In this section
Interactive Lab: Security Posture Assessment
Interactive Lab: Security Posture Assessment
This lab uses the alert simulator to walk you through a security posture assessment of Northgate Engineering's M365 environment. You'll evaluate the current state of identity, email, device, and monitoring controls against the baseline you learned in this module, then prioritize the improvement actions that deliver the highest impact.
What you practised
This lab tested your ability to assess a tenant's security posture using the four-category framework (Identity, Email, Devices, Data & Monitoring), identify the highest-impact gaps, and prioritize improvements in the correct sequence. The key judgment was distinguishing between controls that are high-impact and low-effort (MFA enforcement, legacy auth blocking) versus controls that are important but require more preparation (device compliance, sensitivity labels).
Connection to Module AD1
In the next module, you'll build the identity controls that scored lowest in this assessment — deploying MFA through conditional access, blocking legacy authentication, configuring self-service password reset, and building the first three conditional access policies that replace security defaults.
Get weekly detection and investigation techniques
KQL queries, detection rules, and investigation methods — the same depth as this course, delivered every Tuesday.
No spam. Unsubscribe anytime. ~2,000 security practitioners.