SC-401 Microsoft Information Security Administrator (formerly SC-400)
Classify, protect and govern data at scale with Microsoft Purview
Data classification and protection failures are the root cause of most Australian Notifiable Data Breaches. This programme trains information protection administrators to implement Microsoft Purview sensitivity labels, DLP policies, retention labels, and insider risk controls — mapped to the Privacy Act 1988, Australian Privacy Principles, and APRA CPS 234 data governance requirements — and prepares candidates for the SC-401 Information Security Administrator certification exam (the current credential that replaced SC-400).

At a Glance
Who it's for
- Compliance officers and data governance managers implementing Microsoft Purview
- IT administrators responsible for DLP, sensitivity labels, and retention policies
- Privacy professionals mapping Privacy Act 1988 obligations to technical controls
- Security engineers preparing for the SC-401 Microsoft Associate certification (formerly SC-400)
Course Details
Course Overview
The SC-401 Microsoft Information Security Administrator programme covers the implementation and management of data protection controls using Microsoft Purview. Microsoft retired the SC-400 Information Protection and Compliance Administrator exam on 31 May 2025 and replaced it with SC-401 Administering Information Security in Microsoft 365 — this programme teaches the current SC-401 skills outline. The curriculum addresses the exam skill domains: implement information protection, implement data loss prevention, and manage data security, lifecycle and insider risk across Microsoft 365. In the Australian regulatory context, every technical implementation is mapped to the Australian Privacy Principles — in particular APP 11 (security of personal information), APP 6 (use and disclosure), and APP 8 (cross-border disclosure) — and to APRA CPS 234 information security classification requirements for entities regulated by the Australian Prudential Regulation Authority. The programme also covers how Purview controls integrate with Microsoft 365 Copilot to prevent oversharing of sensitive content during AI-assisted work, which is a rapidly growing compliance requirement for Australian organisations deploying Copilot.
What You'll Learn
Course Curriculum
Module 1: Implement Information Protection with Sensitivity Labels
8 hours- Sensitivity label taxonomy design for Australian organisations: classification scheme for personal, commercial, and government information
- Configure sensitivity labels: encryption, content marking, and visual indicators
- Deploy auto-labelling for Exchange, SharePoint, and OneDrive using sensitive information types
- Trainable classifiers: built-in and custom classifiers for Australian document types
- Sensitivity labels and Microsoft Copilot: Restricted SharePoint Search and data oversharing prevention
Module 2: Implement Data Loss Prevention
8 hours- DLP policy design: priority, scoping, conditions, actions, and exception management
- Australian sensitive information types: Tax File Number, Medicare number, passport, ABN detection
- Endpoint DLP: device controls, clipboard restrictions, and removable storage policies
- Microsoft Teams DLP: protecting sensitive content in chat, channel messages, and meetings
- Copilot DLP: blocking AI-assisted summarisation and generation of highly confidential content
Module 3: Data Lifecycle Management and Records Management
8 hours- Retention label and retention policy design for Australian legislation: Privacy Act 1988, Tax Administration Act, corporations law
- Adaptive scopes: dynamic retention targeting based on user attributes
- Records management: file plans, regulatory records, and disposition review workflows
- PSPF (Protective Security Policy Framework) records management for government entities
- Content explorer and activity explorer: data mapping and compliance evidence collection
Module 4: Insider Risk, Communication Compliance, and eDiscovery
8 hours- Insider Risk Management: risky users, data theft, and policy violation indicator tuning
- Communication Compliance: financial services regulatory monitoring and workplace policy enforcement
- Microsoft Purview eDiscovery: content search, Core, and Premium for litigation hold and legal requests
- Privacy Act 1988 and APRA CPS 234 compliance evidence: Content Explorer, audit logs, and reports
- SC-401 exam preparation: domain reviews, practice questions, and mock exam
Who Should Attend
- Information protection and compliance administrators operating Microsoft Purview
- Privacy officers translating Privacy Act 1988 and APP obligations into technical controls
- Data governance managers designing sensitivity label and retention taxonomies
- Microsoft 365 administrators taking on DLP, retention and eDiscovery responsibilities
- Records managers in government entities working to the Protective Security Policy Framework
- Security engineers preparing the data governance groundwork for a Microsoft 365 Copilot rollout
Prerequisites
Before enrolling, please ensure you meet these requirements:
- • Working knowledge of Microsoft 365 administration — Exchange Online, SharePoint Online and Teams
- • Basic understanding of compliance concepts: classification, retention, legal hold and eDiscovery
- • Microsoft 365 E5 Compliance trial or existing Microsoft Purview portal access for labs
- • Compliance Administrator or Compliance Data Administrator role in the lab tenant
- • Familiarity with your organisation's data classification requirements is beneficial but not required
Delivery, Format and Logistics
Delivery Mode
Live online training with individual Purview lab tenants — 4 days intensive or 8 weeks part-time
Maximum 12 participants with individual Microsoft 365 E5 Compliance lab access
What You'll Need
- Working knowledge of Microsoft 365 administration and basic compliance concepts
- Microsoft 365 E5 Compliance trial or existing Purview portal access
- Understanding of your organisation's data classification requirements is beneficial
- Familiarity with SharePoint, Exchange, and Teams data flows
What You'll Receive
- 32 hours of instructor-led instruction with individual Microsoft 365 E5 Compliance lab access
- Sensitivity label taxonomy workshop producing a classification scheme you can deploy
- Australian sensitive information type labs: Tax File Number, Medicare, passport and ABN detection
- DLP, retention and records management policy templates mapped to Australian legislation
- Insider Risk Management and Communication Compliance policy configuration walkthroughs
- Timed SC-401 mock exam with domain reviews and answer rationale
- Recorded sessions and lab guides for 6 months
- Certificate of completion and 30 days of post-course email support
Frequently Asked Questions
Not Ready to Enrol?
Join our mailing list to receive updates about courses, resources, and cybersecurity insights tailored for Australian organisations.
Early-bird rate — apply your promo code at checkout.
Secure payment via Stripe · Promo codes accepted
Next Intake
September 2026 — register your interest at educ4te.com
Format
Live online training with individual Purview lab tenants — 4 days intensive or 8 weeks part-time
Group & Enterprise Options
Discounted rates available for teams of 3+ delegates. Contact us for in-house delivery options.
What's Included
- 32 hours of instructor-led instruction with individual Microsoft 365 E5 Compliance lab access
- Sensitivity label taxonomy workshop producing a classification scheme you can deploy
- Australian sensitive information type labs: Tax File Number, Medicare, passport and ABN detection
- DLP, retention and records management policy templates mapped to Australian legislation
- Insider Risk Management and Communication Compliance policy configuration walkthroughs
- Timed SC-401 mock exam with domain reviews and answer rationale
- Recorded sessions and lab guides for 6 months
- Certificate of completion and 30 days of post-course email support
Have questions about this course?