AZ-500 · Question #39
Drag and Drop Question You are implementing conditional access policies. You must evaluate the existing Azure Active Directory (Azure AD) risk events and risk levels to configure and implement the…
The correct answer is Medium; High; Medium. Azure AD Identity Protection assigns specific risk levels to each risk event type based on the severity of the threat. 'Users with leaked credentials' is rated Medium because while serious, it is a known and detectable threat that allows time for remediation. 'Impossible travel…
Question
Exhibits
Answer Area
Drag items
Correct arrangement
- Medium
- High
- Medium
Explanation
Azure AD Identity Protection assigns specific risk levels to each risk event type based on the severity of the threat. 'Users with leaked credentials' is rated Medium because while serious, it is a known and detectable threat that allows time for remediation. 'Impossible travel to atypical locations' is rated High because it strongly indicates account compromise since it is physically impossible for a legitimate user to sign in from two geographically distant locations in a short timeframe. 'Sign-ins from IP addresses with suspicious activity' is rated Medium because it indicates potential risk but is not as definitive as impossible travel since IP addresses can be shared or used by proxies.
Topics
Community Discussion
No community discussion yet for this question.

