ExamGecko
Home / Microsoft / SC-900 / List of questions
Ask Question

Microsoft SC-900 Practice Test - Questions Answers, Page 4

List of questions

Question 31

Report
Export
Collapse

HOTSPOT

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

NOTE: Each correct selection is worth one point.


Microsoft SC-900 image Question 31 108678 10052024010936000
Correct answer: Microsoft SC-900 image answer Question 31 108678 10052024010936000

Explanation:

Box 1: Yes

The MailItemsAccessed event is a mailbox auditing action and is triggered when mail data is accessed by mail protocols and mail clients.

Box 2: No

Basic Audit retains audit records for 90 days.

Advanced Audit retains all Exchange, SharePoint, and Azure Active Directory audit records for one year. This is accomplished by a default audit log retention policy that retains any audit record that contains the value of Exchange, SharePoint, or AzureActiveDirectory for the Workload property (which indicates the service in which the activity occurred) for one year.

Box 3: yes

Advanced Audit in Microsoft 365 provides high-bandwidth access to the Office 365 Management Activity API.

Reference:

https://docs.microsoft.com/en-us/microsoft-365/compliance/advanced-audit?view=o365-worldwide

https://docs.microsoft.com/en-us/microsoft-365/compliance/auditing-solutions-overview?view=o365-worldwide#licensing-requirements

https://docs.microsoft.com/en-us/office365/servicedescriptions/microsoft-365-service-descriptions/microsoft-365-tenantlevel-services-licensing-guidance/microsoft-365-security-compliance-licensing-guidance#advanced-audit

asked 05/10/2024
Tillmon, Quinton
37 questions

Question 32

Report
Export
Collapse

HOTSPOT

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

NOTE: Each correct selection is worth one point.


Microsoft SC-900 image Question 32 108679 10052024010936000
Correct answer: Microsoft SC-900 image answer Question 32 108679 10052024010936000

Explanation:

Box 1: No

Box 2: Yes

Leaked Credentials indicates that the user's valid credentials have been leaked.

Box 3: Yes

Multi-Factor Authentication can be required based on conditions, one of which is user risk.

Reference:

https://docs.microsoft.com/en-us/azure/active-directory/identity-protection/overview-identity-protection

https://docs.microsoft.com/en-us/azure/active-directory/identity-protection/concept-identity-protection-risks

https://docs.microsoft.com/en-us/azure/active-directory/authentication/tutorial-risk-based-sspr-mfa

asked 05/10/2024
wendy brouwer
38 questions

Question 33

Report
Export
Collapse

Which score measures an organization's progress in completing actions that help reduce risks associated to data protection and regulatory standards?

Microsoft Secure Score

Microsoft Secure Score

Productivity Score

Productivity Score

Secure score in Azure Security Center

Secure score in Azure Security Center

Compliance score

Compliance score

Suggested answer: D

Explanation:

Reference:

https://docs.microsoft.com/en-us/microsoft-365/compliance/compliance-manager?view=o365-worldwide

https://docs.microsoft.com/en-us/microsoft-365/compliance/compliance-score-calculation?view=o365-worldwide

asked 05/10/2024
Ravi Bhatt
28 questions

Question 34

Report
Export
Collapse

What do you use to provide real-time integration between Azure Sentinel and another security source?

Azure AD Connect

Azure AD Connect

a Log Analytics workspace

a Log Analytics workspace

Azure Information Protection

Azure Information Protection

a data connector

a data connector

Suggested answer: D

Explanation:

To on-board Azure Sentinel, you first need to connect to your security sources. Azure Sentinel comes with a number of connectors for Microsoft solutions, including Microsoft 365 Defender solutions, and Microsoft 365 sources, including Office 365, Azure AD, Microsoft Defender for Identity, and Microsoft Cloud App Security, etc.

Reference:

https://docs.microsoft.com/en-us/azure/sentinel/overview

asked 05/10/2024
Stefan Hupfloher
45 questions

Question 35

Report
Export
Collapse

Which Microsoft portal provides information about how Microsoft cloud services comply with regulatory standard, such as International Organization for Standardization (ISO)?

the Microsoft Endpoint Manager admin center

the Microsoft Endpoint Manager admin center

Azure Cost Management + Billing

Azure Cost Management + Billing

Microsoft Service Trust Portal

Microsoft Service Trust Portal

the Azure Active Directory admin center

the Azure Active Directory admin center

Suggested answer: C

Explanation:

The Microsoft Service Trust Portal contains details about Microsoft's implementation of controls and processes that protect our cloud services and the customer data therein.

Reference:

https://docs.microsoft.com/en-us/microsoft-365/compliance/get-started-with-service-trust-portal?view=o365-worldwide

asked 05/10/2024
lawrence Ajibolade
49 questions

Question 36

Report
Export
Collapse

In the shared responsibility model for an Azure deployment, what is Microsoft solely responsible for managing?

the management of mobile devices

the management of mobile devices

the permissions for the user data stored in Azure

the permissions for the user data stored in Azure

the creation and management of user accounts

the creation and management of user accounts

the management of the physical hardware

the management of the physical hardware

Suggested answer: D
asked 05/10/2024
Kinshuk Choubisa
44 questions

Question 37

Report
Export
Collapse

What can you use to provide a user with a two-hour window to complete an administrative task in Azure?

Azure Active Directory (Azure AD) Privileged Identity Management (PIM)

Azure Active Directory (Azure AD) Privileged Identity Management (PIM)

Azure Multi-Factor Authentication (MFA)

Azure Multi-Factor Authentication (MFA)

Azure Active Directory (Azure AD) Identity Protection

Azure Active Directory (Azure AD) Identity Protection

conditional access policies

conditional access policies

Suggested answer: D
asked 05/10/2024
Anthony Bradley
43 questions

Question 38

Report
Export
Collapse

In a hybrid identity model, what can you use to sync identities between Active Directory Domain Services (AD DS) and Azure Active Directory (Azure AD)?

Active Directory Federation Services (AD FS)

Active Directory Federation Services (AD FS)

Azure Sentinel

Azure Sentinel

Azure AD Connect

Azure AD Connect

Azure Ad Privileged Identity Management (PIM)

Azure Ad Privileged Identity Management (PIM)

Suggested answer: C

Explanation:

Reference:

https://docs.microsoft.com/en-us/azure/active-directory/hybrid/whatis-azure-ad-connect

asked 05/10/2024
Evelina Turco
34 questions

Question 39

Report
Export
Collapse

What is the purpose of Azure Active Directory (Azure AD) Password Protection?

to control how often users must change their passwords

to control how often users must change their passwords

to identify devices to which users can sign in without using multi-factor authentication (MFA)

to identify devices to which users can sign in without using multi-factor authentication (MFA)

to encrypt a password by using globally recognized encryption standards

to encrypt a password by using globally recognized encryption standards

to prevent users from using specific words in their passwords

to prevent users from using specific words in their passwords

Suggested answer: D

Explanation:

Azure AD Password Protection detects and blocks known weak passwords and their variants, and can also block additional weak terms that are specific to your organization.

With Azure AD Password Protection, default global banned password lists are automatically applied to all users in an Azure AD tenant. To support your own business and security needs, you can define entries in a custom banned password list.

Reference:

https://docs.microsoft.com/en-us/azure/active-directory/authentication/concept-password-ban-bad-on-premises

asked 05/10/2024
Jordan Nguyen
31 questions

Question 40

Report
Export
Collapse

Which Azure Active Directory (Azure AD) feature can you use to evaluate group membership and automatically remove users that no longer require membership in a group?

access reviews

access reviews

managed identities

managed identities

conditional access policies

conditional access policies

Azure AD Identity Protection

Azure AD Identity Protection

Suggested answer: A

Explanation:

Azure Active Directory (Azure AD) access reviews enable organizations to efficiently manage group memberships, access to enterprise applications, and role assignments.

Reference:

https://docs.microsoft.com/en-us/azure/active-directory/governance/access-reviews-overview

asked 05/10/2024
Anthony Agbale
46 questions
Total 199 questions
Go to page: of 20
Search