MS-102 Exam Question 41

You have a Microsoft 365 tenant.
Company policy requires that all Windows 10 devices meet the following minimum requirements:
Require complex passwords.
Require the encryption of data storage devices.
Have Microsoft Defender Antivirus real-time protection enabled.
You need to prevent devices that do not meet the requirements from accessing resources in the tenant.
Which two components should you create? Each correct answer presents part of the solution.
NOTE: Each correct selection is worth one point.
  • MS-102 Exam Question 42

    You have a Microsoft 365 subscription. You have a user named User1.
    You need to ensure that Used can place a hold on all mailbox content.
    What permission should you assign to User1?
  • MS-102 Exam Question 43

    You have a Microsoft 365 tenant that contains 100 Windows 10 devices. The devices are managed by using Microsoft Endpoint Manager.
    You plan to create two attack surface reduction (ASR) policies named ASR1 and ASR2. ASR1 will be used to configure Microsoft Defender Application Guard. ASR2 will be used to configure Microsoft Defender SmartScreen.
    Which ASR profile type should you use for each policy? To answer, select the appropriate options in the answer area.
    NOTE: Each correct selection is worth one point.

    MS-102 Exam Question 44

    You have a Microsoft 365 subscription and use Microsoft Defender for Office 365.
    You need to recommend a solution to educate users on topics that relate to social engineering risks. The users must receive a weekly reminder to complete a learning task.
    What should you use in the Microsoft Defender portal?
  • MS-102 Exam Question 45

    Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
    After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
    Your network contains an Active Directory domain.
    You deploy an Azure AD tenant.
    Another administrator configures the domain to synchronize to Azure AD.
    You discover that 10 user accounts in an organizational unit (OU) are NOT synchronized to Azure AD. All the other user accounts synchronized successfully.
    You review Azure AD Connect Health and discover that all the user account synchronizations completed successfully.
    You need to ensure that the 10 user accounts are synchronized to Azure AD.
    Solution: You run idfix.exe and export the 10 user accounts.
    Does this meet the goal?