SC-300 Exam Questions
453 real SC-300 exam questions with expert-verified answers and explanations. Page 1 of 10.
- Question #1
Case Study 1 - Contoso, Ltd Overview Contoso, Ltd. is a consulting company that has a main office in Montreal and branch offices in London and Seattle. Contoso has a partnership wi...
- Question #2
Case Study 1 - Contoso, Ltd Overview Contoso, Ltd. is a consulting company that has a main office in Montreal and branch offices in London and Seattle. Contoso has a partnership wi...
- Question #3
Case Study 1 - Contoso, Ltd Overview Contoso, Ltd. is a consulting company that has a main office in Montreal and branch offices in London and Seattle. Contoso has a partnership wi...
- Question #4Implement authentication and access management
Case Study 1 - Contoso, Ltd Overview Contoso, Ltd. is a consulting company that has a main office in Montreal and branch offices in London and Seattle. Contoso has a partnership wi...
Azure AD Identity ProtectionUser Risk PolicyConditional AccessPassword Management - Question #5Plan and implement identity governance
Case Study 1 - Contoso, Ltd Overview Contoso, Ltd. is a consulting company that has a main office in Montreal and branch offices in London and Seattle. Contoso has a partnership wi...
Azure AD Identity GovernanceAccess PackagesEntitlement ManagementExternal Collaboration - Question #6
Case Study 2 - Litware, Inc Overview Litware, Inc. is a pharmaceutical company that has a subsidiary named Fabrikam, Inc. Litware has offices in Boston and Seattle, but has employe...
- Question #7
Case Study 2 - Litware, Inc Overview Litware, Inc. is a pharmaceutical company that has a subsidiary named Fabrikam, Inc. Litware has offices in Boston and Seattle, but has employe...
- Question #8Implement and manage user identities
Case Study 2 - Litware, Inc Overview Litware, Inc. is a pharmaceutical company that has a subsidiary named Fabrikam, Inc. Litware has offices in Boston and Seattle, but has employe...
Azure AD ConnectDirectory ExtensionsGroup-based LicensingDynamic Groups - Question #9Plan and implement identity governance
Case Study 2 - Litware, Inc Overview Litware, Inc. is a pharmaceutical company that has a subsidiary named Fabrikam, Inc. Litware has offices in Boston and Seattle, but has employe...
Azure AD RolesAzure RBACPrivileged Identity Management (PIM)Least Privilege - Question #10
Case Study 2 - Litware, Inc Overview Litware, Inc. is a pharmaceutical company that has a subsidiary named Fabrikam, Inc. Litware has offices in Boston and Seattle, but has employe...
- Question #11
Your network contains an on-premises Active Directory domain that syncs to an Azure Active Directory (Azure AD) tenant. Users sign in to computers that run Windows 10 and are joine...
- Question #12
You have an Azure Active Directory (Azure AD) tenant that contains the following objects: - A device named Device1 - Users named User1, User2, User3, User4, and User5 - Groups name...
- Question #13
You have a Microsoft Exchange organization that uses an SMTP address space of contoso.com. Several users use their contoso.com email address for self-service sign-up to Azure Activ...
- Question #14
You have a Microsoft 365 tenant that uses the domain named fabrikam.com. The Guest invite settings for Azure Active Directory (Azure AD) are configured as shown in the exhibit. (Cl...
- Question #15
You have 2,500 users who are assigned Microsoft Office 365 Enterprise E3 licenses. The licenses are assigned to individual users. From the Groups blade in the Azure Active Director...
- Question #16Implement and manage user identities
You have an Azure Active Directory (Azure AD) tenant named contoso.com. You plan to bulk invite Azure AD business-to-business (B2B) collaboration users. Which two parameters must y...
Azure AD B2BGuest usersBulk invite - Question #17Implement and manage user identities
You have an Azure Active Directory (Azure AD) tenant that contains the objects shown in the following table. Which objects can you add as members to Group3?
Azure AD groupsGroup membershipUser identities - Question #18Implement and manage user identities
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some q...
Azure AD ConnectAccount synchronizationUser lifecycle management - Question #19Implement and manage user identities
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some q...
Azure AD ConnectAccount synchronizationUser lifecycle management - Question #20Implement identity management solution
You have an Azure Active Directory (Azure AD) tenant that contains a user named SecAdmin1. SecAdmin1 is assigned the Security administrator role. SecAdmin1 reports that she cannot...
Azure AD rolesLeast privilegePassword managementHelpdesk administrator - Question #21Implement authentication and access management solution
You configure Azure Active Directory (Azure AD) Password Protection as shown in the exhibit. (Click the Exhibit tab.) You are evaluating the following passwords: - Pr0jectlitw@re -...
Azure AD Password ProtectionBanned passwordsPassword policies - Question #22Implement authentication and access management solution
You have a Microsoft 365 tenant. All users have mobile phones and laptops. The users frequently work from remote locations that do not have Wi-Fi access or mobile phone connectivit...
Multi-factor authentication (MFA)Microsoft AuthenticatorMFA methodsOffline authentication - Question #23Implement authentication and access management solution
You configure a new Microsoft 365 tenant to use a default domain name of contoso.com. You need to ensure that you can control access to Microsoft 365 resources by using conditional...
Conditional AccessSecurity DefaultsAzure AD administration - Question #24Implement authentication and access management solution
Your company has a Microsoft 365 tenant. The company has a call center that contains 300 users. In the call center, the users share desktop computers and might use a different comp...
Multi-factor authentication (MFA)FIDO2 security keysShared workstationsPasswordless authentication - Question #25Implement authentication and access management solution
You have an Azure Active Directory (Azure AD) tenant named contoso.com. All users who run applications registered in Azure AD are subject to conditional access policies. You need t...
Conditional AccessLegacy authenticationClient apps conditionAuthentication security - Question #26Plan and implement identity governance
You have an Azure Active Directory (Azure AD) tenant. You open the risk detections report. Which risk detection type is classified as a user risk?
Azure AD Identity ProtectionUser riskSign-in riskRisk detection - Question #27Implement access management for apps
You have a Microsoft 365 tenant. All users have computers that run Windows 10. Most computers are company-owned and joined to Azure Active Directory (Azure AD). Some computers are...
Conditional AccessSession controlsDevice stateSharePoint OnlineData exfiltration prevention - Question #28Implement authentication and access management solution
You have an Azure Active Directory (Azure AD) tenant that syncs to an Active Directory domain. The on-premises network contains a VPN server that authenticates to the on-premises A...
Multi-factor authentication (MFA)NPS Extension for Azure MFAVPN authenticationHybrid identity - Question #29Implement authentication and access management solution
You have a Microsoft 365 tenant. The Azure Active Directory (Azure AD) tenant syncs to an on-premises Active Directory domain. The domain contains the servers shown in the followin...
Azure AD Password ProtectionHybrid identityHigh availabilityPassword security - Question #30Implement access management for apps
You have an Azure Active Directory (Azure AD) tenant. You create an enterprise application collection named HR Apps that has the following settings: - Applications: App1, App2, App...
Enterprise applicationsUser assignmentMy Apps portalAzure AD apps - Question #31Implement access management for apps
You have a Microsoft 365 tenant. The Azure Active Directory (Azure AD) tenant syncs to an on-premises Active Directory domain. Users connect to the internet by using a hardware fir...
Cloud App Security (MCAS)Cloud App DiscoveryShadow ITApp governance - Question #32Plan and implement identity governance
You have a Microsoft 365 tenant. The Azure Active Directory (Azure AD) tenant syncs to an on-premises Active Directory domain. You plan to create an emergency-access administrative...
Emergency access accountsBreak-glass accountsGlobal administratorAzure AD securityMonitoring - Question #33Implement authentication and access management solution
You have a Microsoft 365 tenant. In Azure Active Directory (Azure AD), you configure the terms of use. You need to ensure that only users who accept the terms of use can access the...
Terms of UseConditional AccessResource accessCompliance - Question #34Plan and implement identity governance
You have an Azure Active Directory (Azure AD) tenant that contains the groups shown in the following table. For which groups can you create an access review?
Access reviewsAzure AD groupsIdentity governance - Question #35Plan and implement identity governance
You have an Azure Active Directory (Azure AD) tenant that contains the users shown in the following table. User1 is the owner of Group1. You create an access review that has the fo...
Access reviewsSelf-reviewIdentity governanceGroup membership - Question #36
Your company recently implemented Azure Active Directory (Azure AD) Privileged Identity Management (PIM). While you review the roles in PIM, you discover that all 15 users in the I...
- Question #37
You have a Microsoft 365 tenant. The Sign-ins activity report shows that an external contractor signed in to the Exchange admin center. You need to review access to the Exchange ad...
- Question #38
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some q...
- Question #39
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some q...
- Question #40
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some q...
- Question #41
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some q...
- Question #42Implement authentication and access management
Note: This question is part of series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some que...
Multi-Factor Authentication (MFA)Azure AD GroupsUser AuthenticationConditional Access - Question #43
Hotspot Question You have a Microsoft 365 tenant named contoso.com. Guest user access is enabled. Users are invited to collaborate with contoso.com as shown in the following table....
- Question #44Manage Azure Active Directory identities and governance - specifically performing an IT Pro (internal) admin takeover of an unmanaged Azure AD tenant created through self-service sign-up, aligning with Microsoft 365 identity management and hybrid identity scenarios.
Drag and Drop Question You have an on-premises Microsoft Exchange organization that uses an SMTP address space of contoso.com. You discover that users use their email address for s...
Azure AD Tenant TakeoverSelf-Service Sign-UpMicrosoft 365 AdministrationUnmanaged Tenant Management - Question #45Manage Azure Active Directory identities - specifically understanding the membership rules and restrictions for different Azure AD group types (Microsoft 365 groups, Security groups, Dynamic groups), which is tested under the 'Manage identities and governance' domain of AZ-104 or SC-300 certifications.
Hotspot Question You have an Azure Active Directory (Azure AD) tenant that contains a user named User1 and the groups shown in the following table. In the tenant, you create the gr...
Azure Active DirectoryGroup TypesMicrosoft 365 GroupsGroup Membership - Question #46Implement and manage user identities
Hotspot Question You have an Azure Active Directory (Azure AD) tenant that contains an administrative unit named Department1. Department1 has the users shown in the Users exhibit....
Azure ADAdministrative UnitsRBACDelegated administration - Question #47
Hotspot Question You have an Azure Active Directory (Azure AD) tenant that has Security defaults disabled. You are creating a conditional access policy as shown in the following ex...
- Question #48
Hotspot Question You have a Microsoft 365 tenant. Sometimes, users use external, third-party applications that require limited access to the Microsoft 365 data of the respective us...
- Question #49Implement and manage hybrid identity - specifically publishing on-premises applications to Azure AD users using Azure AD Application Proxy (AZ-104 / AZ-500 / MS-100 domain: Identity and Access Management)
Hotspot Question You have an on-premises datacenter that contains the hosts shown in the following table. You have an Azure Active Directory (Azure AD) tenant that syncs to the Act...
Azure AD Application ProxyHybrid IdentityApplication PublishingNetwork Security / Firewall Rules - Question #50
Hotspot Question You have an Azure Active Directory (Azure AD) tenant that has the default App registrations settings. The tenant contains the users shown in the following table. Y...