Labour Day Special - Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: top65certs

Microsoft SC-300 Questions Answers

Page: 2 / 13
Total 271 questions

Microsoft Identity and Access Administrator Questions and Answers

Question 5

Your company has an Azure Active Directory (Azure AD) tenant named contosri.com. The company has the business partners shown in the following table.

users can request access by using package 1.

Users at Fabrikam and Litware use ail then respective domain names for email addresses.

You plan to create an access package named packaqe1 that will be accessible only to the Fabrikam and Litware users.

You need to configure connected organizations for Fabrikam and litware so that any of their users can request access by using package1.

What is the minimum of connected organization that you should create.

Options:

A.

1

B.

2

C.

3

D.

4

Question 6

You have an Azure subscription named Sub1 that contains a user named User1.

You need to ensure that User1 can purchase a Microsoft Entra Permissions Management license for Sub1. The solution must follow the principle of least privilege.

Which role should you assign to User1?

Options:

A.

User Access Administrator

B.

Permissions Management Administrator

C.

Billing Administrator

D.

Global Administrator

Question 7

You have a Microsoft 365 tenant.

The Azure Active Directory (Azure AD) tenant syncs to an on-premises Active Directory domain.

You plan to create an emergency-access administrative account named Emergency1. Emergency1 will be

assigned the Global administrator role in Azure AD. Emergency1 will be used in the event of Azure AD

functionality failures and on-premises infrastructure failures.

You need to reduce the likelihood that Emergency1 will be prevented from signing in during an emergency.

What should you do?

Options:

A.

Configure Azure Monitor to generate an alert if Emergency1 is modified or signs in.

B.

Require Azure AD Privileged Identity Management (PIM) activation of the Global administrator role for

Emergency1.

C.

Configure a conditional access policy to restrict sign-in locations for Emergency1 to only the corporate

network.

D.

Configure a conditional access policy to require multi-factor authentication (MFA) for Emergency1.

Question 8

You have a Microsoft 365 subscription.

You plan to deploy an app named App1 that will have the following configurations:

• Will be registered in Microsoft Entra

• Will run as a service without user interaction

• Will collect audit logs associated with user sign-ins

• Will access resources by using the Microsoft Graph API

You need to ensure that App1 can access Microsoft Graph.

What should you use?

Options:

A.

application permissions

B.

delegated permissions

C.

a custom role-based access control (RBAC) role

D.

a built-in role-based access control (RBAC) role

Page: 2 / 13
Total 271 questions