Summer Special - Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: top65certs

Microsoft SC-300 Based on Real Exam Environment

Page: 8 / 16
Total 341 questions

Microsoft Identity and Access Administrator Questions and Answers

Question 29

You have a Microsoft 365 tenant.

The Azure Active Directory (Azure AD) tenant syncs to an on-premises Active Directory domain.

You plan to create an emergency-access administrative account named Emergency1. Emergency1 will be

assigned the Global administrator role in Azure AD. Emergency1 will be used in the event of Azure AD

functionality failures and on-premises infrastructure failures.

You need to reduce the likelihood that Emergency1 will be prevented from signing in during an emergency.

What should you do?

Options:

A.

Configure Azure Monitor to generate an alert if Emergency1 is modified or signs in.

B.

Require Azure AD Privileged Identity Management (PIM) activation of the Global administrator role forEmergency1.

C.

Configure a conditional access policy to restrict sign-in locations for Emergency1 to only the corporatenetwork.

D.

Configure a conditional access policy to require multi-factor authentication (MFA) for Emergency1.

Question 30

You use Azure Monitor to analyze Azure Active Directory (Azure AD) activity logs.

Yon receive more than 100 email alerts each day for tailed Azure Al) user sign-in attempts.

You need to ensure that a new security administrator receives the alerts instead of you.

Solution: From Azure monitor, you create a data collection rule.

Does this meet the goal?

Options:

A.

Yes

B.

No

Question 31

Your on-premises network contains an Active Directory domain that uses Azure AD Connect to sync with an Azure AD tenant. You need to configure Azure AD Connect to meet the following requirements:

• User sign-ins to Azure AD must be authenticated by an Active Directory domain controller.

• Active Directory domain users must be able to use Azure AD self-service password reset (SSPR).

What should you use for each requirement? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Options:

Question 32

Your network contains an on-premises Active Directory domain named contoso.com. The domain contains the objects shown in the following table.

You install Azure AD Connect. You configure the Domain and OU filtering settings as shown in the Domain and OU Filtering exhibit. (Click theDomain and OU Filteringtab.)

You configure the Filter users and devices settings as shown in the Filter Users and Devices exhibit. (Click theFilter Users and Devicestab.)

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

Options:

Page: 8 / 16
Total 341 questions