Microsoft
SC-300 · Question #85
Hotspot Question You have a Microsoft 365 tenant. You need to identify users who have leaked credentials. The solution must meet the following requirements: - Identify sign-ins by users who are suspec
Sign in or unlock SC-300 to reveal the answer and full explanation for question #85. The question stem and answer options stay visible for context.
Submitted by jian89· Mar 6, 2026Implement authentication and access management
Question
Hotspot Question You have a Microsoft 365 tenant. You need to identify users who have leaked credentials. The solution must meet the following requirements: - Identify sign-ins by users who are suspected of having leaked credentials. - Flag the sign-ins as a high-risk event. - Immediately enforce a control to mitigate the risk, while still allowing the user to access applications. What should you use? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point. Answer:
Answer Area
- To classify leaked credentials as high-risk, use:Azure Active Directory (Azure AD) Identity ProtectionAzure Active Directory (Azure AD) Privileged Identity Management (PIM)Identity GovernanceSelf-service password reset (SSPR)
- To trigger remediation, use:Client apps not using Modern authenticationDevice stateSign-in riskUser locationUser risk
- To mitigate the risk, select:Apply app enforced restrictionsBlock accessGrant access but require app protection policyGrant access but require password change
Unlock SC-300 to see the answer
You've previewed enough free SC-300 questions. Unlock SC-300 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.
Topics
#Identity Protection#leaked credentials#sign-in risk policy#conditional access