AD0.11 Interactive Lab: Security Posture Assessment
Interactive Lab: Security Posture Assessment
This lab uses the alert simulator to walk you through a security posture assessment of Northgate Engineering’s M365 environment. You’ll evaluate the current state of identity, email, device, and monitoring controls against the baseline you learned in this module, then prioritise the improvement actions that deliver the highest impact.
What you practised
This lab tested your ability to assess a tenant’s security posture using the four-category framework (Identity, Email, Devices, Data & Monitoring), identify the highest-impact gaps, and prioritise improvements in the correct sequence. The key judgment was distinguishing between controls that are high-impact and low-effort (MFA enforcement, legacy auth blocking) versus controls that are important but require more preparation (device compliance, sensitivity labels).
Connection to Module AD1
In the next module, you’ll build the identity controls that scored lowest in this assessment — deploying MFA through conditional access, blocking legacy authentication, configuring self-service password reset, and building the first three conditional access policies that replace security defaults.
You're reading the free modules of M365 Security: From Admin to Defender
The full course continues with advanced topics, production detection rules, worked investigation scenarios, and deployable artifacts. Premium subscribers get access to all courses.