Summer Sale Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: v4s65

SC-300 Exam Dumps - Microsoft Identity and Access Administrator

Go to page:
Question # 17

You need to create the LWGroup1 group to meet the management requirements.

How should you complete the dynamic membership rule? To answer, drag the appropriate values to the correct targets. Each value may be used once, more than once, or not at all. You many need to drag the split bar between panes or scroll to view content.

NOTE: Each correct selection is worth one point.

Full Access
Question # 18

You have a Microsoft Entra tenant.

You need to implement smart lockout with a lockout threshold of 10 failed sign-ins. What should you configure in the Microsoft Entra admin center?

A.

User risk policy

B.

Password protection

C.

Authentication strengths

D.

Sign-in risk policy

Full Access
Question # 19

You have accounts for the following cloud platforms:

• Azure

• Alibaba Cloud

• Amazon Web Services (AWS)

• Google Cloud Platform (GCP)

You configure an A2ure subscription to use Microsoft Entra Permissions Management to manage the permissions in Azure only. Which additional cloud platforms can be managed by using Permissions Management?

A.

AWS only

B.

Alibaba Cloud and AWS only

C.

Alibaba Cloud and GCP only

D.

AWS and GCP only

E.

Alibaba Cloud, AWS, and GCP

Full Access
Question # 20

You have an Azure subscription that contains a virtual machine named VM1 and an Azure key vault named Vault1. VM1 has a system-assigned managed identity. You need to ensure that VM1 can retrieve the values of secrets stored in Vault 1. The solution must minimize administrative effort. What should you do first?

A.

Configure the Resource access settings for Vault1.

B.

Configure the permissions model for Vault1

C.

Add a user-assigned managed identity to VM1.

D.

Assign an Azure role to VM1.

Full Access
Question # 21

You need to configure the MFA settings for users who connect from the Boston office. The solution must meet the authentication requirements and the access requirements.

What should you configure?

A.

named locations that have a private IP address range

B.

named locations that have a public IP address range

C.

trusted IPs that have a public IP address range

D.

trusted IPs that have a private IP address range

Full Access
Question # 22

You need to configure the detection of multi-staged attacks to meet the monitoring requirements.

What should you do?

A.

Customize the Azure Sentinel rule logic.

B.

Create a workbook.

C.

Add Azure Sentinel data connectors.

D.

Add an Azure Sentinel playbook.

Full Access
Question # 23

You have 2,500 users who are assigned Microsoft Office 365 Enterprise E3 licenses. The licenses are

assigned to individual users.

From the Groups blade in the Azure Active Directory admin center, you assign Microsoft 365 Enterprise E5

licenses to the users.

You need to remove the Office 365 Enterprise E3 licenses from the users by using the least amount of

administrative effort.

What should you use?

A.

the Identity Governance blade in the Azure Active Directory admin center

B.

the Set-AzureAdUser cmdlet

C.

the Licenses blade in the Azure Active Directory admin center

D.

the Set-WindowsProductKey cmdlet

Full Access
Question # 24

You need to implement the planned changes for litware.com. What should you configure?

A.

Azure AD Connect cloud sync between the Azure AD tenant and litware.com

B.

Azure AD Connect to include the litware.com domain

C.

staging mode in Azure AD Connect for the litware.com domain

Full Access
Go to page: