nerdexam
Microsoft

SC-300 · Question #32

You have a Microsoft 365 tenant. The Azure Active Directory (Azure AD) tenant syncs to an on-premises Active Directory domain. You plan to create an emergency-access administrative account named…

The correct answer is A. Configure Azure Monitor to generate an alert if Emergency1 is modified or signs in. Monitor sign-in and audit logs Organizations should monitor sign-in and audit log activity from the emergency accounts and trigger notifications to other administrators. When you monitor the activity on break glass accounts, you can verify these accounts are only used for…

Submitted by carter_n· Mar 6, 2026Plan and implement identity governance

Question

You have a Microsoft 365 tenant. The Azure Active Directory (Azure AD) tenant syncs to an on-premises Active Directory domain. You plan to create an emergency-access administrative account named Emergency1. Emergency1 will be assigned the Global administrator role in Azure AD. Emergency1 will be used in the event of Azure AD functionality failures and on-premises infrastructure failures. You need to reduce the likelihood that Emergency1 will be prevented from signing in during an emergency. What should you do?

Options

  • AConfigure Azure Monitor to generate an alert if Emergency1 is modified or signs in.
  • BRequire Azure AD Privileged Identity Management (PIM) activation of the Global administrator
  • CConfigure a conditional access policy to restrict sign-in locations for Emergency1 to only the
  • DConfigure a conditional access policy to require multi-factor authentication (MFA) for

How the community answered

(26 responses)
  • A
    46% (12)
  • B
    27% (7)
  • C
    15% (4)
  • D
    12% (3)

Explanation

Monitor sign-in and audit logs Organizations should monitor sign-in and audit log activity from the emergency accounts and trigger notifications to other administrators. When you monitor the activity on break glass accounts, you can verify these accounts are only used for testing or actual emergencies. You can use Azure Log Analytics to monitor the sign-in logs and trigger email and SMS alerts to your admins whenever break glass accounts sign in.

Topics

#Emergency access accounts#Break-glass accounts#Global administrator#Azure AD security#Monitoring

Community Discussion

No community discussion yet for this question.

Full SC-300 Practice