Skip to main content
Certifications · Microsoft

Microsoft

Microsoft SC-200

Microsoft Security Operations Analyst Associate

The Microsoft SOC analyst credential: detect, hunt and respond with Microsoft Sentinel, Defender XDR and KQL, the stack most enterprise SOCs actually run.

AssociateSecurity OperationsExam SC-200Boot CampSelf-Paced4-day boot camp
Provider
Microsoft
Exam
SC-200
Level
Associate
Formats
Boot Camp · Self-Paced
Duration
4-day boot camp

What the exam covers

4

The full domain breakdown Microsoft SC-200 tests you on, and exactly what your prep with us is built around.

1

Manage a security operations environment

2

Configure protections & detections

3

Manage incident response

4

Manage security threats & hunting with KQL

Recommended before this

1

Credentials that build the foundation Microsoft SC-200 expects.

Where to go next

1

Natural next certifications once Microsoft SC-200 is behind you.

Roles this opens up

5
SOC AnalystSecurity Operations AnalystMicrosoft Sentinel AnalystJunior Detection EngineerIncident Response Analyst

Who it's for

SOC analysts defending Microsoft 365 and Azure estates.

  • Guided study against the exam blueprint
  • Practice questions & mock exams
  • An instructor who has sat the exam

How we prepare you

Boot Camp

Intensive, exam-focused days with an instructor

Self-Paced

Study on your own schedule with the full curriculum

Ready to get certified?

Sit your Microsoft SC-200 exam with confidence.

Join the next cohort, or talk to us about sponsoring your team.