ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 279 - MS-102 discussion

Report
Export

You have a Microsoft 365 subscription that contains a user named User1.

User1 requires admin access to perform the following tasks:

Manage Microsoft Exchange Online settings.

Create Microsoft 365 groups.

You need to ensure that User1 only has admin access for eight hours and requires approval before the role assignment takes place.

What should you use?

A.

zure AD Identity Protection

Answers
A.

zure AD Identity Protection

B.

Microsoft Entra Verified ID

Answers
B.

Microsoft Entra Verified ID

C.

Conditional Access

Answers
C.

Conditional Access

D.

Azure AD Privileged Identity Management (PJM)

Answers
D.

Azure AD Privileged Identity Management (PJM)

Suggested answer: D

Explanation:

Privileged Identity Management provides time-based and approval-based role activation to mitigate the risks of excessive, unnecessary, or misused access permissions on resources that you care about. Here are some of the key features of Privileged Identity Management:

Provide just-in-time privileged access to Azure AD and Azure resources

Assign time-bound access to resources using start and end dates

Require approval to activate privileged roles

Enforce multi-factor authentication to activate any role

Use justification to understand why users activate

Get notifications when privileged roles are activated

Conduct access reviews to ensure users still need roles

Download audit history for internal or external audit

Prevents removal of the last active Global Administrator and Privileged Role Administrator role assignments.

https://docs.microsoft.com/en-us/azure/active-directory/privileged-identity-management/pim-configure

asked 05/10/2024
GISELE AGNARAMON
45 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first