Designing/Deploying Exchange 2016: Recipients & Security
Exchange 2016 security breaches cost organisations millions—and recipient misconfiguration is a common entry point. This course walks you through securing recipient objects and deploying hardened Exchange environments that actually hold up under audit. You’ll move beyond theory into hands-on configuration that your infrastructure team can deploy Monday morning.
AIU.ac Verdict: Ideal for Exchange administrators and infrastructure engineers who need to lock down recipient access and understand security-first deployment patterns. Best suited to those already familiar with Exchange basics; if you’re entirely new to Exchange, start with foundational administration first.
What This Course Covers
You’ll work through recipient object types—mailboxes, distribution groups, and resource accounts—and learn how to configure permissions, delegation, and access controls that prevent privilege creep. The course covers practical hardening: disabling unnecessary protocols, enforcing strong authentication policies, and auditing recipient activity. Paul Cunningham walks you through real-world scenarios where misconfigured recipients become security liabilities, then shows you the exact steps to remediate them.
The deployment section focuses on security-first architecture: planning recipient strategies before rollout, implementing role-based access control (RBAC), and integrating with Active Directory security groups. You’ll see how to validate your configuration against security baselines and troubleshoot common misconfigurations that auditors flag. By the end, you’ll have a repeatable approach to recipient security that scales across your organisation.
Who Is This Course For?
Ideal for:
- Exchange administrators: Need to harden recipient configurations and understand security implications of delegation and access control.
- Infrastructure/security engineers: Responsible for Exchange deployments and must meet compliance requirements around recipient access and audit trails.
- IT professionals preparing for Microsoft certifications: Require deep knowledge of Exchange security architecture and recipient management for exam success.
May not suit:
- Exchange beginners: This assumes working knowledge of Exchange administration; foundational courses should come first.
- Cloud-only organisations: Exchange 2016 is on-premises; if you’re purely Microsoft 365, focus on Exchange Online security instead.
Frequently Asked Questions
How long does Designing/Deploying Exchange 2016: Recipients & Security take?
2 hours 49 minutes. Designed for focused learning—you can complete it in one or two sittings, then apply the concepts immediately.
Do I need Exchange experience before starting?
Yes. This course assumes you’re already comfortable with Exchange administration basics. If you’re new to Exchange, complete a foundational administration course first.
Will this help me pass Microsoft Exchange exams?
Absolutely. Recipient security and deployment architecture are core exam topics. This course covers both the conceptual knowledge and practical skills examiners test.
Can I apply this to Exchange Online or only on-premises?
This focuses on Exchange 2016 (on-premises). Many principles transfer to Exchange Online, but cloud-specific security differs significantly—consider supplementing with Exchange Online courses.
Course by Paul Cunningham on Pluralsight. Duration: 2h 49m. Last verified by AIU.ac: March 2026.




