Black Friday / Cyber Monday Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: top65certs

Microsoft SC-300 Dumps

Page: 1 / 14
Total 144 questions

Microsoft Identity and Access Administrator Questions and Answers

Question 1

You need to implement the planned changes for litware.com. What should you configure?

Options:

A.

Azure AD Connect cloud sync between the Azure AD tenant and litware.com

B.

Azure AD Connect to include the litware.com domain

C.

staging mode in Azure AD Connect for the litware.com domain

Question 2

You implement the planned changes for SSPR.

What occurs when User3 attempts to use SSPR? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Options:

Question 3

You need to resolve the recent security incident issues.

What should you configure for each incident? To answer, drag the appropriate policy types to the correct issues. Each policy type may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.

NOTE: Each correct selection is worth one point.

Options:

Question 4

You need implement the planned changes for application access to organizational data. What should you configure?

Options:

A.

authentication methods

B.

the User consent settings

C.

access packages

D.

an application proxy

Question 5

You need to meet the planned changes and technical requirements for App1.

What should you implement?

Options:

A.

a policy set in Microsoft Endpoint Manager

B.

an app configuration policy in Microsoft Endpoint Manager

C.

an app registration in Azure AD

D.

Azure AD Application Proxy

Question 6

You create the Azure Active Directory (Azure AD) users shown in the following table.

On February 1, 2021, you configure the multi-factor authentication (MFA) settings as shown in the following exhibit.

The users authentication to Azure AD on their devices as shown in the following table.

On February 26, 2021, what will the multi-factor auth status be for each user?

A)

B)

C)

D)

Options:

A.

Option A

B.

Option B

C.

Option C

D.

Option D

Question 7

You have a Microsoft 365 tenant.

You need to ensure that you tan view Azure Active Directory (Azure AD) audit log information by using Azure Monitor.

What should you do first?

Options:

A.

Run the Get-AzureADAuditDirectoryLogs cmdlet.

B.

Create an Azure AD workbook.

C.

Run the Set-AzureADTenantDetail cmdlet.

D.

Modify the Diagnostics settings for Azure AD.

Question 8

You have an Azure Active Directory (Azure AD) tenant that contains the groups shown in the following table.

For which groups can you create an access review?

Options:

A.

Group1 only

B.

Group1 and Group4 only

C.

Group1 and Group2 only

D.

Group1, Group2, Group4, and Group5 only

E.

Group1, Group2, Group3, Group4 and Group5

Question 9

You have a Microsoft 365 tenant.

All users have computers that run Windows 10. Most computers are company-owned and joined to Azure

Active Directory (Azure AD). Some computers are user-owned and are only registered in Azure AD.

You need to prevent users who connect to Microsoft SharePoint Online on their user-owned computer from

downloading or syncing files. Other users must NOT be restricted.

Which policy type should you create?

Options:

A.

a Microsoft Cloud App Security activity policy that has Microsoft Office 365 governance actions configured

B.

an Azure AD conditional access policy that has session controls configured

C.

an Azure AD conditional access policy that has client apps conditions configured

D.

a Microsoft Cloud App Security app discovery policy that has governance actions configured

Question 10

You have an on-premises datacenter that contains the hosts shown in the following table.

You have an Azure Active Directory (Azure AD) tenant that syncs to the Active Directory forest. Multi-factor authentication (MFA) is enforced for Azure AD.

You need to ensure that you can publish App1 to Azure AD users.

What should you configure on Server and Firewall1? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Options:

Question 11

You need to configure the assignment of Azure AD licenses to the Litware users. The solution must meet the licensing requirements.

What should you do? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Options:

Question 12

You need to create the LWGroup1 group to meet the management requirements.

How should you complete the dynamic membership rule? To answer, drag the appropriate values to the correct targets. Each value may be used once, more than once, or not at all. You many need to drag the split bar between panes or scroll to view content.

NOTE: Each correct selection is worth one point.

Options:

Question 13

You need to configure the detection of multi staged attacks to meet the monitoring requirements.

What should you do?

Options:

A.

Customize the Azure Sentinel rule logic.

B.

Create a workbook.

C.

Add an Azure Sentinel playbook.

D.

Add Azure Sentinel data connectors.

Question 14

You need to identify which roles to use for managing role assignments. The solution must meet the delegation requirements.

What should you do? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Options:

Question 15

You need to track application access assignments by using Identity Governance. The solution must meet the delegation requirements.

What should you do first?

Options:

A.

Modify the User consent settings for the enterprise applications.

B.

Create a catalog.

C.

Create a program.

D.

Modify the Admin consent requests settings for the enterprise applications.

Page: 1 / 14
Total 144 questions