questions people ask about each exam — difficulty, cost, format, prerequisites, renewal, and how to pass.
It's Microsoft's foundational security certification — a non-coding overview of security, compliance, and identity concepts and the Microsoft solutions that deliver them (Entra ID, Microsoft Defender, Purview, and related tools). It suits anyone needing a grounding in Microsoft security, technical or business. The exam is around 40 questions in 45 minutes, passing at 700/1000. See the SC-900 hub.
It's an approachable fundamentals exam — concept-level, no hands-on, passable in one to two weeks for most people. The main work is learning the terminology across three areas (security, compliance, identity) and which Microsoft product addresses each. Practice questions are the quickest way to gauge readiness.
Yes, if you're moving toward security, compliance, or identity work, or need to prove baseline security literacy — it's cheap, quick, and a natural first step toward the role-based SC certs (SC-200, SC-300, SC-100). On its own it's foundational; see how it compares on our State of Certifications report.
It doesn't expire — like all Microsoft Fundamentals certifications, SC-900 is permanent once earned. (Only the role-based SC certs, such as SC-200 and SC-100, expire after 12 months and need free online renewal.)
Around 40 questions in 45 minutes, mostly multiple-choice and multiple-response (a few drag-and-drop or matching items can appear). You need a scaled 700/1000 to pass, and there's no penalty for wrong answers.
No — it costs $99 USD. Microsoft Learn study content is free and some events distribute exam vouchers, but the exam itself is paid. There's no permanently free version.
$99 USD, plus local tax. A failed attempt requires a 24-hour wait before retaking (14 days for further attempts). Scheduling and ID details are on our Microsoft exam info page.
No. It's a proctored, closed-book exam — at a test center or online with webcam monitoring — so no notes, internet, or outside help, and a room scan precedes an online attempt.
Register through the Microsoft Learn certification dashboard, which routes to Pearson VUE to choose a test center or online proctored slot. Our Microsoft exam info page walks through registration and ID requirements.
Follow the free Microsoft Learn "SC-900" paths to cover the three domains, then drill practice questions until you're consistently above 80%. Our SC-900 question bank covers every topic with explanations, and the Playbook distills the security, compliance, and identity concepts the exam emphasizes.
Common next steps are the role-based security certs: SC-200 (Security Operations Analyst), SC-300 (Identity and Access Administrator), or the SC-100 Cybersecurity Architect expert cert once you have more experience. Browse the full Microsoft security track to plan your path.
It's Microsoft's associate-level certification for security operations — detecting, investigating, and responding to threats using Microsoft Sentinel, Microsoft Defender XDR, and Defender for Cloud, plus threat hunting and reducing organizational risk. It's the analyst/SOC-focused security cert. The exam is around 50 questions in 120 minutes, passing at 700/1000. See the SC-200 hub.
Moderate — it's detailed on the Microsoft security tooling (Sentinel, Defender XDR) and includes KQL for hunting and analytics, so hands-on experience with those products matters a lot. If you work in a SOC or with Microsoft security tools it's approachable; without that exposure, the tool-specific questions take study. Practice questions with explanations help you find gaps.
Yes, if you're in or moving toward security operations / SOC analyst work in the Microsoft ecosystem — it's the recognized credential for that role and cloud security skills are in high demand. It's specialized, so most valuable for security-operations positions; see how it compares on our State of Certifications report.
It's mainly multiple-choice, multiple-select, and case-study questions (some involving KQL); a live lab may appear, though Microsoft rotates labs in and out. You need a scaled 700/1000 to pass, with no penalty for wrong answers.
It's proctored and closed-book — taken at a test center or online with webcam monitoring — so no notes, internet, or outside help, with a room scan before an online attempt.
$165 USD, plus local tax. A failed attempt requires a 24-hour wait before retaking (14 days for later attempts). Scheduling and ID details are on our Microsoft exam info page.
Yes — it expires 12 months after you earn it, renewable free via a short, unproctored online assessment on Microsoft Learn that opens six months before expiry. Passing it extends the cert another year with no re-exam or fee.
Register through the Microsoft Learn certification dashboard, which routes to Pearson VUE to choose a test center or online proctored slot. Our Microsoft exam info page covers registration and ID requirements.
Get hands-on with Microsoft Sentinel and Defender XDR — incidents, analytics rules, and KQL hunting — use the free Microsoft Learn "Security Operations Analyst" paths to fill gaps, then drill scenario questions until the detection-and-response workflows are automatic. Our SC-200 question bank and hands-on lab target those areas directly.
It's Microsoft's expert-level security certification — designing and evolving an organization's cybersecurity strategy: Zero Trust architecture, governance/risk/compliance, and security for infrastructure, data, and applications across Microsoft and hybrid environments. It's the most senior Microsoft security cert. The exam is around 50 questions in 120 minutes, passing at 700/1000. See the SC-100 hub for the full scope.
It's a genuinely hard expert exam — broad, strategy-level, and full of case studies where you weigh security designs against business and compliance requirements. It assumes real architecture experience and knowledge from the associate security certs; it's not a place to start. Heavy work through scenario practice questions is the best way to build the design judgment it tests.
Yes — this is unusual for Microsoft. To be awarded the Cybersecurity Architect Expert certification, you must also hold one of these associate prerequisites: SC-200, SC-300, AZ-500, or MS-102. You can sit the SC-100 exam first, but the expert cert isn't granted until a qualifying prerequisite is also earned.
For experienced security professionals and architects in the Microsoft ecosystem, yes — it's a high-prestige expert credential that signals strategic security-design ability and aligns with senior/architect roles. It's overkill for beginners; it's a capstone once you have associate-level security certs and real experience. See how it ranks on our State of Certifications report.
It's built around multiple-choice, multiple-select, and case-study questions rather than live labs. And no — it's a proctored, closed-book exam (test center or online with webcam monitoring), so no notes or internet; the case studies contain everything you need.
$165 USD, plus local tax. And yes — like all role-based Microsoft certs it expires 12 months after you earn it, renewable free via a short online assessment on Microsoft Learn that opens six months before expiry. Scheduling details are on our Microsoft exam info page.
Build on your associate-level security knowledge, then focus on the architect themes — Zero Trust strategy, GRC, and end-to-end security design — and practice reading long requirements to choose the best-fit design. Our SC-100 question bank and Playbook target exactly those decision patterns and the case-study format.
A cybersecurity architect designs the overall security strategy and blueprint for an organization — defining Zero Trust and defense-in-depth approaches, setting governance and risk standards, and ensuring infrastructure, data, and applications are secured coherently rather than piecemeal. SC-100 certifies exactly this strategic, cross-domain design role in the Microsoft context.