Microsoft SC-900 Practice Test - Questions Answers, Page 10
List of questions
Related questions
Which type of identity is created when you register an application with Active Directory (Azure AD)?
a user account
a user-assigned managed identity
a system-assigned managed identity
a service principal
Which three tasks can be performed by using Azure Active Directory (Azure AD) Identity Protection? Each correct answer presents a complete solution.
NOTE: Each correct selection is worth one point.
Configure external access for partner organizations.
Export risk detection to third-party utilities.
Automate the detection and remediation of identity based-risks.
Investigate risks that relate to user authentication.
Create and automatically assign sensitivity labels to data.
You have a Microsoft 365 E3 subscription.
You plan to audit user activity by using the unified audit log and Basic Audit.
For how long will the audit records be retained?
15 days
30 days
90 days
180 days
To which type of resource can Azure Bastion provide secure access?
Azure Files
Azure SQL Managed Instances
Azure virtual machines
Azure App Service
HOTSPOT
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
What are three uses of Microsoft Cloud App Security? Each correct answer presents a complete solution. NOTE: Each correct selection is worth one point.
to discover and control the use of shadow IT
to provide secure connections to Azure virtual machines
to protect sensitive information hosted anywhere in the cloud
to provide pass-through authentication to on-premises applications
to prevent data leaks to noncompliant apps and limit access to regulated data
DRAG DROP
Match the Microsoft 365 insider risk management workflow step to the appropriate task.
To answer, drag the appropriate step from the column on the left to its task on the right. Each step may be used once, more than once, or not at all.
NOTE: Each correct match is worth one point.
What can you use to view the Microsoft Secure Score for Devices?
Microsoft Defender for Cloud Apps
Microsoft Defender for Endpoint
Microsoft Defender for Identity
Microsoft Defender for Office 365
Which two Azure resources can a network security group (NSG) be associated with? Each correct answer presents a complete solution. NOTE: Each correct selection is worth one point.
a network interface
an Azure App Service web app
a virtual network
a virtual network subnet
a resource group
What can you use to provision Azure resources across multiple subscriptions in a consistent manner?
Microsoft Defender for Cloud
Azure Blueprints
Microsoft Sentinel
Azure Policy
Question