Big Halloween Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

Pass the Microsoft Microsoft Certified: Identity and Access Administrator Associate SC-300 Questions and answers with CertsForce

Viewing page 2 out of 5 pages
Viewing questions 11-20 out of questions
Questions # 11:

You need to resolve the issue of I-.Group1. What should you do first?

Options:

A.

Recreate the IT-Group 1 group.


B.

Change Membership type of IT-Group1 to Dynamic Device


C.

Add an owner to IT_Group1.


D.

Change Membership type of IT-Group1 to Dynamic User


Expert Solution
Questions # 12:

You need implement the planned changes for application access to organizational data. What should you configure?

Options:

A.

authentication methods


B.

the User consent settings


C.

access packages


D.

an application proxy


Expert Solution
Questions # 13:

You implement the planned changes for SSPR.

What occurs when User3 attempts to use SSPR? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Question # 13


Expert Solution
Questions # 14:

You need to resolve the issue of the guest user invitations. What should you do for the Azure AD tenant?

Options:

A.

Configure the Continuous access evaluation settings.


B.

Modify the External collaboration settings.


C.

Configure the Access reviews settings.


D.

Configure a Conditional Access policy.


Expert Solution
Questions # 15:

You need to implement the planned changes for Package1. Which users can create and manage the access review?

Options:

A.

User3 only


B.

User4 only


C.

User5 only


D.

User3 and User4


E.

User3 and User5


F.

User4and User5


Expert Solution
Questions # 16:

You need to resolve the recent security incident issues.

What should you configure for each incident? To answer, drag the appropriate policy types to the correct issues. Each policy type may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.

NOTE: Each correct selection is worth one point.

Question # 16


Expert Solution
Questions # 17:

You need to modify the settings of the User administrator role to meet the technical requirements. Which two actions should you perform for the role? Each correct answer presents part of the solution. NOTE: Each correct selection is worth one point.

Options:

A.

Select Require justification on activation


B.

Set all assignments to Active


C.

Set all assignments to Eligible


D.

Modify the Expire eligible assignments after setting.


E.

Select Require ticket information on activation.


Expert Solution
Questions # 18:

You have a Microsoft 365 E5 subscription. The subscription contains 500 devices that run Windows

You deploy the Global Secure Access client to the devices.

You need to prevent users from accessing httpsy/contoso.com from the devices

Which three actions should you perform in sequence? To answer move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.

Question # 18


Expert Solution
Questions # 19:

You have an Azure subscription. The subscription contains a virtual machine named VM1 that runs Linux. You need to configure enhanced security for VM1. The solution must meet the following requirements:

• Ensure that users can sign in to VM1 by using their Microsoft Entra credentials

• Ensure That users authenticate by using multi-factor out-of-band

• Prevent users from signing in to VM1 by using passwords.

Which two authentication methods can you include in the solution? Each correct answer presents a complete solution. NOTE: Each correct selection Is worth one point.

Options:

A.

the Microsoft Authenticator app


B.

Windows Hello for Business


C.

Passkey(FID02)


D.

Temporary Access Pass


E.

SMS


Expert Solution
Questions # 20:

You have a Microsoft 365 tenant.

All users have computers that run Windows 10. Most computers are company-owned and joined to Azure

Active Directory (Azure AD). Some computers are user-owned and are only registered in Azure AD.

You need to prevent users who connect to Microsoft SharePoint Online on their user-owned computer from

downloading or syncing files. Other users must NOT be restricted.

Which policy type should you create?

Options:

A.

a Microsoft Cloud App Security activity policy that has Microsoft Office 365 governance actions configured


B.

an Azure AD conditional access policy that has session controls configured


C.

an Azure AD conditional access policy that has client apps conditions configured


D.

a Microsoft Cloud App Security app discovery policy that has governance actions configured


Expert Solution
Viewing page 2 out of 5 pages
Viewing questions 11-20 out of questions