nerdexam
MicrosoftMicrosoft

SC-100 · Question #167

SC-100 Question #167: Real Exam Question with Answer & Explanation

Sign in or unlock SC-100 to reveal the answer and full explanation for question #167. The question stem and answer options stay visible for context.

Design security operations, identity, and compliance capabilities

Question

You have a Microsoft 365 subscription. You are designing a user access solution that follows the Zero Trust principles of the Microsoft Cybersecurity Reference Architectures (MCRA). You need to recommend a solution that automatically restricts access to Microsoft Exchange Online, SharePoint Online, and Teams in near-real-time (NRT) in response to the following Azure AD events: - A user account is disabled or deleted. - The password of a user is changed or reset. - All the refresh tokens for a user are revoked. - Multi-factor authentication (MFA) is enabled for a user. Which two features should you include in the recommendation? Each correct answer presents part of the solution. NOTE: Each correct selection is worth one point.

Options

  • Acontinuous access evaluation
  • BAzure AD Application Proxy
  • Ca sign-in risk policy
  • DAzure AD Privileged Identity Management (PIM)
  • EConditional Access

Unlock SC-100 to see the answer

You've previewed enough free SC-100 questions. Unlock SC-100 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#Continuous Access Evaluation#Conditional Access#Zero Trust#Identity and Access Management
Full SC-100 PracticeBrowse All SC-100 Questions