70-744 Verified 2026 Edition

Securing Windows Server 2016Practice Test

Master the Securing Windows Server 2016 with the official PlanetCert Practice Test. Access real exam questions, professional-grade detailed explanations, and our advanced adaptive simulator. Pass your certification exam on the first attempt.

162 Total Questions
1 Included Version Get all versions for the price of one
English Edition
All-In-One Bundle
$79.99
$75.99
  • Interactive Simulator & AI
  • Detailed Explanations
  • Study, Timed & Flashcard Mode
  • Lifetime Access & Updates

Instant lifetime access • Secure checkout

Why Study with PlanetCert?

The Latest Questions

Practice questions and exam topics aligned with the current exam objectives.

Detailed Explanations

Go beyond the answer. Master the material with comprehensive learning and professional explanations for every concept.

AI

AI-Powered Insights

Personalized preparation guidance that adapts to your performance and identifies weak spots automatically.

Exam Information

Official specifications published by Microsoft

Exam Format

120 min
700
Professional

Registration

$165 USD
Pearson VUE or online proctoring

Validity

2 years (certification was valid for 2 years from January 31, 2021 retirement date, after which it moved to inactive section of transcript)
Pass a current Microsoft exam; Pass an elective exam from the same certification path

70-744 Exam Topics and Domains

70-744 is organized into 6 weighted domains. Expect to work with Group Policy, PowerShell, Active Directory, Hyper-V, and more.

1

Implement Server Hardening Solutions

27.5%

Configure disk and file encryption

Determine hardware and firmware requirementsDeploy BitLocker encryptionConfigure Network Unlock featureConfigure BitLocker Group Policy settingsImplement BitLocker Recovery ProcessManage Encrypting File System (EFS)
  • Deploy and manage BitLocker Drive Encryption in various scenarios
  • Configure disk and file-level encryption
  • Implement recovery procedures for encrypted data
  • Determine appropriate encryption solutions for different use cases

Implement server patching and updating solutions

Install and configure WSUSManage updates using WSUSTroubleshoot WSUS
  • Deploy and configure Windows Server Update Services
  • Manage update approvals and deployments
  • Troubleshoot update delivery issues

Implement malware protection

Implement Windows DefenderImplement AppLockerImplement Control Flow Guard and Device Guard
  • Implement comprehensive malware protection using Windows Defender
  • Configure application whitelisting with AppLocker
  • Deploy Code Integrity and Control Flow Guard policies

Protect credentials

Implement Credential GuardImplement NTLM blocking
  • Deploy and configure Credential Guard for credential protection
  • Implement NTLM blocking to enforce stronger authentication

Create security baselines

Use Microsoft Security Compliance Toolkit
  • Create and manage security baselines using Microsoft Security Compliance Toolkit
  • Deploy security configurations to various server types
2

Secure a Virtualization Infrastructure

7.5%

Implement a Guarded Fabric solution

Install and configure Host Guardian Service (HGS)Configure attestation modesManage guarded hosts
  • Deploy and configure Host Guardian Service
  • Implement both Admin-trusted and TPM-trusted attestation
  • Manage and troubleshoot guarded hosts

Implement Shielded and encryption-supported VMs

Deploy Shielded VMsImplement encryption-supported VMsTroubleshoot Shielded and encryption-supported VMs
  • Create and configure Shielded VMs
  • Implement encryption-supported VMs
  • Troubleshoot virtualization security issues
3

Secure a Network Infrastructure

12.5%

Configure Windows Firewall

Configure Windows Firewall with Advanced SecurityConfigure firewall rulesConfigure authenticated firewall exceptionsImport and export firewall settings
  • Configure Windows Firewall with Advanced Security
  • Create and manage firewall rules using multiple methods
  • Implement authenticated firewall exceptions

Implement Software Defined Datacenter Firewall

Deploy Distributed Datacenter Firewall
  • Implement Software Defined Networking firewall solutions
  • Configure datacenter-level access controls

Secure network traffic

Configure IPsecSecure SMB trafficSecure DNS trafficAnalyze network traffic
  • Implement IPsec for network traffic protection
  • Secure SMB and DNS protocols
  • Analyze network traffic for security threats
4

Manage Privileged Identities

27.5%

Implement Enhanced Security Administrative Environment (ESAE)

Design and implement ESAE forest
  • Design Enhanced Security Administrative Environment architectures
  • Implement clean source principals for privileged access

Implement Just-In-Time (JIT) Administration

Deploy Microsoft Identity Manager (MIM)Manage privileged access requests
  • Deploy Microsoft Identity Manager for Privileged Access Management
  • Configure and manage time-based privileged access
  • Implement request and approval workflows

Implement Just-Enough-Administration (JEA)

Configure JEA solutionsManage and troubleshoot JEA
  • Implement Just-Enough-Administration endpoints
  • Create session configuration and role capability files
  • Deploy JEA using Desired State Configuration

Implement Privileged Access Workstations (PAWs)

Deploy PAW solutions
  • Deploy Privileged Access Workstations
  • Configure security policies for administrative access
  • Enable Remote Credential Guard for secure remote administration

Implement Local Administrator Password Solution (LAPS)

Deploy and manage LAPS
  • Install and configure Local Administrator Password Solution
  • Manage local administrator passwords at scale
  • Implement secure password retrieval processes
5

Implement Threat Detection Solutions

17.5%

Configure advanced audit policies

Implement auditing policiesConfigure specific audit policies
  • Implement advanced audit policies for security monitoring
  • Configure PowerShell logging for threat detection
  • Use multiple methods to deploy audit configurations

Install and configure Microsoft Advanced Threat Analytics (ATA)

Deploy ATA infrastructureManage ATA threat detection
  • Deploy Microsoft Advanced Threat Analytics
  • Configure threat detection and alerting
  • Investigate and respond to security threats

Determine threat detection solutions using Operations Management Suite (OMS)

Implement OMS solutions
  • Determine appropriate OMS deployment scenarios
  • Implement security and auditing with OMS
  • Utilize Log Analytics for threat detection
6

Implement Workload-Specific Security

7.5%

Secure application development and server workload infrastructure

Implement Nano Server securityImplement container security
  • Deploy and secure Nano Server workloads
  • Implement Windows Server and Hyper-V containers
  • Apply security policies to specialized workloads

Implement secure file services infrastructure and Dynamic Access Control (DAC)

Deploy File Server Resource Manager (FSRM)Implement Dynamic Access ControlConfigure Work FoldersConfigure file access auditing
  • Deploy and configure File Server Resource Manager
  • Implement Dynamic Access Control for claim-based permissions
  • Configure Work Folders for secure file synchronization
  • Implement file access auditing for compliance

How do I earn this certification?

Passing 70-744 earns the MCSE: Core Infrastructure certification. It sits in the Windows Server Infrastructure track.

Current Level Exams
Alternative Paths

Practice with Precision

The PlanetCert Simulator mirrors the real exam environment with authentic questions and timed pressure.

Launch Simulator

How to study for this exam?

The most effective way to prepare for 70-744 is by using the PlanetCert Simulator to practice questions and review detailed explanations.

What's changed on this exam?

Current Status
  • RETIRED
  • Last content update: 2017-11-03
  • Announcement date: 2020-06-30
Updates
  • BitLocker Windows Server 2025 Concepts from 70-744 remain foundational but implementation has evolved • Release date: 2024-11-01
  • Guarded Fabric / Shielded VMs Windows Server 2025 Technology remains relevant for high-security Hyper-V environments • Release date: 2024-11-01
  • Advanced Threat Analytics (ATA) ATA deprecated, replaced by cloud-native Defender for Identity
  • Operations Management Suite (OMS) OMS evolved into Azure Monitor and Microsoft Sentinel

Who should take this exam?

  • 3+ years of experience with Windows Server administration
  • Strong understanding of Active Directory
  • Experience with Windows Server security features
  • Knowledge of networking and virtualization
  • Familiarity with PowerShell scripting

Your Complete Exam Solution

Best-In-Class Practice Tests

Authentic, regularly updated questions that mirror the real exam. Verified, current material — not recycled dumps.

Topical Breakdown

Study by domain, pinpoint weak areas, and focus your time where it matters most. Every topic mapped to the official syllabus.

Flashcard Mode

Rapid-fire review to reinforce key concepts. Flip through questions and answers at your own pace before exam day.

See How You Compare Against Yourself

✕
✕
✕

Other Exam Prep

  • Outdated question dumpsRecycled, often inaccurate material
  • No explanationsMemorize answers without understanding
  • Static PDF filesNo interactive practice or feedback
  • Subscription feesRecurring charges, access expires
✓
✓
✓

PlanetCert

  • Verified, current questionsUpdated weekly to match live exam objectives
  • Expert-written rationalesUnderstand every concept, not just the answer
  • Session tracking & exam progressTrack every attempt, see your growth over time
  • Lifetime access, one pricePay once — updates included forever
CERTIFIED70-744

Study Naturally, Study Responsibly

Join thousands of certified professionals who trusted PlanetCert to pass on the first attempt.

Try Free Demo
Secure Checkout Lifetime Access Money-back Guarantee