MS-500 Exam Question 136

Your network contains an on-premises Active Directory domain that syncs to Azure Active Directory (Azure AD) as shown in the following exhibit.

The synchronization schedule is configured as shown in the following exhibit.

Use the drop-down menus to select the answer choice that answers each question based on the information presented in the graphic.
NOTE: Each correct selection is worth one point.

MS-500 Exam Question 137

Your network contains an on-premises Active Directory domain. The domain contains servers that run Windows Server and have advanced auditing enabled.
The security logs of the servers are collected by using a third-party SIEM solution.
You purchase a Microsoft 365 subscription and plan to deploy Azure Advanced Threat Protection (ATP) by using standalone sensors.
You need to ensure that you can detect when sensitive groups are modified and when malicious services are created.
What should you do?
  • MS-500 Exam Question 138

    Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
    After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
    You have a Microsoft 365 E5 subscription that contains a user named User1.
    The Azure Active Directory (Azure AD) Identity Protection risky users report identifies User1.
    For User1, you select Confirm user compromised.
    User1 can still sign in.
    You need to prevent User1 from signing in. The solution must minimize the impact on users at a lower risk level.
    Solution: You configure the sign-in risk policy to block access when the sign-in risk level is high.
    Does this meet the goal?
  • MS-500 Exam Question 139

    You have a Microsoft 365 E5 subscription
    You need to use Microsoft Cloud App Security to identify documents stored in Microsoft SharePomt Online that contain proprietary information.
    What should you create in Cloud App Security?
  • MS-500 Exam Question 140

    You have a Microsoft 365 subscription that uses a default domain name of contoso.com.
    Microsoft Azure Active Directory (Azure AD) contains the users shown in the following table.

    Microsoft Intune has two devices enrolled as shown in the following table:

    Both devices have three apps named App1, App2, and App3 installed.
    You create an app protection policy named ProtectionPolicy1 that has the following settings:
    Protected apps: App1
    Exempt apps: App2
    Windows Information Protection mode: Block
    You apply ProtectionPolicy1 to Group1 and Group3. You exclude Group2 from ProtectionPolicy1.
    For each of the following statements, select Yes if the statement is true. Otherwise, select No.
    NOTE: Each correct selection is worth one point.