Credential type: certification examination · verified on the issuer's site September 19, 2026 issuer page
Scheduled retirement
MS-102 retires on November 30, 2026
Microsoft will retire MS-102 on 2026-11-30. The exam remains schedulable before the cutoff. The reviewed official retirement list and exam guide do not name a direct replacement, so Cert Atlas does not infer one.
No direct replacement is named in the reviewed official sources.
What This Exam Validates
MS-102, Microsoft 365 Administrator, remains available only until 2026-11-30. Its published domains cover Deploy and manage a Microsoft 365 tenant, Implement and manage Microsoft Entra identity and access, Manage security and threats by using Microsoft Defender XDR, Manage compliance by using Microsoft Purview. MS-102 describes the integrating-hub role rather than a single workload specialty. The strongest preparation follows a change across tenant configuration, identity synchronization, Conditional Access, Defender XDR, endpoint protection, and Purview so that security and compliance effects are visible end to end. Microsoft does not name a direct replacement in the reviewed official sources. This page keeps the dated blueprint useful while separating verified lifecycle facts from recommendations.
Who Should Take This Exam
The original audience was Microsoft 365 administrators who coordinate tenant, identity, security, endpoint, collaboration, and compliance work across cloud and hybrid environments. Current candidates should use the cutoff and active Microsoft catalog to decide whether MS-102 still fits; the absence of a named replacement is not evidence that a similarly named exam is equivalent.
Skills You Should Be Ready to Demonstrate
- Deploy, license, monitor, and delegate administration in a Microsoft 365 tenant
- Operate synchronized identity, authentication methods, Identity Protection, and Conditional Access
- Investigate and respond across Defender XDR, Defender for Office 365, Endpoint, and Cloud Apps
- Implement Purview information protection, retention, data loss prevention, and alert response
How to Prepare Before Retirement
Use a test tenant to build operational runbooks for onboarding, role delegation, identity synchronization, secure access, threat investigation, endpoint response, and information protection. For each task, capture prerequisites, least-privilege roles, the correct admin surface, verification evidence, and a recovery path. Start with the dated Microsoft guide, map each objective to a task, decision, observable result, and failure mode, and use domain ranges to balance coverage rather than predict question counts. Keep notes labeled with the guide date so future product or blueprint changes do not silently contaminate the plan.
Transition checklist
- Complete and schedule MS-102 before 2026-11-30 only if the remaining window supports a sound preparation plan.
- Use Microsoft's active credential catalog to choose a current path by job role and required skills.
- Do not treat a similarly named course, product, or credential as a replacement unless Microsoft explicitly says so.
- Map reusable knowledge to the selected current guide, then rebuild labs and review around that guide's dated objectives.
Domain Study Guidance
Deploy and manage a Microsoft 365 tenant: Study Guidance
Domain 1, Deploy and manage a Microsoft 365 tenant, organizes related decisions rather than isolated product facts. The current outline includes Implement and manage Microsoft Entra identity and access; Manage users and groups. Practice by connecting the configuration or recommendation to prerequisites, downstream effects, evidence of success, and a safe correction when the expected result is not observed.
- Turn every Deploy and manage a Microsoft 365 tenant objective into a concrete task or decision you can explain
- Record the prerequisite, implementation choice, verification signal, and failure mode
- Mix this domain with adjacent domains so dependencies remain visible
Implement and manage Microsoft Entra identity and access: Study Guidance
Domain 2, Implement and manage Microsoft Entra identity and access, organizes related decisions rather than isolated product facts. The current outline includes Implement and manage identity synchronization with Microsoft Entra tenant; Implement and manage authentication; Implement and manage secure access. Practice by connecting the configuration or recommendation to prerequisites, downstream effects, evidence of success, and a safe correction when the expected result is not observed.
- Turn every Implement and manage Microsoft Entra identity and access objective into a concrete task or decision you can explain
- Record the prerequisite, implementation choice, verification signal, and failure mode
- Mix this domain with adjacent domains so dependencies remain visible
Manage security and threats by using Microsoft Defender XDR: Study Guidance
Domain 3, Manage security and threats by using Microsoft Defender XDR, organizes related decisions rather than isolated product facts. The current outline includes Review and respond to security reports and alerts generated by Microsoft Defender XDR; Implement and manage email and collaboration protection by using Microsoft Defender for Office 365; Implement and manage endpoint protection by using Microsoft Defender for Endpoint. Practice by connecting the configuration or recommendation to prerequisites, downstream effects, evidence of success, and a safe correction when the expected result is not observed.
- Turn every Manage security and threats by using Microsoft Defender XDR objective into a concrete task or decision you can explain
- Record the prerequisite, implementation choice, verification signal, and failure mode
- Mix this domain with adjacent domains so dependencies remain visible
Manage compliance by using Microsoft Purview: Study Guidance
Domain 4, Manage compliance by using Microsoft Purview, organizes related decisions rather than isolated product facts. The current outline includes Implement Microsoft Purview information protection and data lifecycle management; Implement Microsoft Purview data loss prevention (DLP). Practice by connecting the configuration or recommendation to prerequisites, downstream effects, evidence of success, and a safe correction when the expected result is not observed.
- Turn every Manage compliance by using Microsoft Purview objective into a concrete task or decision you can explain
- Record the prerequisite, implementation choice, verification signal, and failure mode
- Mix this domain with adjacent domains so dependencies remain visible
Exam-Day Guidance
Microsoft lists 2026-11-30 as the retirement date. Verify the official page immediately before booking, allow time for identity and accommodation requirements, and do not assume a retake can be scheduled after the cutoff.
Sources and Verification
Verified 2026-08-26
How this page was made
Cert Atlas reviewed Microsoft's dated MS-102 study guide and official retirement list and checked those sources for an explicitly named replacement. The lifecycle, weights, and editorial claims were checked against the linked official pages; no exam questions, answers, choices, or explanations were used.
Exam Domains
1.0 Deploy and manage a Microsoft 365 tenant
25-30%
- 1.1Implement and manage Microsoft Entra identity and access
Create a tenant; Implement and manage domains; Configure org settings, including Security & privacy and Organization profile; Monitor the health of Microsoft 365 services by using Service Health, including configuration of notifications; Configure and review Network connectivity insights; Configure and monitor software updates by using the Microsoft 365 admin center; Monitor Microsoft 365 adoption and usage; Configure and manage Microsoft 365 Backup
- 1.2Manage users and groups
Create and manage users in Microsoft Entra ID, including external users; Create and manage contacts in the Microsoft 365 admin center; Create and manage groups, including Microsoft 365 Groups and manage shared mailboxes; Manage and monitor Microsoft 365 licenses, including group-based licensing; Perform bulk user management, including Microsoft Graph PowerShell and Microsoft Entra PowerShell; Manage roles and role groups
2.0 Implement and manage Microsoft Entra identity and access
25-30%
- 2.1Implement and manage identity synchronization with Microsoft Entra tenant
Prepare for identity synchronization, including IdFix; Implement and manage directory synchronization by using Microsoft Entra Connect Sync or Microsoft Entra Cloud Sync; Monitor synchronization by using Microsoft Entra Connect Health; Troubleshoot synchronization, including Microsoft Entra Connect Sync and Microsoft Entra Cloud Sync
- 2.2Implement and manage authentication
Implement and manage authentication methods; Implement and manage self-service password reset (SSPR); Implement and manage Microsoft Entra Password Protection; Investigate and resolve authentication issues
- 2.3Implement and manage secure access
Plan for identity protection; Implement and manage Microsoft Entra Identity Protection; Plan Conditional Access policies; Implement and manage Conditional Access policies; Implement and manage multifactor authentication (MFA) by using Conditional Access policies
3.0 Manage security and threats by using Microsoft Defender XDR
30-35%
- 3.1Review and respond to security reports and alerts generated by Microsoft Defender XDR
Review and respond to threats by using Microsoft Security Exposure Management, including the Microsoft Secure Score; Review and respond to incidents and alerts generated by Microsoft Defender XDR, including advanced hunting; Review and respond to issues identified in Microsoft Defender XDR reports; Review and respond to threats identified by Microsoft Defender Threat Intelligence
- 3.2Implement and manage email and collaboration protection by using Microsoft Defender for Office 365
Implement threat policies and rules in Microsoft Defender for Office 365; Configure alert policies in Microsoft Defender for Office 365; Investigate and respond to email and collaboration threats by using Microsoft Defender for Office 365; Manage attack simulations, including training campaigns; Manage restricted entities, including blocked users
- 3.3Implement and manage endpoint protection by using Microsoft Defender for Endpoint
Onboard devices to Microsoft Defender for Endpoint; Configure endpoint settings; Review and respond to vulnerabilities identified in the Microsoft Defender Vulnerability Management dashboard
- 3.4Implement and manage Microsoft Defender for Cloud Apps
Configure the app connector for Microsoft 365; Configure Microsoft Defender for Cloud Apps policies, including triggering alerts; Interpret activity log; Configure Cloud App Discovery; Review and respond to issues identified in Cloud App Discovery
4.0 Manage compliance by using Microsoft Purview
10-15%
- 4.1Implement Microsoft Purview information protection and data lifecycle management
Implement and manage sensitive information types by using keywords, keyword lists, or regular expressions; Implement retention labels, retention label policies, and retention policies; Implement sensitivity labels and sensitivity label policies; Monitor label usage by using Content explorer, Activity explorer, and label reports
- 4.2Implement Microsoft Purview data loss prevention (DLP)
Configure DLP policies for Microsoft 365 workloads, including Exchange Online, SharePoint Online, OneDrive, Teams, Power BI, and Microsoft 365 Copilot; Configure Endpoint DLP; Review and respond to DLP alerts, events, and reports
Exam Details
Question TypesMultiple Choice, Multiple Response, Drag and Drop, Case Study, Build List, Hot Area, Repeated Answer Choices
FormatLinear
Online ProctoringAvailable
ID RequirementsOne valid, government-issued photo ID. Name on ID must match registration. For online: webcam required, room must be clear of people and materials.
RenewalRequired -- Microsoft certifications (Associate/Expert/Specialty) are renewed annually for free via a short renewal assessment on Microsoft Learn. Renewal assessment available 6 months before expiry. Fundamentals certifications do not expire.
PrerequisitesMicrosoft 365 Certified: Endpoint Administrator Associate, Microsoft 365 Certified: Teams Administrator Associate, or Microsoft 365 Certified: Identity and Access Administrator Associate certification.
Retake PolicyNo waiting period for first retake if score >= 500 on failed attempt. If score < 500: 14-day waiting period before retake. Maximum 5 attempts per exam per year (365 days). Free retake voucher sometimes included in official instructor-led training.
LanguagesEnglish, Simplified Chinese, Traditional Chinese, French, German, Japanese, Korean, Portuguese, Russian, Spanish, Arabic, Indonesian