Task 1
You need to deploy multi factor authentication (MFA). The solution must meet the following requirements:
• Require MFA registration only for members of the Sg-Finance group.
• Exclude Debra Berger from having to register for MFA.
• Implement the solution without using a Conditional Access policy.
Task 5
You need to assign a Windows 10/11 Enterprise E3 license to the Sg-Retail group.
Task 3
You need to add the Linkedln application as a resource to the Sales and Marketing access package. The solution must NOT remove any other resources from the access package.
Task 4
You need to ensure that all users can consent to apps that require permission to read their user profile. Users must be prevented from consenting to apps that require any other permissions.
Task 6
You need to implement additional security checks before the members of the Sg-Executive can access any company apps. The members must meet one of the following conditions:
• Connect by using a device that is marked as compliant by Microsoft Intune.
• Connect by using client apps that are protected by app protection policies.
Task 10
You need to create a group named Audit. The solution must ensure that the members of Audit can activate the Security Reader role.
Task 8
You need to prevent all users from using legacy authentication protocols when authenticating to Microsoft Entra ID.
Task 7
You need to lock out accounts for five minutes when they have 10 failed sign-in attempts.
You have a Microsoft 365 E5 subscription and an Azure subscription. You plan to analyze Microsoft Entra sign-in logs by using Azure Monitor. You need to configure diagnostic settings for Microsoft Entra. Which destination should you configure for the sign-in logs?
You have a Microsoft Entra tenant that contains the identities shown in the following table.

Group1 has the following configurations:
• Owners: User1, User4
• Members: User1, Managed2, Gioup2
You create an access review that has the following settings:
• Name: Review1
• Review scope: Select Teams + Groups
• Group: Group1
• Scope: All users
• Select reviewers: Group owner(s)
The Fallback reviewers: setting is NOT configured.
