nerdexam
Microsoft

SC-300 · Question #238

You plan to deploy a new Azure AD tenant. Which multifactor authentication (MFA) method will be enabled by default for the tenant?

The correct answer is A. Microsoft Authenticator. Security defaults users are required to register for and use multifactor authentication using the Microsoft Authenticator app using notifications. Users might use verification codes from the Microsoft Authenticator app but can only register using the notification option. Users ca

Submitted by priya_blr· Mar 6, 2026Implement authentication and access management

Question

You plan to deploy a new Azure AD tenant. Which multifactor authentication (MFA) method will be enabled by default for the tenant?

Options

  • AMicrosoft Authenticator
  • BSMS
  • Cvoice call
  • Demail OTP

How the community answered

(31 responses)
  • A
    77% (24)
  • B
    6% (2)
  • C
    13% (4)
  • D
    3% (1)

Explanation

Security defaults users are required to register for and use multifactor authentication using the Microsoft Authenticator app using notifications. Users might use verification codes from the Microsoft Authenticator app but can only register using the notification option. Users can also use any third party application using OATH TOTP to generate codes. https://learn.microsoft.com/en-us/entra/fundamentals/security-defaults#authentication-methods

Topics

#MFA#Microsoft Authenticator#security defaults#authentication methods

Community Discussion

No community discussion yet for this question.

Full SC-300 Practice