Microsoft 365 Academy
Configure Microsoft 365, Entra ID, Intune, Exchange Online, Teams and SharePoint Online securely — with best practices and PowerShell references.
View topicsTopic overview
Microsoft Entra ID (Azure AD)
- User and group management with a clear naming convention
- Conditional Access policies for risk-based sign-in
- Multi-factor authentication mandatory for all admin accounts
- Privileged Identity Management (PIM) for time-limited admin rights
Microsoft Intune (Device Management)
- Define compliance policies for Windows, iOS, Android and macOS
- Distribute configuration profiles centrally (WiFi, VPN, certificates)
- App protection policies also for BYOD devices without full enrollment
- Autopilot for zero-touch provisioning of new devices
Exchange Online
- Set up mail flow rules for compliance and spam protection
- Use shared mailboxes instead of shared credentials
- Retention policies for legal retention requirements
- Configure DKIM, SPF and DMARC correctly (see IT Center)
Microsoft Teams
- Use Teams templates for recurring project structures
- Deliberately control guest access and external collaboration
- Set retention policies for chats and channels
- Keep Teams naming convention consistent with M365 groups
SharePoint Online
- Plan the information architecture before creating the first site
- Configure organization-level sharing settings restrictively
- Use sensitivity labels for confidential documents
- Define the site lifecycle (creation, archiving, deletion)
PowerShell Automation
- Use the Microsoft Graph PowerShell SDK instead of the deprecated MSOnline modules
- Bulk operations (bulk import, update) via CSV-driven scripts
- App registration with a certificate instead of plaintext credentials for automation
- Version scripts and document them in a repository
How it works
Choose a topic
Six central M365 areas at a glance.
Read best practices
Concrete recommendations per area.
Use the matching tool
Linked directly to generators and planners.
Benefits
Good to know about this tool
Provides a structured overview of the key configuration areas in Microsoft 365, with best practices and links to the Academy tools.
Because Microsoft 365 consists of many interlocking services, and misconfigurations often lead to security gaps or administrative chaos.
Frequently Asked Questions
Does this guide replace a Microsoft certification?
No, it serves as a practical starting point and reference — for in-depth knowledge, official Microsoft Learn paths are recommended.
The information, templates, scripts, calculations and recommendations provided are intended for educational and assistance purposes only. Always review and test any generated result before production use. IT Smart Service accepts no liability for misuse, data loss, outages, security incidents, or legal, financial or technical damages arising from incorrect or improper use. Responsibility for validation, testing and deployment decisions rests with the user.
Related Tools
Microsoft 365 License Planner
Get recommended Microsoft 365 licenses per department/role — with a cost estimate.
Microsoft 365 Naming Convention Generator
Define and document naming patterns for users, groups, teams, shared mailboxes and device names.
Microsoft 365 Bulk User Generator
Create multiple Microsoft 365 users at once — UPN, alias and password generated automatically.
Microsoft 365 Groups Generator
Define Microsoft 365 and security groups with a naming convention and members.
Network problems? We come on-site in Magdeburg and the surrounding area.
Learn more →Need professional IT support?
Our team can help if the free tool is not enough for your project.
