Microsoft SC-300 Practice Test - Questions Answers, Page 3
List of questions
Question 21

You need implement the planned changes for application access to organizational data. What should you configure?
authentication methods
the User consent settings
access packages
an application proxy
Question 22

You implement the planned changes for SSPR.
What occurs when User3 attempts to use SSPR? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Question 23

DRAG DROP
You need to resolve the recent security incident issues.
What should you configure for each incident? To answer, drag the appropriate policy types to the correct issues. Each policy type may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.
NOTE: Each correct selection is worth one point.
Explanation:
Question 24

You need to resolve the issue of the sales department users. What should you configure for the Azure AD tenant?
the User settings
the Device settings
the Access reviews settings
Security defaults
Question 25

You need to resolve the issue of I-.Group1. What should you do first?
Recreate the IT-Group 1 group.
Change Membership type of IT-Group1 to Dynamic Device
Add an owner to IT_Group1.
Change Membership type of IT-Group1 to Dynamic User
Question 26

You need to implement the planned changes for Package1. Which users can create and manage the access review?
User3 only
User4 only
User5 only
User3 and User4
User3 and User5
User4and User5
Question 27

You need to resolve the issue of the guest user invitations. What should you do for the Azure AD tenant?
Configure the Continuous access evaluation settings.
Modify the External collaboration settings.
Configure the Access reviews settings.
Configure a Conditional Access policy.
Question 28

You need to modify the settings of the User administrator role to meet the technical requirements. Which two actions should you perform for the role? Each correct answer presents part of the solution. NOTE: Each correct selection is worth one point.
Select Require justification on activation
Set all assignments to Active
Set all assignments to Eligible
Modify the Expire eligible assignments after setting.
Select Require ticket information on activation.
Question 29

Your company has an Azure Active Directory (Azure AD) tenant named contosri.com. The company has the business partners shown in the following table.
users can request access by using package 1.
Users at Fabrikam and Litware use ail then respective domain names for email addresses.
You plan to create an access package named packaqel that will be accessible only to the Fabrikam and Litware users.
You need to configure connected organizations for Fabrikam and litware so that any of their users can request access by using package1.
What is the minimum of connected organization that you should create.
1
2
3
4
Question 30

You have an Azure subscription that contains the resources shown in the following table.
For which resources can you create an access review?
Group1, App1, Contributor, and Role1
Hotel and Contributor only
Group1, Role1, and Contributor only
Group1 only
Explanation:
Access reviews require an Azure AD Premium P2 license.
Access reviews for Group1 and App1 can be configured in Azure AD Access Reviews.
Access reviews for the Contributor role and Role1 would need to be configured in Privileged Identity Management (PIM). PIM is included in Azure AD Premium P2.
Reference:
https://docs.microsoft.com/en-us/azure/active-directory/privileged-identity-management/pimhow-to-start-security-review?toc=/azure/active-directory/governance/toc.json
https://docs.microsoft.com/en-us/azure/active-directory/governance/access-reviews-overview
Question