SC-300 Exam Question 16

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have a Microsoft 365 tenant.
You have 100 IT administrators who are organized into 10 departments.
You create the access review shown in the exhibit. (Click the Exhibit tab.)

You discover that all access review requests are received by Megan Bowen.
You need to ensure that the manager of each department receives the access reviews of their respective department.
Solution: You modify the properties of the IT administrator user accounts.
Does this meet the goal?
  • SC-300 Exam Question 17

    You have an Azure Active Directory (Azure AD) tenant that contains a user named SecAdmin1. SecAdmin1 is assigned the Security administrator role.
    SecAdmin1 reports that she cannot reset passwords from the Azure AD Identity Protection portal.
    You need to ensure that SecAdmin1 can manage passwords and invalidate sessions on behalf of nonadministrative users. The solution must use the principle of least privilege.
    Which role should you assign to SecAdmin1?
  • SC-300 Exam Question 18

    Your company recently implemented Azure Active Directory (Azure AD) Privileged Identity Management (PIM).
    While you review the roles in PIM, you discover that all 15 users in the IT department at the company have permanent security administrator rights.
    You need to ensure that the IT department users only have access to the Security administrator role when required.
    What should you configure for the Security administrator role assignment?
  • SC-300 Exam Question 19

    You have an on-premises datacenter that contains the hosts shown in the following table.

    You have an Azure Active Directory (Azure AD) tenant that syncs to the Active Directory forest. Multi-factor authentication (MFA) is enforced for Azure AD.
    You need to ensure that you can publish App1 to Azure AD users.
    What should you configure on Server and Firewall1? To answer, select the appropriate options in the answer area.
    NOTE: Each correct selection is worth one point.

    SC-300 Exam Question 20

    You have an Azure Active Directory Premium P2 tenant.
    You create a Log Analytics workspace.
    You need to ensure that you can view Azure Active Directory (Azure AD) audit log information by using Azure Monitor.
    What should you do first?