Pre-Summer Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

Pass the Microsoft Microsoft 365 Certified: Enterprise Administrator Expert MS-102 Questions and answers with CertsForce

Viewing page 2 out of 7 pages
Viewing questions 11-20 out of questions
Questions # 11:

You have a Microsoft 365 E5 subscription.

You plan to configure multi-factor authentication (MFA).

You need to select an authentication method for users. The solution must ensure that each time a user is prompted for MFA, the application name that requires MFA is provided.

What should you select?

Options:

A.

Microsoft Authenticator


B.

a FID02 security key


C.

a voice call


D.

SMS


E.

email OTP


Expert Solution
Questions # 12:

You have a Microsoft 365 E5 subscription that contains the users shown in the following table.

Question # 12

You configure a Multifactor authentication registration policy that has the following settings:

• Assignments:

* Include: Group1

* Exclude: Group2

• Controls: Requite Microsoft Entra ID multifactor authentication registration

• Policy enforcement: Enabled

You create a conditional access policy that has the following settings:

• Name: Policy1

• Assignments:

* Include: Group1

* Exclude; Group1

• Grant: Require multifactor authentication

• Enable policy. On

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

NOTE: Each coned selection is one point.

Question # 12


Expert Solution
Questions # 13:

You have a Microsoft 365 subscription.

You configure a new Azure AD enterprise application named App1. App1 requires that a user be assigned the Reports Reader role.

Which type of group should you use to assign the Reports Reader role and to access App1?

Options:

A.

a Microsoft 365 group that has assigned membership


B.

a Microsoft 365 group that has dynamic user membership


C.

a security group that has assigned membership


D.

a security group that has dynamic user membership


Expert Solution
Questions # 14:

You have a Microsoft Azure Active Directory (Azure AD) tenant named Contoso.com.

You create a Microsoft Defender for identity instance Contoso.

The tenant contains the users shown in the following table.

Question # 14

You need to modify the configuration of the Defender for identify sensors.

Solutions: You instruct User3 to modify the Defender for identity sensor configuration.

Does this meet the goal?

Options:

A.

Yes


B.

No


Expert Solution
Questions # 15:

You have a Microsoft 365 E5 tenant that contains 500 Windows 10 devices. The devices are enrolled in Microsoft intune.

You plan to use Endpoint analytics to identify hardware issues.

You need to enable Window health monitoring on the devices to support Endpoint analytics

What should you do?

Options:

A.

Configure the Endpoint analytics baseline regression threshold.


B.

Create a configuration profile.


C.

Create a Windows 10 Security Baseline profile


D.

Create a compliance policy.


Expert Solution
Questions # 16:

HOTSPOT

You have a Microsoft 365 tenant.

You plan to create a retention policy as shown in the following exhibit.

Question # 16

Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.

NOTE: Each correct selection is worth one point.

Question # 16


Expert Solution
Questions # 17:

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.

After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.

You have a Microsoft 365 E5 subscription.

You create an account for a new security administrator named SecAdmin1.

You need to ensure that SecAdmin1 can manage Microsoft Defender for Office 365 settings and policies for Microsoft Teams, SharePoint, and OneDrive.

Solution: From the Microsoft Entra admin center, you assign SecAdmin1 the Security Administrator role.

Does this meet the goal?

Options:

A.

Yes


B.

No


Expert Solution
Questions # 18:

You have a Microsoft 365 E5 subscription that contains two groups named Group1 and Group2. You plan to configure a data loss prevention (DLP) strategy that meets the following requirements:

• Members of Group1 must be prevented from sharing documents that contain credit card numbers.

• Members of Group2 must be prevented from sharing documents that are classified as internal by Microsoft Purview Information Protection.

• The solution must minimize administrative effort

You need to create a DLP policy for each group.

Which condition should you add to each DLP policy rule for each group? To answer, select the appropriate options in the answer

area.

NOTE: Each correct selection is worth one point.

Question # 18


Expert Solution
Questions # 19:

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.

After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.

Your network contains an Active Directory domain.

You deploy an Azure AD tenant.

Another administrator configures the domain to synchronize to Azure AD.

You discover that 10 user accounts in an organizational unit (OU) are NOT synchronized to Azure AD. All the other user accounts synchronized successfully.

You review Azure AD Connect Health and discover that all the user account synchronizations completed successfully.

You need to ensure that the 10 user accounts are synchronized to Azure AD.

Solution: From the Synchronization Rules Editor, you create a new outbound synchronization rule.

Does this meet the goal?

Options:

A.

Yes


B.

No


Expert Solution
Questions # 20:

Your company has an Azure AD tenant named contoso.onmicrosoft.com.

You purchase a domain named contoso.com from a registrar and add all the required DNS records.

You create a user account named User1. User1 is configured to sign in as userl@contoso.onmicrosoft.com.

You need to configure User1 to sign in as user1@contoso.com.

Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.

Question # 20


Expert Solution
Viewing page 2 out of 7 pages
Viewing questions 11-20 out of questions