ExamGecko
Home / Microsoft / MS-102 / List of questions
Ask Question

Microsoft MS-102 Practice Test - Questions Answers, Page 4

List of questions

Question 31

Report Export Collapse

On which server should you use the Defender for identity sensor?

Server1

Server1

Server2

Server2

Server3

Server3

Server4

Server4

Servers5

Servers5

Suggested answer: A
Explanation:

However, if the case study had required that the DCs can't have any s/w installed, then the answer would have been a standalone sensor on Server2. In this scenario, the given answer is correct. BTW, ATP now known as Defender for Identity.

asked 05/10/2024
Tomislav Bodrozic
41 questions

Question 32

Report Export Collapse

You need to meet the technical requirement for the EU PII data.

What should you create?

a retention policy from the Security & Compliance admin center.

a retention policy from the Security & Compliance admin center.

a retention policy from the Exchange admin center

a retention policy from the Exchange admin center

a data loss prevention (DLP) policy from the Exchange admin center

a data loss prevention (DLP) policy from the Exchange admin center

a data loss prevention (DLP) policy from the Security & Compliance admin center

a data loss prevention (DLP) policy from the Security & Compliance admin center

Suggested answer: A
Explanation:

https://docs.microsoft.com/en-us/office365/securitycompliance/retention-policies

EU PII wants both documents and email message to be preserved so S&C Admin Center for Retention. If this was for Email only, this probably could have been done in EAC.

asked 05/10/2024
Filippo Bertuzzi
37 questions

Question 33

Report Export Collapse

You need to meet the technical requirement for large-volume document retrieval. What should you create?

a data loss prevention (DLP) policy from the Security & Compliance admin center

a data loss prevention (DLP) policy from the Security & Compliance admin center

an alert policy from the Security & Compliance admin center

an alert policy from the Security & Compliance admin center

a file policy from Microsoft Cloud App Security

a file policy from Microsoft Cloud App Security

an activity policy from Microsoft Cloud App Security

an activity policy from Microsoft Cloud App Security

Suggested answer: D
Explanation:

https://docs.microsoft.com/en-us/office365/securitycompliance/activity-policies-and-alerts

asked 05/10/2024
Jason Siemens
41 questions

Question 34

Report Export Collapse

DRAG DROP

You need to meet the requirement for the legal department.

Which three actions should you perform in sequence from the Security & Compliance admin center? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.

Microsoft MS-102 image Question 34 103931 10052024010457000
Correct answer: Microsoft MS-102 image answer Question 34 103931 10052024010457000
Explanation:

https://www.sherweb.com/blog/ediscovery-office-365/

asked 05/10/2024
ADAMA DAO
45 questions

Question 35

Report Export Collapse

HOTSPOT

You need to meet the technical requirement for log analysis.

What is the minimum number of data sources and log collectors you should create from Microsoft Cloud App Security? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.


Microsoft MS-102 image Question 35 103932 10052024010457000
Correct answer: Microsoft MS-102 image answer Question 35 103932 10052024010457000
Explanation:

https://docs.microsoft.com/en-us/cloud-app-security/discovery-docker

asked 05/10/2024
Victor Platonov
43 questions

Question 36

Report Export Collapse

Which report should the New York office auditors view?

DLP policy matches

DLP policy matches

DLP false positives and overrides

DLP false positives and overrides

DLP incidents

DLP incidents

Top Senders and Recipients

Top Senders and Recipients

Suggested answer: C
Explanation:

https://docs.microsoft.com/en-us/office365/securitycompliance/data-loss-prevention-policies

This report also shows policy matches over time, like the policy matches report. However, the policy matches report shows matches at a rule level; for example, if an email matched three different rules, the policy matches report shows three different line items. By contrast, the incidents report shows matches at an item level; for example, if an email matched three different rules, the incidents report shows a single line item for that piece of content. Because the report counts are aggregated differently, the policy matches report is better for identifying matches with specific rules and fine tuning DLP policies. The incidents report is better for identifying specific pieces of content that are problematic for your DLP policies.

asked 05/10/2024
Meghan Crofford
43 questions

Question 37

Report Export Collapse

HOTSPOT

You need to meet the technical requirement for the SharePoint administrator. What should you do? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.


Microsoft MS-102 image Question 37 103934 10052024010457000
Correct answer: Microsoft MS-102 image answer Question 37 103934 10052024010457000
Explanation:

https://docs.microsoft.com/en-us/office365/securitycompliance/search-the-audit-log-in-security-and-compliance#step-3-filter-the-search-results

asked 05/10/2024
Paul Macinic
37 questions

Question 38

Report Export Collapse

You need to recommend a solution for the security administrator. The solution must meet the technical requirements.

What should you include in the recommendation?

Microsoft Azure Active Directory (Azure AD) Privileged Identity Management

Microsoft Azure Active Directory (Azure AD) Privileged Identity Management

Microsoft Azure Active Directory (Azure AD) Identity Protection

Microsoft Azure Active Directory (Azure AD) Identity Protection

Microsoft Azure Active Directory (Azure AD) conditional access policies

Microsoft Azure Active Directory (Azure AD) conditional access policies

Microsoft Azure Active Directory (Azure AD) authentication methods

Microsoft Azure Active Directory (Azure AD) authentication methods

Suggested answer: B
Explanation:

https://docs.microsoft.com/en-us/azure/active-directory/conditional-access/concept-conditional-access-conditions#sign-in-risk states clearly that Sign-in risk

asked 05/10/2024
Jimmy Raiford
49 questions

Question 39

Report Export Collapse

You need to protect the U.S. PII data to meet the technical requirements.

What should you create?

a data loss prevention (DLP) policy that contains a domain exception

a data loss prevention (DLP) policy that contains a domain exception

a Security & Compliance retention policy that detects content containing sensitive data

a Security & Compliance retention policy that detects content containing sensitive data

a Security & Compliance alert policy that contains an activity

a Security & Compliance alert policy that contains an activity

a data loss prevention (DLP) policy that contains a user override

a data loss prevention (DLP) policy that contains a user override

Suggested answer: A
Explanation:

This is a case study. Case studies are not timed separately. You can use as much exam time as you would like to complete each case. However, there may be additional case studies and sections on this exam. You must manage your time to ensure that you are able to complete all questions included on this exam in the time provided.

To answer the questions included in a case study, you will need to reference information that is provided in the case study. Case studies might contain exhibits and other resources that provide more information about the scenario that is described in the case study. Each question is independent of the other questions in this case study.

At the end of this case study, a review screen will appear. This screen allows you to review your answers and to make changes before you move to the next section of the exam. After you begin a new section, you cannot return to this section.

asked 05/10/2024
Franko Salajcik
41 questions

Question 40

Report Export Collapse

HOTSPOT

You have a Microsoft 365 subscription.

Your network uses an IP address space of 51.40.15.0/24.

An Exchange Online administrator recently created a role named Role1 from a computer on the network.

You need to identify the name of the administrator by using an audit log search.

For which activities should you search and by which field should you filter in the audit log search? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.


Microsoft MS-102 image Question 40 103937 10052024010457000
Correct answer: Microsoft MS-102 image answer Question 40 103937 10052024010457000
asked 05/10/2024
Helmut Steingraber
37 questions
Total 467 questions
Go to page: of 47
Search

Related questions