SC-100 StudyGuide ENU FY23Q3 v2
SC-100 StudyGuide ENU FY23Q3 v2
Review the skills measured This list represents the skills measured AFTER the date provided.
as of May 5, 2023 Study this list if you plan to take the exam AFTER that date.
Review the skills measured Study this list of skills if you take your exam PRIOR to the date
prior to May 5, 2023 provided.
Change log You can go directly to the change log if you want to see the
changes that will be made on the date provided.
How to earn the Some certifications only require passing one exam, while others
certification require passing multiple exams.
Your Microsoft Learn Connecting your certification profile to Learn allows you to schedule
profile and renew exams and share and print certificates.
Exam sandbox You can explore the exam environment by visiting our exam
sandbox.
Request accommodations If you use assistive devices, require extra time, or need modification
to any part of the exam experience, you can request an
accommodation.
1
Exam SC-100: Microsoft Cybersecurity Architect
Take a practice test Are you ready to take the exam or do you need to study a bit more?
Note
The bullets that follow each of the skills measured are intended to illustrate how we are assessing that
skill. Related topics may be covered in the exam.
Note
Most questions cover features that are general availability (GA). The exam may contain questions on
Preview features if those features are commonly used.
2
Exam SC-100: Microsoft Cybersecurity Architect
To earn the Microsoft Cybersecurity Architect certification, candidates must also pass one of the
following exams: SC-200, SC-300, AZ-500, or MS-500. We strongly recommend that you do this before
taking this exam.
• Design solutions that align with security best practices and priorities (20–25%)
• Design security operations, identity, and compliance capabilities (30–35%)
• Design security solutions for infrastructure (20–25%)
• Design security solutions for applications and data (20–25%)
Design solutions that align with security best practices and priorities
(20–25%)
Design a resiliency strategy for ransomware and other attacks based on
Microsoft Security Best Practices
• Design a security strategy to support business resiliency goals, including identifying and
prioritizing threats to business-critical assets
• Design solutions that align with Microsoft ransomware best practices, including backup, restore,
and privileged access
• Design configurations for secure backup and restore by using Azure Backup for hybrid and
multicloud environments
• Design solutions for security updates
Design solutions that align with the Microsoft Cloud Adoption Framework for
Azure and the Azure Well-Architected Framework
• Design a new or evaluate an existing strategy for security and governance based on the CAF and
the Well-Architected Framework
• Recommend solutions for security and governance based on the the Microsoft Cloud Adoption
Framework for Azure and the Well-Architected Framework
• Design solutions for implementing and governing security by using an Azure landing zone
• Design a DevSecOps process
3
Exam SC-100: Microsoft Cybersecurity Architect
4
Exam SC-100: Microsoft Cybersecurity Architect
5
Exam SC-100: Microsoft Cybersecurity Architect
Study resources
We recommend that you train and get hands-on experience before you take the exam. We offer self-
study options and classroom training as well as links to documentation, community sites, and videos.
Get trained Choose from self-paced learning paths and modules or take an
instructor-led course
6
Exam SC-100: Microsoft Cybersecurity Architect
Change log
Key to understanding the table: The topic groups (also known as functional groups) are in bold typeface
followed by the objectives within each group. The table is a comparison between the two versions of
the exam skills measured and the third column describes the extent of the changes.
Skill area prior to May 5, 2023 Skill area as of May 5, 2023 Changes
7
Exam SC-100: Microsoft Cybersecurity Architect
Skill area prior to May 5, 2023 Skill area as of May 5, 2023 Changes
Design security for infrastructure Design security solutions for infrastructure % of exam
increased
Design a strategy for securing server Design solutions for securing server and client Minor
and client endpoints endpoints
Design a strategy for securing PaaS, Specify requirements for securing SaaS, PaaS, Major
IaaS, and SaaS services and IaaS services
Design a strategy for data and Design security solutions for applications Minor
applications and data
Specify security requirements for Design solutions for securing applications Major
applications
Design a strategy for securing data Design solutions for securing an Major
organization's data
Recommend security best practices Design solutions that align with security Minor
and priorities best practices and priorities
Recommend security best practices by Design solutions that align with the Microsoft Minor
using the Microsoft Cybersecurity Cybersecurity Reference Architecture (MCRA)
Reference Architecture (MCRA) and and Microsoft cloud security benchmark
Azure Security Benchmarks (MCSB)
Recommend a secure methodology by Design solutions that align with the Cloud Minor
using the Cloud Adoption Framework Adoption Framework (CAF) and Well-
(CAF) Architected Framework (WAF)
8
Exam SC-100: Microsoft Cybersecurity Architect
Skill area prior to May 5, 2023 Skill area as of May 5, 2023 Changes
9
Exam SC-100: Microsoft Cybersecurity Architect
10
Exam SC-100: Microsoft Cybersecurity Architect
11
Exam SC-100: Microsoft Cybersecurity Architect
12