Deploy and manage Active Directory Domain Services (AD DS) in on-premises and cloud environments30–35%Deploy and manage AD DS domain controllers (on-premises, Azure, RODCs, FSMO roles), configure multi-site/multi-domain/multi-forest environments (trusts, sites, replication), create and manage AD DS security principals (users, groups, service accounts), implement and manage hybrid identities (Entra Connect Sync/Cloud Sync, Entra Domain Services, staged rollout), and manage Windows Server using Group Policies
≈ 17 h Manage Windows Servers and workloads in a hybrid environment10–15%Configure remote management (Windows Admin Center, PowerShell remoting, JEA, SSH, RDP) and manage servers using Azure services (Azure Arc, Azure Machine Configuration, VM extensions, Azure Update Manager, Azure Automation)
≈ 6 h Manage virtual machines and containers15–20%Manage Hyper-V and guest VMs (Enhanced session mode, nested virtualization, VM memory, integration services, checkpoints, virtual hard disks, network adapters, guarded fabric/shielded VMs), create and manage containers (Windows Server container host, Linux containers, container images, networking, AKS on Windows Server), and manage Windows Server VMs on Azure (storage, capacity, availability, JIT access, Bastion)
≈ 9 h Implement and manage an on-premises and hybrid networking infrastructure15–20%Implement name resolution (DNS with AD DS, zones/records, forwarding, Azure DNS integration, DNS policies, DNSSEC), manage IP addressing (IPAM, DHCP, scopes, reservations, high availability), and implement network connectivity (Remote Access, Azure Network Adapter, VPN, Azure Relay, Entra Private Access, Application Proxy)
≈ 9 h Manage storage and file services15–20%Configure and manage Azure Files (file shares, permissions, Azure File Sync, DFS migration), Windows Server file shares (access, FSRM, BranchCache, DFS, SMB over QUIC), and Windows Server storage (disks/volumes, Storage Spaces, Storage Replica, Data Deduplication, SMB direct, Storage QoS, iSCSI)
≈ 10 h