Microsoft · MS-102

MS-102 Exam: Complete Microsoft 365 Administrator Guide

Microsoft 365 Certified: Administrator Expert badge

Current MS-102 exam guide covering the $165 USD price, skills measured, expert-certification prerequisites, preparation, and November 2026 retirement.

Last verified September 6, 2026

MS-102 exam at a glance

DetailInformation
Exam nameMicrosoft 365 Administrator
Exam codeMS-102
Certification earnedMicrosoft 365 Certified: Administrator Expert
Cost$165
Duration100 min
QuestionsTypically 40–60; Microsoft does not publish a fixed count
Passing score700 / 1000 (scaled)
FormatProctored; may include interactive components
DeliveryTest center or online proctored
PrerequisitesFor the expert credential: one eligible Microsoft associate certification plus MS-102
Validity1 year
RenewalNo renewal after retirement; credential retires November 30, 2026

Facts last verified September 6, 2026

This exam retires on November 30, 2026. Check the vendor page before booking.

Domain breakdown

DomainWeight
Deploy and manage a Microsoft 365 tenant
Configure tenants, domains, service health, updates, backup, users, groups, licensing, administrative roles, delegation, and Privileged Identity Management.
25–30%
Implement and manage Microsoft Entra identity and access
Operate directory synchronization, authentication methods, password protection, Identity Protection, Conditional Access, and multifactor authentication.
25–30%
Manage security and threats by using Microsoft Defender XDR
Investigate incidents and exposure, protect email and collaboration, onboard and secure endpoints, and manage Defender for Cloud Apps.
30–35%
Manage compliance by using Microsoft Purview
Implement sensitive information types, sensitivity and retention labels, data lifecycle controls, and DLP across Microsoft 365 workloads and endpoints.
10–15%

Who should take the MS-102 exam?

MS-102 is designed for administrators who operate a Microsoft 365 tenant across cloud and hybrid environments. The role is an integration point: you coordinate identity, endpoints, collaboration, security, compliance, licensing, and tenant health rather than specializing in only Exchange, Teams, or SharePoint.

Strong candidates have functional experience across Microsoft 365 and Microsoft Entra ID and have administered at least one workload deeply. Microsoft also expects working knowledge of networking, Active Directory Domain Services, DNS, and PowerShell. If those foundations are weak, identity synchronization and access troubleshooting will be unnecessarily hard.

You may sit the exam without another certification. To earn Microsoft 365 Certified: Administrator Expert, however, you must pass MS-102 and hold one eligible associate credential. Microsoft's current options include credentials in endpoint administration, Teams administration, identity and access administration, and information security administration. Check the official certification page because this path retires soon.

Important: MS-102 retirement date

Microsoft will retire MS-102 at 11:59 PM Central Standard Time on November 30, 2026. The associated Administrator Expert certification retires the same day. If you are already prepared, leave enough time for scoring, a possible retake, and completion of the associate prerequisite. Passing MS-102 alone does not award the expert credential.

Do not start a long study plan without comparing the remaining time with your experience. After retirement you cannot take MS-102, earn this credential, or renew it. An existing credential remains on your Microsoft Learn transcript, but Microsoft says renewal will no longer be available after retirement.

Skills measured on MS-102

The official MS-102 study guide lists the blueprint effective April 28, 2026. Treat the percentages as study-budget guidance, not a promise about a particular exam form. Scenario questions frequently cross domains—for example, a risky sign-in can lead from Entra controls into a Defender XDR investigation.

Deploy and manage a Microsoft 365 tenant (25–30%)

This domain begins with tenant fundamentals: create and configure a tenant, add and verify domains, update organization settings, and understand service health. Know how to configure notifications, inspect network connectivity insights, manage Microsoft 365 Apps updates, review adoption and usage, and configure Microsoft 365 Backup where appropriate.

Identity administration at tenant level includes users, guests, contacts, Microsoft 365 groups, security groups, shared mailboxes, licensing, and bulk operations. Practice both portal workflows and PowerShell because the exam expects you to choose an efficient method at scale. Understand group-based licensing and the effect of membership changes.

Administrative control matters as much as object creation. Compare Microsoft 365 and Entra roles, role groups in Defender and Purview, administrative units, and Privileged Identity Management. In a scenario, look for least privilege, limited scope, approval, activation duration, and auditable administration instead of assigning a broad permanent role.

Implement and manage Microsoft Entra identity and access (25–30%)

Hybrid identity questions cover preparation and operation of Microsoft Entra Connect Sync and Cloud Sync. Know when each synchronization option fits, how to use IdFix before rollout, how Entra Connect Health surfaces problems, and how to distinguish synchronization failures from authentication or application-access failures.

Authentication objectives include methods, self-service password reset, password protection, and investigation of sign-in problems. Learn the dependencies behind combined registration, writeback, banned-password policies, passwordless methods, and multifactor authentication. Memorizing portal labels is less valuable than understanding which policy controls the user experience and what logs confirm the result.

For secure access, connect Identity Protection risks with Conditional Access decisions. Practice report-only policy rollout, exclusions for emergency accounts, location and device conditions, authentication strengths, session controls, and remediation. Avoid policies that can lock every administrator out of the tenant.

Manage security and threats by using Microsoft Defender XDR (30–35%)

This is the largest domain. Use the unified Defender portal to review exposure, Secure Score, incidents, alerts, reports, threat intelligence, and advanced hunting results. Understand the difference between an alert and an incident, how related evidence is correlated, and when an administrator should investigate, contain, remediate, or tune a detection.

Defender for Office 365 coverage includes anti-phishing, anti-malware, Safe Attachments, Safe Links, alert policies, investigation, attack simulation training, and restricted entities. Practice tracing a malicious-message scenario from policy configuration through Explorer or incident evidence to remediation. Know the order of protection and where exceptions create risk.

For Defender for Endpoint, know onboarding approaches, endpoint settings, vulnerability management, exposure findings, and response actions. Defender for Cloud Apps adds connectors, activity logs, policies, Cloud Discovery, and investigation of unsanctioned or risky apps. Expect questions that ask which Defender component supplies the required signal or action.

Manage compliance by using Microsoft Purview (10–15%)

Purview objectives focus on information protection, lifecycle management, and data loss prevention. Build sensitive information types with keywords, lists, and regular expressions, then understand how labels, label policies, retention policies, and retention labels apply to content. Content explorer, Activity explorer, and reports help validate deployment and usage.

DLP spans Exchange Online, SharePoint Online, OneDrive, Teams, Power BI, Microsoft 365 Copilot, and endpoints. Compare policy locations, conditions, actions, user notifications, overrides, test modes, alerts, events, and reports. The correct design protects information without blocking legitimate work or deploying an untested rule directly to everyone.

How to prepare for MS-102

Start with the official blueprint and mark each objective as explain, configure, or troubleshoot. Use a development tenant where licensing permits. Create users and groups, configure role activation, inspect synchronization and sign-in logs, deploy a report-only Conditional Access policy, investigate sample Defender incidents, and test labels or DLP in a controlled scope.

Build end-to-end scenarios instead of isolated feature notes. For example, onboard a device, trigger a safe test alert, follow the incident in Defender XDR, and identify the identity and endpoint evidence. Then create a Purview rule in test mode and inspect its reports. These flows teach which portal, role, log, and remediation step belongs at each point.

Because the deadline is fixed, use short feedback loops. Take Microsoft's free Practice Assessment early, study the weakest objective group, and repeat with documentation open. Reserve the last week for mixed cases and for confirming your exam appointment and identity.

MS-102 practice questions

Use objective-aligned questions that test administrative decisions, not recalled screenshots. A useful question supplies a tenant state, role constraints, licenses, and desired result, then asks for the least-privileged or lowest-impact action. Explain why every alternative fails.

Microsoft's Practice Assessment is available from the official exam page. It is preparation, not leaked exam content and not a prediction of your live question set. Avoid exam dumps; they violate exam integrity and do not build the troubleshooting judgment this exam requires.

MS-102 compared with role-specific exams

MS-102 connects workloads at the tenant level. MD-102 goes deeper into endpoint management, MS-700 into Teams, and SC-300 into identity and access. One of those associate paths can also satisfy the expert credential prerequisite, but it does not replace MS-102 before retirement.

The practical choice is based on timing. If you already administer Microsoft 365 broadly and hold an eligible associate certification, finishing MS-102 can validate that work. If you are starting from zero close to retirement, a current role-based path may offer more lasting value.

Career value of MS-102

The exam aligns with Microsoft 365 administrator, tenant administrator, modern-workplace engineer, and senior support roles. Its strongest signal is breadth across identity, threat protection, compliance, and operations. Pair the credential with concrete examples of tenant hardening, migration, automation, or incident response.

The retirement date limits future renewal, so evaluate it as evidence of skills at a point in time rather than a permanent badge. The operational knowledge remains useful even after the exam closes, especially when supported by current Microsoft Learn modules and hands-on work.

Exam-day notes

  • Schedule with a personal Microsoft account so your exam record remains portable.
  • Microsoft role-based exams typically provide 100 minutes without labs; registration shows the exact appointment and exam time for your delivery.
  • Microsoft does not guarantee a fixed question count or specific interactive components.
  • A scaled score of 700 passes and is not the same as 70 percent correct.
  • Leave time before November 30, 2026 for a retake if needed.

MS-102 FAQ

Is the MS-102 exam being retired?

Yes. Microsoft says MS-102 and the Microsoft 365 Administrator Expert credential retire on November 30, 2026. You must complete all credential requirements before that date, and holders will not be able to renew the credential afterward.

Is the MS-102 exam hard?

MS-102 is an expert-path exam with broad operational scope. It is difficult for candidates who know only one Microsoft 365 workload because scenarios connect tenant administration, Entra, Defender XDR, endpoints, and Purview.

What are the prerequisites for MS-102?

There is no prerequisite to schedule MS-102. To earn the Administrator Expert credential, you must also hold one of Microsoft's eligible associate certifications; verify the current list on the credential page before the retirement deadline.

What score do you need to pass MS-102?

Microsoft requires a scaled score of 700 or higher. A scaled 700 is not necessarily 70 percent correct because Microsoft adjusts scoring for differences among exam forms.

Can you retake MS-102 after failing?

Yes while the exam remains available. Microsoft requires a 24-hour wait after the first failure and longer waits for later attempts, but no attempt can be scheduled after the November 30, 2026 retirement.

Prep resources

ResourceTypeProvider
MS-102 exam page official Official guideMicrosoft Learn
Official MS-102 study guide official Official guideMicrosoft Learn
Microsoft 365 Administrator Expert requirements official Official guideMicrosoft Learn
MS-102 Microsoft 365 Administrator training official CourseMicrosoft Learn

← More Microsoft exams