Perform Windows Server secure administration

Intermediate
Administrator
Solution Architect
Technology Manager
Windows Server

This module covers how to apply secure administration practices in Windows Server environments. You learn how to implement the principle of least privilege by identifying and restricting membership in built-in privileged groups such as Enterprise Admins and Domain Admins, delegate administrative control using the Delegation of Control Wizard and Restricted Groups, deploy Privileged Access Workstations (PAWs) with Windows Defender Application Control, Credential Guard, and Device Guard, and configure jump servers for controlled remote access to sensitive infrastructure.

Learning objectives

After completing this module, you'll be able to:

  • Explain least privilege administrative models.
  • Implement delegated privilege.
  • Describe privileged access workstations.
  • Describe jump servers.

Prerequisites

To get the best learning experience from this module, you should have knowledge and experience of:

  • Windows Server systems administration.
  • Basic security best practices.
  • Windows client operating systems such as Windows 11.
  • Working with command-line tools.