Everything you need to know to prepare for and pass the Microsoft 365 Administrator Expert certification
Duration
100 minutes
Number of Questions
40-60 questions
Passing Score
700 out of 1000
Exam Cost
$165 USD
Question Types
Multiple choice, case studies, drag-and-drop, build-list
Prerequisites
MS-900 or equivalent experience recommended
Deploy and manage a Microsoft 365 tenant
25-30%Implement and manage Microsoft Entra identity and access
25-30%Manage security and threats by using Microsoft Defender XDR
30-35%Manage compliance by using Microsoft Purview
10-15%MS-102 is heavily scenario-based. Set up a Microsoft 365 developer tenant (free via Microsoft 365 Developer Program) and practice configuring Conditional Access policies, Safe Links, sensitivity labels, and DLP policies. Hands-on experience is irreplaceable for this exam.
At 30-35%, Defender XDR is the single heaviest domain. Understand the difference between Defender for Office 365 Plan 1 vs Plan 2 features, MDI sensor deployment, and how MDE onboarding works. Know how to triage incidents in the unified portal.
Know when to use Security Defaults (small orgs, no Entra ID P1), Conditional Access policies (P1 required), and PIM (P2 required). Understand that enabling Conditional Access disables Security Defaults — you cannot have both.
Understand the difference between sensitivity labels (classification + protection) and retention labels (lifecycle management). Know DLP policy flow: conditions → actions, and how endpoint DLP extends coverage to Windows devices.
Microsoft Learn offers free, official learning paths aligned to MS-102 objectives. The "Microsoft 365 Administrator Expert" learning path is structured to match the exam domains and includes interactive sandboxes.
Week 1: Tenant Management + Entra Identity
Configure tenant settings, add custom domains, manage users and licenses, set up Conditional Access policies, enable SSPR and MFA.
Week 2: Entra Advanced + PIM
Configure hybrid identity (Connect Sync), PIM role activation and access reviews, Identity Protection risk policies, passwordless authentication methods.
Week 3: Defender XDR (2 weeks weight)
Configure Safe Links and Safe Attachments, anti-phishing policies, onboard endpoints to MDE, set up MDI sensors, explore MCAS cloud discovery and policies.
Week 4: Purview Compliance + Practice Exams
Create sensitivity labels and DLP policies, configure retention policies, run content searches and eDiscovery holds, then take all 3 practice exams.