MS-102 Exam Questions
369 real MS-102 exam questions with expert-verified answers and explanations. Page 5 of 8.
- Question #331Manage security and threats by using Microsoft Defender XDR
You have a Microsoft 365 E5 subscription and use Microsoft Defender for Endpoint. Defender for Endpoint has tamper protection enabled. You have a device named Device1 that is onboa...
Microsoft Defender for EndpointTamper protectionTroubleshooting modeAntivirus configuration - Question #332Implement and manage Microsoft Entra identity and access
You have a Microsoft 365 E5 subscription. You plan to configure Privileged Identity Management (PIM) for the User Administrator role in Microsoft Entra. You need to ensure that a u...
Privileged Identity Management (PIM)Microsoft Entra IDRole AssignmentsJust-in-Time Access - Question #333Implement and manage Microsoft Entra identity and access
You have a Microsoft 365 subscription that contains a Microsoft Entra tenant named contoso.com. The tenant includes a user named User1. You enable Microsoft Entra ID Protection. Yo...
Microsoft Entra ID ProtectionRole-Based Access Control (RBAC)Least PrivilegeSecurity Reader - Question #334Manage security and threats by using Microsoft Defender XDR
Note: This section contains one or more sets of questions with the same scenario and problem. Each question presents a unique solution to the problem. You must determine whether th...
Microsoft Defender for Office 365Preset Security PoliciesThreat ProtectionEmail Security - Question #335Manage security and threats by using Microsoft Defender XDR
Note: This section contains one or more sets of questions with the same scenario and problem. Each question presents a unique solution to the problem. You must determine whether th...
Microsoft Defender for Office 365Anti-malware policiesThreat protectionSecurity policies - Question #336Manage security and threats by using Microsoft Defender XDR
Note: This section contains one or more sets of questions with the same scenario and problem. Each question presents a unique solution to the problem. You must determine whether th...
Microsoft Defender for Office 365Preset security policiesThreat policiesEmail protection - Question #337Deploy and manage a Microsoft 365 tenant
You have a Microsoft 365 E5 subscription. You need to create a mail-enabled contact. Which portal should you use?
Mail-enabled contactsExchange Online administrationAdmin portals - Question #338Manage security and threats by using Microsoft Defender XDR
Note: This section contains one or more sets of questions with the same scenario and problem. Each question presents a unique solution to the problem. You must determine whether th...
Microsoft Defender for EndpointMicrosoft IntuneDevice OnboardingEDR Policy - Question #339Deploy and manage a Microsoft 365 tenant
Note: This section contains one or more sets of questions with the same scenario and problem. Each question presents a unique solution to the problem. You must determine whether th...
Co-managementMicrosoft IntuneDevice ManagementEndpoint Management - Question #340Manage security and threats by using Microsoft Defender XDR
Note: This section contains one or more sets of questions with the same scenario and problem. Each question presents a unique solution to the problem. You must determine whether th...
Microsoft IntuneMicrosoft Defender for EndpointDevice onboardingDevice configuration profile - Question #341Manage security and threats by using Microsoft Defender XDR
You have a Microsoft 365 E5 subscription that contains a user named User1. You have a Conditional Access policy applied to a cloud-based app named App1. App1 has Conditional Access...
Microsoft Defender for Cloud AppsConditional Access App ControlSession policiesReal-time session control - Question #342Manage security and threats by using Microsoft Defender XDR
You have a Microsoft 365 E5 subscription and use Microsoft Defender for Cloud Apps. You plan to perform a security audit of all the apps detected by Cloud Discovery. You need to tr...
Microsoft Defender for Cloud AppsCloud DiscoveryApp ManagementCustom Tags - Question #343Manage security and threats by using Microsoft Defender XDR
You use Microsoft Defender for Office 365. You plan to automate an attack simulation campaign. Any users that fail the simulation must take additional training based on the simulat...
Attack Simulation TrainingDefender for Office 365Security AwarenessTraining Availability - Question #344Manage security and threats by using Microsoft Defender XDR
You have a Microsoft 365 E5 subscription. You need to assign a Microsoft Defender for Endpoint baseline. Which portal should you use?
Microsoft Defender for EndpointSecurity BaselinesMicrosoft IntuneEndpoint Management - Question #345Deploy and manage a Microsoft 365 tenant
You have a Microsoft 365 E5 subscription. You need to create a mail-enabled contact. Which portal should you use?
Mail-enabled contactExchange admin centerMicrosoft 365 administrationEmail management - Question #346Manage security and threats by using Microsoft Defender XDR
You have a Microsoft 365 E5 subscription. You need to be alerted when Microsoft Defender XDR detects high-severity incidents. What should you use?
Microsoft Defender XDRIncident ManagementAlertingEmail Notifications - Question #347Manage security and threats by using Microsoft Defender XDR
Note: This section contains one or more sets of questions with the same scenario and problem. Each question presents a unique solution to the problem. You must determine whether th...
Microsoft Defender for EndpointMicrosoft IntuneDevice OnboardingCompliance Policies - Question #348Manage security and threats by using Microsoft Defender XDR
You have a Microsoft 365 subscription and use Microsoft Defender for Office 365. You need to create a policy to ensure that any email messages containing an attachment that has the...
Microsoft Defender for Office 365Anti-malware policiesEmail securityAttachment filtering - Question #375Manage security and threats by using Microsoft Defender XDR
You have a Microsoft 365 E5 subscription that contains a user named User1. You create an anti-phishing policy named Policy1 that has the following settings: - Include these users,...
Anti-phishing policyMicrosoft Defender for Office 365Email securityThreat detection - Question #376Manage security and threats by using Microsoft Defender XDR
You have a Microsoft 365 subscription that uses Microsoft Defender for Endpoint. All the devices in your organization are onboarded to Microsoft Defender for Endpoint. You need to...
Defender for EndpointAdvanced huntingCustom detectionSecurity alerting - Question #377Manage security and threats by using Microsoft Defender XDR
You have a Microsoft 365 subscription that includes Microsoft Defender XDR. From the Microsoft Defender portal, you review the Microsoft Secure Score improvement actions shown in t...
Microsoft Secure ScoreMicrosoft Defender XDRSecurity Posture Management - Question #378Manage security and threats by using Microsoft Defender XDR
You have a Microsoft 365 E5 subscription that uses Microsoft Defender for Endpoint and Microsoft Intune. All devices run Windows 11 and are Microsoft Entra joined. You are alerted...
Threat analyticsZero-day attackVulnerable devicesDevice remediation - Question #379Manage security and threats by using Microsoft Defender XDR
Note: This section contains one or more sets of questions with the same scenario and problem. Each question presents a unique solution to the problem. You must determine whether th...
Defender for Office 365Anti-phishing policyBaseline protection profileThreat policies - Question #381Implement and manage Microsoft Entra identity and access
You have a Microsoft 365 E5 subscription and use Microsoft Defender for Cloud Apps. You are reviewing the activity log of the subscription. You need to ensure that events originati...
Named LocationsDefender for Cloud AppsMicrosoft EntraEvent Categorization - Question #382Manage security and threats by using Microsoft Defender XDR
You have an on-premises server named Server1 that runs Windows Server. You have a Microsoft 365 E5 subscription and use Microsoft Defender for Cloud Apps. You plan to configure Clo...
Cloud DiscoveryDefender for Cloud AppsLog collectorDocker - Question #383Manage security and threats by using Microsoft Defender XDR
You have a Microsoft 365 E5 subscription. The subscription contains users that have Windows 11 devices. You plan to onboard the devices to Microsoft Defender for Endpoint. The devi...
Defender for EndpointStreamlined connectivityProxy configurationWindows 11 onboarding - Question #384Implement and manage Microsoft Entra identity and access
You have a Microsoft 365 subscription that contains a Microsoft Entra tenant named contoso.com. The tenant includes a user named User1. You plan to use Microsoft Entra ID Protectio...
Entra ID ProtectionSecurity ReaderRBACLeast privilege - Question #385Manage security and threats by using Microsoft Defender XDR
You have a Microsoft 365 subscription and use Microsoft Defender for Office 365. You need to recommend a solution to educate users on topics that relate to social engineering risks...
Attack simulation trainingPhishing simulationUser security awarenessDefender for Office 365 - Question #386Manage security and threats by using Microsoft Defender XDR
You have a Microsoft 365 E5 subscription and use Microsoft Defender for Office 365. You need to create a policy that will quarantine messages containing attachments that match .apk...
Microsoft Defender for Office 365Anti-malware policyAttachment filteringFile extensions - Question #387Manage security and threats by using Microsoft Defender XDR
Note: This section contains one or more sets of questions with the same scenario and problem. Each question presents a unique solution to the problem. You must determine whether th...
Defender for Cloud AppsOAuth app policiesMicrosoft 365 connectorApp governance - Question #388Manage security and threats by using Microsoft Defender XDR
Note: This section contains one or more sets of questions with the same scenario and problem. Each question presents a unique solution to the problem. You must determine whether th...
OAuth app policiesConditional Access app controlDefender for Cloud Apps - Question #389Manage security and threats by using Microsoft Defender XDR
Note: This section contains one or more sets of questions with the same scenario and problem. Each question presents a unique solution to the problem. You must determine whether th...
Defender for Cloud AppsOAuth app policiesCloud DiscoveryApp governance - Question #393Deploy and manage a Microsoft 365 tenant
You have a Microsoft 365 E5 subscription that uses Microsoft Intune. In the Microsoft Endpoint Manager admin center, you discover many stale and inactive devices. You enable device...
Intune device cleanupinactive device removalEndpoint Manager - Question #397Manage compliance by using Microsoft Purview
You have a Microsoft 365 subscription. You need to configure a compliance solution that meets the following requirements: - Defines sensitive data based on existing data samples. -...
Sensitive info typesDLP policyData classificationExfiltration prevention - Question #398Manage compliance by using Microsoft Purview
You have a new Microsoft 365 E5 subscription. You plan to use Activity explorer to monitor data loss prevention (DLP) rule activity. You need to ensure that Activity explorer conta...
Activity ExplorerDLPAuditingMicrosoft 365 Purview - Question #399Manage security and threats by using Microsoft Defender XDR
You have a Microsoft 365 subscription that uses Microsoft Defender for Office 365 and contains a mailbox name Mailbox1. You plan to use Mailbox 1 to collect and analyze unfiltered...
Defender for Office 365SecOps mailboxMail filtering bypassEmail policies - Question #400Manage security and threats by using Microsoft Defender XDR
Note: This section contains one or more sets of questions with the same scenario and problem. Each question presents a unique solution to the problem. You must determine whether th...
Defender for EndpointIntune compliance policyDevice onboardingDevice management - Question #405Implement and manage Microsoft Entra identity and access
Your network contains two on-premises Active Directory Domain Services (AD DS) forests named contoso.com and fabrikam.com that are connected by using a forest trust. You have a Mic...
Microsoft Entra ConnectDevice SyncMulti-forest AD DSSelective Sync - Question #406Implement and manage Microsoft Entra identity and access
Your company has offices in Seattle and Denver. You have a Microsoft 365 subscription. You plan to create a Conditional Access policy named Policy1 that will enforce multifactor au...
Conditional AccessNamed LocationsMFAMicrosoft Entra - Question #408Manage security and threats by using Microsoft Defender XDR
You have a Microsoft 365 subscription. You need to identify which shadow IT apps users connect to by using Cloud Discovery in Microsoft Defender for Cloud Apps. What should you cre...
Cloud DiscoveryDefender for Cloud AppsShadow ITSnapshot reports - Question #409Manage security and threats by using Microsoft Defender XDR
You have a Microsoft 365 E5 subscription and use Microsoft Defender for Cloud Apps. You need to ensure that when a user-based alert is triggered in Defender for Cloud Apps, the use...
Defender for Cloud AppsUser alertsPower Automate playbooksAutomated remediation - Question #410Manage security and threats by using Microsoft Defender XDR
You have a Microsoft 365 E5 subscription that contains a group named Group1. The subscription uses Microsoft Defender for Cloud Apps. You configure cloud discovery. You need to ens...
Cloud discoveryShadow IT detectionUser monitoringGroup-based reporting - Question #411Manage security and threats by using Microsoft Defender XDR
Note: This section contains one or more sets of questions with the same scenario and problem. Each question presents a unique solution to the problem. You must determine whether th...
Defender for Cloud AppsOAuth app policiesAPI tokenapp connectors - Question #412Manage security and threats by using Microsoft Defender XDR
You have a Microsoft 365 E5 subscription. You plan to deploy Microsoft Defender for Cloud Apps and connect Microsoft 365 to Defender for Cloud Apps. You need to ensure that you can...
Defender for Cloud AppsMicrosoft 365 connectorFile monitoringApp connector - Question #413Manage compliance by using Microsoft Purview
You have a Microsoft 365 E5 subscription and use Microsoft Purview. The subscription contains the devices shown in the following table. All the devices are onboarded to Microsoft D...
Endpoint DLPMicrosoft PurviewDevice compatibilityDefender for Endpoint - Question #415Implement and manage identity and access
You have Microsoft 365 E5 subscription that contains the identities shown in the following table. You create a shared mailbox named Shared1. Which identities can you add to Shared1...
Shared mailboxExchange OnlineMember managementIdentity constraints - Question #417Deploy and manage a Microsoft 365 tenant
You have a Microsoft 365 E5 subscription. You need to create a mail-enabled contact. Which portal should you use?
Mail-enabled contactsExchange admin centerMicrosoft 365 administration - Question #419Manage security and threats by using Microsoft Defender XDR
You have a Microsoft 365 subscription that contains 500 Windows devices enrolled in Microsoft Intune. You need to ensure that you can review vulnerability management recommendation...
Endpoint Detection and ResponseVulnerability ManagementIntune Policy TemplatesMicrosoft Defender Portal - Question #421Manage security and threats by using Microsoft Defender XDR
You have a Microsoft 365 E5 subscription and use Microsoft Defender for Endpoint. The subscription contains Windows 11 devices. You need to recommend a solution to prevent antiviru...
Tamper protectionDefender for EndpointReal-time protectionWindows 11 - Question #423Manage security and threats by using Microsoft Defender XDR
You have a Microsoft 365 E5 subscription that contains 1,000 Windows devices. You need to review the exposure score of the devices. Which portal should you use?
Exposure ScoreMicrosoft DefenderVulnerability managementDevice security