SC-300 Exam Questions
438 real SC-300 exam questions with expert-verified answers and explanations. Page 6 of 9.
- Question #259
You have an Azure AD tenant that contains the external user shown in the following exhibit. You update the email address of the user. You need to ensure that the user can authentic...
- Question #260Implement and manage user identities
You have an Azure AD tenant. You need to ensure that only users from specific external domains can be invited as guests to the tenant. Which settings should you configure?
Azure AD guest invitationsExternal collaborationB2B collaborationGuest user management - Question #261
You have an Azure AD tenant that contains a user named User1 and a Microsoft 365 group named Group1. User1 is the owner of Group1. You need to ensure that User1 is notified every t...
- Question #262
You have an Azure AD tenant. You deploy a new enterprise application named App1. When users attempt to provide App1 with access to the tenant, the attempt fails. You need to ensure...
- Question #263
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some q...
- Question #264
You have an Azure subscription that contains a user named User1. The App registration settings for the Azure AD tenant are configured as shown in the following exhibit. User1 build...
- Question #265Manage Azure identities and governance - specifically managing access control using Azure Role-Based Access Control (RBAC) and understanding the scope and constraints of managed identity assignments to Azure resources.
Hotspot Question You have an Azure subscription that contains the resources shown in the following table. The subscription contains the virtual machines shown in the following tabl...
Managed IdentitiesAzure RBACRole AssignmentsAzure Virtual Machines - Question #266
You have a Microsoft 365 E5 subscription that uses Microsoft Defender for Cloud Apps. You plan to increase app security for the subscription. You need to identify which apps do NOT...
- Question #267
You have an Azure subscription that contains the users shown in the following table. You need to implement Azure AD Privileged Identity Management (PIM). Which users can use PIM to...
- Question #268
Hotspot Question You have an Azure AD tenant. You perform the tasks shown in the following table. On April 5, an administrator deletes App1, App2, App3, and App4. You need to resto...
- Question #269
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some q...
- Question #270
You have an Azure AD tenant. You plan to implement Azure AD Privileged Identity Management (PIM). Which roles can you manage by using PIM?
- Question #271
Hotspot Question Your company uses Microsoft Entra ID to manage user and guest access to its Microsoft 365 services. You have recently enabled Guest access to enable your users to...
- Question #272
A company has a hybrid environment with both on-premises Active Directory and Microsoft Entra ID. An IT administrator notices that users are not syncing anymore from the on-premise...
- Question #273
Your organization has an existing Microsoft 365 tenant. The following end-user devices have been onboarded into your tenant: You set up a conditional access policy as shown in the...
- Question #274Manage Azure Active Directory identities and governance - specifically implementing and configuring Privileged Identity Management (PIM) to control and monitor access to Azure resources, aligning with Microsoft SC-300 or AZ-104 governance objectives.
Drag and Drop Question Your company is planning on using Privileged Identity Management (PIM) to grant administrative access to Azure resources. You are setting up PIM for the firs...
Privileged Identity ManagementAzure AD RolesLeast PrivilegeIdentity Governance - Question #275
Hotspot Question Your network contains an on-premises Active Directory Domain Services (AD DS) domain named fabrikam.com. The domain contains an Active Directory Federation Service...
- Question #276
Hotspot Question You have a Microsoft Entra tenant that has a Microsoft Entra ID P2 service plan. The tenant contains the users shown in the following table. You have the Device se...
- Question #277Plan and implement identity governance
You have an Azure subscription named Sub1 that contains a user named User1. You need to ensure that User1 can purchase a Microsoft Entra Permissions Management license for Sub1. Th...
Azure AD RolesBilling AdministrationLeast PrivilegeLicense Management - Question #278
You have an Azure subscription that contains a user named User1 and two resource groups named RG1 and RG2. You need to ensure that User1 can perform the following tasks: - View all...
- Question #279
You work for a company named Contoso, Ltd. that has a Microsoft Entra tenant named contoso.com. Contoso is working on a project with the following two partner companies: - A compan...
- Question #280
You have a Microsoft 365 subscription that contains a Microsoft SharePoint Online site named Site1 and a Microsoft 365 group named Group1. You need to ensure that the members of Gr...
- Question #281
Hotspot Question You have a Microsoft Entra tenant that contains multiple storage accounts. You plan to deploy multiple Azure App Service apps that will require access to the stora...
- Question #282Implement access management for apps
You have an Azure subscription named Sub1 that contains a resource group named RG1. RG1 contains an Azure Cosmos DB database named DB1 and an Azure Kubernetes Service (AKS) cluster...
Managed IdentitiesAzure RBACLeast PrivilegeAzure Cosmos DB - Question #283
You have an Azure subscription that contains a storage account named storage1 and a web app named WebApp1. WebApp1 uses a system-assigned managed identity. You need to ensure that...
- Question #284Implement authentication and access management
You have a Microsoft 365 tenant. In Microsoft Entra ID, you configure the terms of use. You need to ensure that only users who accept the terms of use can access the resources in t...
Conditional AccessTerms of UseMicrosoft Entra IDAccess Control - Question #285Implement access management for apps
You have a Microsoft 365 E5 subscription that contains a user named User1. User1 is eligible for the Application Administrator role. User1 needs to configure a new connector group...
Azure AD RolesRole ActivationApplication AdministratorAzure AD Admin Center - Question #286
Your on-premises network contains an Active Directory Domain Services (AD DS) domain and a certification authority (CA) named CA1. You have an Azure AD tenant. You need to implemen...
- Question #287
You have accounts for the following cloud platforms: - Azure - Alibaba Cloud - Amazon Web Services (AWS) - Google Cloud Platform (GCP) You configure an Azure subscription to use Mi...
- Question #288Plan and implement identity governance
You have three Azure subscriptions that are linked to a single Microsoft Entra tenant. You need to evaluate and remediate the risks associated with highly privileged accounts. The...
Privileged Access ManagementCloud Infrastructure Entitlement Management (CIEM)Microsoft Entra Permissions ManagementIdentity Governance - Question #289
You have an Azure subscription named Sub1 that uses Microsoft Entra Permissions Management. Sub1 contains a user named User1. User1 is granted multiple permissions across Sub1. You...
- Question #290
You have an Azure subscription that contains a user named User1. The subscription is onboarded to Microsoft Entra Permissions Management. You need to provide User1 with access to P...
- Question #291Manage Identity and Access – Configure Azure Key Vault RBAC and access policies, and implement Privileged Identity Management (PIM) for just-in-time access
Drag and Drop Question You have an Azure subscription that contains the resources shown in the following table. The subscription uses Privileged Identity Management (PIM). You need...
Azure Key VaultPrivileged Identity ManagementRBACLeast Privilege - Question #292Manage identities and governance in Azure - specifically implementing and managing Microsoft Entra Permissions Management (formerly CloudKnox), including configuring requestors, approvers, and access request workflows across Azure subscriptions.
Hotspot Question You have two Azure subscriptions named Sub1 and Sub2 that are linked to a Microsoft Entra tenant. The tenant contains three groups named Group1, Group2, and Group3...
Microsoft Entra Permissions ManagementAzure RBACJust-in-Time AccessIdentity Governance - Question #294
You have an Azure subscription that contains a user-assigned managed identity named Managed1 in the East US Azure region. The subscription contains the resources shown in the follo...
- Question #295Implement authentication and access management solution
You have a Microsoft 365 tenant that uses the domain name fabrikam.com. The External collaboration settings are configured as shown in the Collaboration exhibit. (Click the Collabo...
B2B collaborationGuest accessOne-time passcodeSharePoint Online external sharing - Question #296
You have an Azure subscription named Sub1 that contains a virtual machine named VM1. You need to enable Microsoft Entra login for VM1 and configure VM1 to access the resources in S...
- Question #297
You have 2,500 users who are assigned Microsoft Office 365 Enterprise E3 licenses. The licenses are assigned to individual users. From the Groups blade in the Microsoft Entra admin...
- Question #298
You have 2,500 users who are assigned Microsoft Office 365 Enterprise E3 licenses. The licenses are assigned to individual users. From the Groups blade in the Microsoft Entra admin...
- Question #299Implement and manage identity synchronization with Microsoft Entra Connect, including troubleshooting sync errors and managing user attributes across hybrid environments (Microsoft Identity and Access Administrator / MS-102)
Drag and Drop Question Your network contains an on-premises Active Directory domain named contoso.com that syncs with Microsoft Entra ID by using Microsoft Entra Connect. The domai...
Microsoft Entra ConnectDirectory SynchronizationProxyAddress ConflictsMicrosoft Entra ID User Management - Question #300
You have a Microsoft Entra tenant that contains the groups shown in the following table. You need to implement Privileged Identity Management (PIM) for the groups. Which groups can...
- Question #301
Hotspot Question You have a Microsoft Entra tenant that contains the users shown in the following table. You have a user risk policy that has the following settings: • Assignments:...
- Question #302
You have an Azure subscription that contains a resource group named RG1 and four users named User1, User2, User3, and User4. You plan to assign the users the following roles for RG...
- Question #304Implement access management for apps
Hotspot Question You have a Microsoft 365 E5 subscription. You need to configure app consent for the subscription. The solution must meet the following requirements: - Disable user...
App ConsentAdmin Consent WorkflowMicrosoft Entra IDPortal Navigation - Question #305
You have a Microsoft 365 subscription. You plan to deploy an app named App1 that will have the following configurations: - Will be registered in Microsoft Entra - Will access the s...
- Question #306Plan and automate identity governance
You have an Azure subscription. You need to use Microsoft Entra Permissions Management to automatically monitor permissions and create and implement right-size roles. The solution...
Microsoft Entra Permissions ManagementLeast PrivilegeAzure RBACService Principals - Question #307
Hotspot Question You have an Azure subscription named Sub1. You plan to onboard Microsoft Entra Permissions Management. You need to ensure that Permissions Management users can man...
- Question #308
You have an Azure subscription, a Google Cloud Platform (GCP) account, and an Amazon Web Services (AWS) account. You need to recommend a solution to assess the risks associated wit...
- Question #309Implement access management for apps
You have a Microsoft Entra tenant. You need to configure continuous access evaluation for app sign-ins and assign the configuration to users that are assigned the Application Admin...
Conditional AccessContinuous Access EvaluationApp Sign-insAccess Management - Question #310Manage Microsoft 365 Identity and Services – specifically configuring group settings, expiration policies, and governance within Microsoft Entra ID (MS-102 / MS-900 / SC-300 domain)
SIMULATION Use the following login credentials as needed: To enter your username, place your cursor in the Sign in box and click on the username below. To enter your password, plac...
Microsoft 365 GroupsGroup Expiration PolicyMicrosoft Entra IDGroup Lifecycle Management