Practice with SC-900 Dumps for Microsoft Certified Certified Exam Questions & Answer [Q37-Q54]

Share

Practice with SC-900 Dumps for Microsoft Certified Certified Exam Questions & Answer

REAL SC-900 Exam Questions With 100% Refund Guarantee

NEW QUESTION # 37
Select the answer that correctly completes the sentence.

Answer:

Explanation:

Explanation
Graphical user interface, text, application Description automatically generated


NEW QUESTION # 38
Select the answer that correctly completes the sentence.

Answer:

Explanation:


NEW QUESTION # 39
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Reference:
https://docs.microsoft.com/en-us/azure/security-center/secure-score-security-controls


NEW QUESTION # 40
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Reference:
https://docs.microsoft.com/en-us/azure/security-center/azure-defender
https://docs.microsoft.com/en-us/azure/security-center/defender-for-storage-introduction https://docs.microsoft.com/en-us/azure/security-center/security-center-introduction


NEW QUESTION # 41
Select the answer that correctly completes the sentence.

Answer:

Explanation:

Explanation
Text, letter Description automatically generated


NEW QUESTION # 42
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation
Graphical user interface, text, application, email Description automatically generated

Box 1: Yes
Conditional access policies can be applied to all users
Box 2: No
Conditional access policies are applied after first-factor authentication is completed.
Box 3: Yes
Users with devices of specific platforms or marked with a specific state can be used when enforcing Conditional Access policies.


NEW QUESTION # 43
Which type of identity is created when you register an application with Active Directory (Azure AD)?

  • A. a user account
  • B. a system-assigned managed identity
  • C. a user-assigned managed identity
  • D. a service principal

Answer: D

Explanation:
Explanation
When you register an application through the Azure portal, an application object and service principal are automatically created in your home directory or tenant.


NEW QUESTION # 44
Which three tasks can be performed by using Azure Active Directory (Azure AD) Identity Protection? Each correct answer presents a complete solution.
NOTE: Each correct selection is worth one point.

  • A. Configure external access for partner organizations.
  • B. Export risk detection to third-party utilities.
  • C. Automate the detection and remediation of identity based-risks.
  • D. Create and automatically assign sensitivity labels to data.
  • E. Investigate risks that relate to user authentication.

Answer: C,D,E


NEW QUESTION # 45
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation
Graphical user interface, text, application Description automatically generated

Box 1: Yes
You can use sensitivity labels to provide protection settings that include encryption of emails and documents to prevent unauthorized people from accessing this data.
Box 2: Yes
You can use sensitivity labels to mark the content when you use Office apps, by adding watermarks, headers, or footers to documents that have the label applied.
Box 3: NO
https://docs.microsoft.com/en-us/information-protection/deploy-use/configure-policy-markings


NEW QUESTION # 46
What can you use to provide a user with a two-hour window to complete an administrative task in Azure?

  • A. Azure Active Directory (Azure AD) Identity Protection
  • B. conditional access policies
  • C. Azure Multi-Factor Authentication (MFA)
  • D. Azure Active Directory (Azure AD) Privileged Identity Management (PIM)

Answer: D

Explanation:
Explanation
https://docs.microsoft.com/en-us/azure/active-directory/privileged-identity-management/pim-configure Privileged Identity Management provides time-based and approval-based role activation to mitigate the risks of excessive, unnecessary, or misused access permissions on resources that you care about. Here are some of the key features of Privileged Identity Management: Provide just-in-time privileged access to Azure AD and Azure resources Assign time-bound access to resources using start and end dates Require approval to activate privileged roles Enforce multi-factor authentication to activate any role Use justification to understand why users activate Get notifications when privileged roles are activated Conduct access reviews to ensure users still need roles Download audit history for internal or external audit Prevents removal of the last active Global Administrator role assignment


NEW QUESTION # 47
Select the answer that correctly completes the sentence.

Answer:

Explanation:


NEW QUESTION # 48
Which Azure Active Directory (Azure AD) feature can you use to provide just-in-time (JIT) access to manage Azure resources?

  • A. authentication method policies
  • B. Azure AD Identity Protection
  • C. conditional access policies
  • D. Azure AD Privileged Identity Management (PIM)

Answer: D

Explanation:
Azure AD Privileged Identity Management (PIM) provides just-in-time privileged access to Azure AD and Azure resources Reference:
https://docs.microsoft.com/en-us/azure/active-directory/privileged-identity-management/pim-configure


NEW QUESTION # 49
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:


NEW QUESTION # 50
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Reference:
https://docs.microsoft.com/en-us/mem/intune/fundamentals/what-is-intune
https://docs.microsoft.com/en-us/mem/intune/fundamentals/what-is-device-management


NEW QUESTION # 51
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Reference:
https://docs.microsoft.com/en-us/azure/active-directory/conditional-access/overview


NEW QUESTION # 52
You have an Azure subscription.
You need to implement approval-based, time-bound role activation.
What should you use?

  • A. Windows Hello for Business
  • B. Azure Active Directory (Azure AD) Identity Protection
  • C. access reviews in Azure Active Directory (Azure AD)
  • D. Azure Active Directory (Azure AD) Privileged Identity Management (PIM)

Answer: D


NEW QUESTION # 53
Match the Microsoft 365 insider risk management workflow step to the appropriate task.
To answer, drag the appropriate step from the column on the left to its task on the right. Each step may be used once, more than once, or not at all.
NOTE: Each correct match is worth one point.

Answer:

Explanation:

Explanation
Graphical user interface, text, application, email Description automatically generated


NEW QUESTION # 54
......

PDF Download Microsoft Test To Gain Brilliante Result!: https://certificationsdesk.examslabs.com/Microsoft/Microsoft-Certified/best-SC-900-exam-dumps.html