ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 306 - AZ-104 discussion

Report
Export

You have an Azure Active Directory (Azure AD) tenant that has Azure AD Privileged Identity

Management configured.

You have 10 users who are assigned the Security Administrator role for the tenant.

You need the users to verify whether they still require the Security Administrator role.

What should you do?

A.
From Azure AD Identity Protection, configure a user risk policy.
Answers
A.
From Azure AD Identity Protection, configure a user risk policy.
B.
From Azure AD Privileged Identity Management, create an access review.
Answers
B.
From Azure AD Privileged Identity Management, create an access review.
C.
From Azure AD Identity Protection, configure the Weekly Digest.
Answers
C.
From Azure AD Identity Protection, configure the Weekly Digest.
D.
From Azure AD Privileged Identity Management, create a conditional access policy.
Answers
D.
From Azure AD Privileged Identity Management, create a conditional access policy.
Suggested answer: B

Explanation:

Reference:

https://docs.microsoft.com/en-us/azure/active-directory/privileged-identity-management/pimhow-to-start-security-review

To reduce the risk associated with stale role assignments, you should regularly review access. You can use Azure AD Privileged Identity Management (PIM) to create access reviews for privileged Azure AD roles. You can also configure recurring access reviews that occur automatically.

Steps:

1. Sign in to Azure portal with a user that is a member of the Privileged role administrator role.

2. Open Azure AD Privileged Identity Management.

3. Select Azure AD roles.

4. Under Manage, select Access reviews, and then select New.

Reference:

https://docs.microsoft.com/en-us/azure/active-directory/privileged-identity-management/pimhow-to-start-security-review

asked 26/09/2024
Jonas Junker
42 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first