nerdexam
Microsoft

MS-900 · Question #55

You are the Microsoft 365 administrator for a company. You need to ensure that users receive a warning message if they select links in emails that might be unsafe. What should you do?

The correct answer is B. Enable Microsoft Office 365 Advanced Threat Protection. To protect users from unsafe links in emails, Microsoft 365 administrators must enable Advanced Threat Protection (ATP), which includes Safe Links functionality that scans and warns users about potentially malicious URLs.

Submitted by anjalisingh· Mar 5, 2026Describe security, compliance, privacy, and trust in Microsoft 365

Question

You are the Microsoft 365 administrator for a company. You need to ensure that users receive a warning message if they select links in emails that might be unsafe. What should you do?

Options

  • AUse Windows PowerShell to install the latest antimalware engine updates
  • BEnable Microsoft Office 365 Advanced Threat Protection
  • CUse the Microsoft Exchange Admin Center to configure a new spam-filter policy
  • DUse the Microsoft Exchange Admin Center to create a new antimalware policy

How the community answered

(43 responses)
  • A
    2% (1)
  • B
    91% (39)
  • C
    2% (1)
  • D
    5% (2)

Why each option

To protect users from unsafe links in emails, Microsoft 365 administrators must enable Advanced Threat Protection (ATP), which includes Safe Links functionality that scans and warns users about potentially malicious URLs.

AUse Windows PowerShell to install the latest antimalware engine updates

Installing antimalware engine updates via PowerShell addresses malware signature definitions, not URL/link safety warnings in emails.

BEnable Microsoft Office 365 Advanced Threat ProtectionCorrect

Microsoft Office 365 Advanced Threat Protection includes the Safe Links feature, which actively scans URLs in emails at the time of click and displays a warning message if the link is determined to be potentially unsafe or malicious. This is the only option among the choices that directly addresses URL-based threat protection with real-time warning messages to end users.

CUse the Microsoft Exchange Admin Center to configure a new spam-filter policy

Spam filter policies in the Exchange Admin Center are designed to filter unsolicited bulk email based on content heuristics, not to warn users about unsafe hyperlinks within messages.

DUse the Microsoft Exchange Admin Center to create a new antimalware policy

Antimalware policies in the Exchange Admin Center scan email attachments for known malware, but do not provide link-scanning or warning functionality for potentially unsafe URLs.

Concept tested: Microsoft Defender for Office 365 Safe Links protection

Source: https://learn.microsoft.com/en-us/microsoft-365/security/office-365-security/safe-links-about

Topics

#Advanced Threat Protection#Safe Links#email security#phishing protection

Community Discussion

No community discussion yet for this question.

Full MS-900 Practice