Topics of Microsoft 98-367: Security Fundamentals Exam
Candidates must know the exam topics before they start of preparation. because it will really help them in hitting the core. Our Microsoft 98-367: Security Fundamentals Exam exam dumps will include the following topics:
1. Understand security layers (25-30%)
Understand core security principles
- Confidentiality; integrity; availability; how threat and risk impact principles; principle of least privilege; social engineering; attack surface analysis; threat modelling
Understand physical security
- Site security; computer security; removable devices and drives; access control; mobile device security; keyloggers
Understand Internet security
- Browser security settings; secure websites
Understand wireless security
- Advantages and disadvantages of specific security types; keys; service set identifiers (SSIDs); MAC filters
2. Understand operating system security (35-40%)
Understand user authentication
- Multifactor authentication; physical and virtual smart cards; Remote Authentication Dial-In User Service (RADIUS); biometrics; use Run As to perform administrative tasks
Understand permissions
- File system permissions; share permissions; registry; Active Directory; enable or disable inheritance; behavior when moving or copying files within the same disk or on another disk; multiple groups with different permissions; basic permissions and advanced permissions; take ownership; delegation; inheritance
Understand password policies
- Password complexity; account lockout; password length; password history; time between password changes; enforce by using Group Policies; common attack methods; password reset procedures; protect domain user account passwords
Understand audit policies
- Types of auditing; what can be audited; enable auditing; what to audit for specific purposes; where to save audit information; how to secure audit information
Understand encryption
- Encrypting file system (EFS); how EFS-encrypted folders impact moving/copying files; BitLocker (To Go); TPM; software-based encryption; MAIL encryption and signing and other uses; virtual private network (VPN); public key/private key; encryption algorithms; certificate properties; certificate services; PKI/certificate services infrastructure; token devices; lock down devices to run only trusted applications
Understand malware
- Buffer overflow; viruses, polymorphic viruses; worms; Trojan horses; spyware; ransomware; adware; rootkits; backdoors; zero day attacks
3. Understand network security (20-25%)
Understand dedicated firewalls
- Types of hardware firewalls and their characteristics; when to use a hardware firewall instead of a software firewall; stateful versus stateless firewall inspection; Security Compliance Manager; security baselines
Understand network isolation
- Routing; honeypot; perimeter networks; network address translation (NAT); VPN; IPsec; server and domain isolation
Understand protocol security
- Protocol spoofing; IPsec; tunneling; DNSsec; network sniffing; denial-of-service (DoS) attacks; common attack methods
4. Understand security software (15-20%)
Understand client protection
- Antivirus; protect against unwanted software installations; User Account Control (UAC); keep client operating system and software updated; encrypt offline folders, software restriction policies; principle of least privilege
Understand email protection
- Antispam, antivirus, spoofing, phishing, and pharming; client versus server protection; Sender Policy Framework (SPF) records; PTR records
Understand server protection
- Separation of services; hardening; keep server updated; secure dynamic Domain Name System (DNS) updates; disable unsecure authentication protocols; Read-Only Domain Controllers (RODC)
Reference: https://www.microsoft.com/en-us/learning/exam-98-367.aspx
Conclusion
As you have already noted, Microsoft genuinely cares about candidates and promotes the positive test-taking and professional growth of everyone without exception. However, the decision that could be pivotal to your career is always up to you. Whether it's an official Microsoft training course, study guides, practice tests, or third-party sources that match your learning style, you have all the tools you have to excel in the final test and take the Microsoft 98-367 exam on the first try. Go for it!
Microsoft 98-367日本語 Exam Syllabus Topics:
| Section | Weight | Objectives |
|---|---|---|
| Understand Operating System Security | 30-35% | - User account control - Malware protection - Secure operating systems - Group policy - Encryption |
| Understand Security Layers | 25-30% | - Internet security - Physical security - Authentication, authorization, and accounting - Security policies |
| Understand Security Software | 15-20% | - Antivirus and anti-malware - Patch management - Antispyware - Software firewalls |
| Understand Network Security | 20-25% | - Wireless security - Network isolation - Remote access security - Protocol security - Firewalls |














0 Customer Reviews
Quality and ValueITCertKing Practice Exams are written to the highest standards of technical accuracy, using only certified subject matter experts and published authors for development - no all study materials.
Tested and ApprovedWe are committed to the process of vendor and third party approvals. We believe professionals and executives alike deserve the confidence of quality coverage these authorizations provide.
Easy to PassIf you prepare for the exams using our ITCertKing testing engine, It is easy to succeed for all certifications in the first attempt. You don't have to deal with all dumps or any free torrent / rapidshare all stuff.
Try Before BuyITCertKing offers free demo of each product. You can check out the interface, question quality and usability of our practice exams before you decide to buy.
