SC-300 Exam Questions
438 real SC-300 exam questions with expert-verified answers and explanations. Page 4 of 9.
- Question #155
You have an Azure Active Directory (Azure AD) tenant that uses Azure AD Identity Protection and contains the resources shown in the following table. Azure Multi-factor Authenticati...
- Question #156
Hotspot Question You have an Azure Active Directory (Azure AD) tenant: that contains the users shown in the following table. In Azure. AD Identity Protection, you configure a user...
- Question #157
You have an Azure Active Directory (Azure AD) tenant. You configure self-service password reset (SSPR) by using the following settings: - Require users to register when signing in:...
- Question #158
You have an Azure Active Directory (Azure AD) tenant that contains the users shown in the following table. The tenant has the authentication methods shown in the following table. W...
- Question #159
You have an Azure Active Directory (Azure AD) tenant that contains a user named User1 and the conditional access policies shown in the following table. You need to evaluate which p...
- Question #160
You have a Microsoft 365 tenant. All users have mobile phones and Windows 10 laptops. The users frequently work from remote locations that do not have Wi-Fi access or mobile phone...
- Question #161
You create a conditional access policy that blocks access when a user triggers a high-severity sign-in alert. You need to test the policy under the following conditions: - A user s...
- Question #163Manage Azure Active Directory (Azure AD) identities - specifically configuring and managing external guest user authentication methods including Email One-Time Passcode under the Microsoft Entra ID / Azure AD External Identities domain (AZ-104 / SC-300).
Hotspot Question You have an Azure Active Directory (Azure AD) tenant named contoso.com that has Email one- time passcode for guests set to Yes. You invite the guest users shown in...
Azure AD B2B CollaborationEmail One-Time PasscodeGuest User AuthenticationExternal Identities - Question #164
You have an Azure Active Directory (Azure AD) tenant that contains the users shown in, the following table. The User settings for enterprise applications have the following configu...
- Question #165
You have a Microsoft 365 subscription. The subscription contains users that use Microsoft Outlook 2016 and Outlook 2013 clients. You need to implement tenant restrictions. The solu...
- Question #166
Hotspot Question Your network contains an on-premises Active Directory domain that syncs to an Azure Active Directory (Azure AD) tenant. The tenant contains the groups shown in the...
- Question #167
You have a Microsoft 365 E5 subscription that contains a web app named App1. Guest users are regularly granted access to App1. You need to ensure that the guest users that have NOT...
- Question #168Plan and implement identity governance
Hotspot Question You have an Azure Active Directory (Azure AD) ten-ant: that contains the groups shown in the following table. You create an access review for Group1 as shown in th...
Access ReviewsAzure AD LicensingIdentity GovernanceGroup Management - Question #169Plan and implement identity governance
Hotspot Question You have an Azure Active Directory (Azure AD) tenant named contoso.com that contains a group named. All Company and has the following Identity Governance settings:...
Access PackagesIdentity GovernanceExternal User LifecycleGuest User Management - Question #170
You have an Azure Active Directory (Azure AD) tenant named Contoso that contains a terms of use (Toll) named Terms1 and an access package. Contoso users collaborate with an externa...
- Question #171
You have an Azure Active Directory (Azure AD) tenant that contains the users shown in the following table. User1 is the owner of Group1. You create an access review that has the fo...
- Question #172
Hotspot Question You have a Microsoft 365 E5 subscription. You create an access review for Azure Active Directory (Azure AD) roles. You need to ensure that users who do not respond...
- Question #173
Case Study 2 - Litware, Inc Overview Litware, Inc. is a pharmaceutical company that has a subsidiary named Fabrikam, Inc. Litware has offices in Boston and Seattle, but has employe...
- Question #174
You have an Azure Active Directory (Azure AD) tenant that contains the users shown in the following table. You have an administrative unit named Au1. Group1, User2, and User3 are m...
- Question #175
You have an Azure Active Directory (Azure AD) tenant that contains the users shown in the following table. You create a dynamic user group and configure the following rule syntax....
- Question #176
You have an Azure AD tenant that contains a user named User1. User1 needs to manage license assignments and reset user passwords. Which role should you assign to User1?
- Question #177
You have 2,500 users who are assigned Microsoft Office 365 Enterprise E3 licenses. The licenses are assigned to individual users. From the Groups blade in the Azure Active Director...
- Question #179
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some q...
- Question #180
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some q...
- Question #181
You have a Microsoft 365 tenant. You currently allow email clients that use Basic authentication to connect to Microsoft Exchange Online. You need to ensure that users can connect...
- Question #182Plan and implement workload identities
You have an Azure subscription that contains an Azure SQL database named db1. You deploy an Azure App Service web app named App1 that provides product information to users that con...
Managed IdentitiesAzure App ServiceAzure SQL DatabaseWorkload Identity - Question #183Manage Azure identities and governance - specifically managing access to Azure resources using managed identities and role-based access control (RBAC), covered under AZ-104 Objective: Manage Azure Active Directory (Entra ID) identities and secure access.
Hotspot Question You have an Azure subscription that contains the following virtual machine: - Name: V1 - Azure region: East US - System-assigned managed identity: Disabled You cre...
Managed IdentitiesAzure RBACUser-Assigned IdentityAzure Virtual Machines - Question #184Manage Azure identities and governance - specifically managing access control using role-based access control (RBAC) and managed identities in Azure subscriptions and resource groups.
Hotspot Question You have an Azure subscription that contains the key vaults shown in the following table. The subscription contains the users shown in the following table. On June...
Managed IdentitiesAzure RBACKey VaultAzure Active Directory - Question #185
You have an Azure AD tenant. You open the risk detections report. Which risk detection type is classified as a user risk?
- Question #186
You have an Azure Active Directory (Azure AD) tenant. You configure self-service password reset (SSPR) by using the following settings: - Require users to register when signing in:...
- Question #187
You create a new Microsoft 365 E5 tenant. You need to ensure that when users connect to the Microsoft 365 portal from an anonymous IP address, they are prompted to use multi-factor...
- Question #188Implement authentication and access management solution
Hotspot Question You have an Azure AD tenant that contains the users shown in the following table. You have the Azure AD Identity Protection policies shown in the following table....
Azure AD Identity ProtectionRisky UsersRisky Sign-insMFA enforcement - Question #189
You have an Azure subscription that contains a user named User1. You need to meet the following requirements: - Prevent User1 from being added as an owner of newly registered apps....
- Question #190Manage Azure identities and governance – specifically, managing access to Azure resources using role-based access control and integrating Azure AD authentication with Azure compute services.
Drag and Drop Question You have a Microsoft 365 E5 subscription and an Azure subscription. You need to meet the following requirements: - Ensure that users can sign in to Azure vir...
Azure RBACAzure Virtual MachinesIdentity and Access ManagementAzure AD Authentication - Question #191Implement identity management solution
Hotspot Question Your network contains an on-premises Active Directory Domain Services (AD DS) domain that syncs with an Azure AD tenant. The AD DS domain contains the organization...
Break-glass accountsAzure AD rolesGlobal AdministratorIdentity best practices - Question #192
You have a Microsoft 365 E5 subscription that contains a Microsoft SharePoint Online site named Site1. You need to ensure that users can request access to Site1. The solution must...
- Question #194Implement and manage threat protection using Microsoft Defender for Cloud Apps - specifically configuring Conditional Access App Control for real-time session monitoring (Microsoft SC-400 / MS-500 / Microsoft 365 Security domain)
Drag and Drop Question You have a Microsoft 365 E5 tenant. You purchase a cloud app named App1. You need to enable real-time session-level monitoring of App1 by using Microsoft Def...
Microsoft Defender for Cloud AppsConditional Access App ControlSession PoliciesAzure AD App Registration - Question #195
You have an Azure Active Directory (Azure AD) tenant that contains the users shown in the following table. You add an enterprise application named App1 to Azure AD and set User1 as...
- Question #196
You have a Microsoft 365 E5 subscription that contains a Microsoft SharePoint Online site named Site1. You need to be notified if a user downloads more than 50 files in one minute...
- Question #197
You have a Microsoft 365 E5 subscription that contains a Microsoft SharePoint Online site named Site1. Site1 hosts PDF files. You need to prevent users from printing the files dire...
- Question #198
You have a Microsoft 365 E5 subscription that uses Microsoft Defender for Cloud Apps and Conditional Access policies. You need to block access to cloud apps when a user is assessed...
- Question #199
You have a Microsoft 365 E5 subscription. Users authorize third-party cloud apps to access their data. You need to configure an alert that will be triggered when an app requires hi...
- Question #200
Your company has an Azure AD tenant that contains the users shown in the following table. You have the app registrations shown in the following table. A company policy prevents cha...
- Question #201
You have an Azure AD tenant that contains a user named User1 and a registered app named App1. User1 deletes the app registration of App1. You need to restore the app registration....
- Question #202Manage Azure Active Directory identities - specifically understanding group types (Security vs Microsoft 365), membership types (Assigned vs Dynamic), and which identity types (users, managed identities, service principals) can be added to each group type. This aligns with the AZ-104 or SC-300 domain covering identity and access management in Azure AD.
Hotspot Question You have an Azure AD tenant that contains the groups shown in the following exhibit. Use the drop-down menus to select the answer choice that completes each statem...
Azure AD GroupsManaged IdentitiesSecurity GroupsMicrosoft 365 Groups - Question #203Implement authentication and access management
You have an Azure AD tenant that contains two users named User1 and User2. You plan to perform the following actions: - Create a group named Group1. - Add User1 and User2 to Group1...
Azure AD GroupsRole-assignable groupsGroup typesAzure AD roles - Question #204Implement and manage identity and access in Azure AD / Monitor and maintain Azure AD (Microsoft SC-300 / MS-500)
Drag and Drop Question You have a Microsoft 365 E5 subscription. You need to perform the following tasks: - Identify the locations and IP addresses used by Azure AD users to sign i...
Azure AD MonitoringIdentity Secure ScoreSign-in LogsAudit Logs - Question #205
Case Study 3 - A. Datum Corp Overview
- Question #206
Case Study 3 - A. Datum Corp Overview
- Question #207Implement authentication and access management solution
You have the Azure resources shown in the following table. To which identities can you assign the Contributor role for RG1?
Azure RBACManaged IdentitiesAccess ManagementAzure Identities