ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 256 - MS-700 discussion

Report
Export

You are assigned the Groups Administrator role.

You discover that you cannot create an expiration policy in Microsoft 365.

You need to create the expiration policy. The solution must use the principle of least privilege.

What should you do first?

A.

Modify the global (Org-wide default) app permission policy.

Answers
A.

Modify the global (Org-wide default) app permission policy.

B.

Request the Global Administrator role.

Answers
B.

Request the Global Administrator role.

C.

Upgrade the Azure AD license.

Answers
C.

Upgrade the Azure AD license.

D.

Purchase a Microsoft Defender for Identity license.

Answers
D.

Purchase a Microsoft Defender for Identity license.

Suggested answer: B

Explanation:

According to the Microsoft documentation1, to create an expiration policy for Microsoft 365 groups, you need to have one of the following roles:

Global administrator

Groups administrator

User administrator

The Groups Administrator role allows you to manage all aspects of Microsoft 365 groups, including their settings, classifications, expiration policy, and naming policy2. However, this role does not allow you to create an expiration policy for Microsoft 365 groups.

Therefore, based on this information, the correct answer is B. Request the Global Administrator role. This role has the highest level of permissions and can perform any administrative task in Microsoft 3653. Alternatively, you can request the User Administrator role, which can also create an expiration policy for Microsoft 365 groups1.

asked 05/10/2024
Simon John Mather
44 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first