you can enhance your network’s security.

Course Information

Length: 5 day

Format: Lecture and Lab

Delivery Method: Virtual / Onsite

Max. Capacity: 16


Want to learn more? Please fill out the form below and one of our team will reach out to you shortly.

Geography & Location
Apr 19, 2021 - 5 day(s)
Apr 19, 2021
Remote Central Time Zone
AMER, Remote Central Time Zone
$2995 USD
$2995 USD
Jul 19, 2021 - 5 day(s)
Jul 19, 2021
Remote Central Time Zone
AMER, Remote Central Time Zone
$2995 USD
$2995 USD
Oct 25, 2021 - 5 day(s)
Oct 25, 2021
Remote Central Time Zone
AMER, Remote Central Time Zone
$2995 USD
$2995 USD

Learning Objectives

  • Secure Windows Server
  • Protect credentials and implement privileged access workstations
  • Limit administrator rights with Just Enough Administration
  • Manage privileged access
  • Mitigate malware and threats
  • Analyze activity with advanced auditing and log analytics
  • Deploy and configure Advanced Threat Analytics and Microsoft Operations Management Suite
  • Configure Guarded Fabric virtual machines (VMs)
  • Use the Security Compliance Toolkit (SCT) and containers to improve security
  • Plan and protect data
  • Optimize and secure file services
  • Secure network traffic with firewalls and encryption
  • Secure network traffic by using DNSSEC and Message Analyzer


  1. Basic breach detection and incident response strategies
  2. Implementing user rights, security options, and group managed service accounts
  3. Configuring and deploying LAPs
  4. Limiting administrator privileges with JEA
  5. Limiting administrator privileges with PAM
  6. Securing applications with Windows Defender, AppLocker, and Device Guard Rules
  7. Configuring advanced auditing
  8. Deploying ATA, Microsoft Operations Management Suite, and Azure Security Center
  9. Guarded fabric with Admin-trusted attestation and shielded VMs
  10. Using SCT
  11. Deploying and configuring containers
  12. Protecting data by using encryption and BitLocker
  13. Quotas and file screening
  14. Implementing Dynamic Access Control
  15. Configuring Windows Firewall with Advanced Security
  16. Securing DNS
  17. Microsoft Message Analyzer and SMB encryption

Who Should Attend

This course is for IT professionals who need to securely administer Windows Server 2016 networks. These professionals typically work with networks that are configured as Windows Server domain-based environments, with managed access to the Internet and cloud services. Students who seek certification in the 70-744 Securing Windows server exam also will benefit from this course.