SC-300 Exam Question 76

You need to meet the planned changes for the User administrator role.
What should you do?
  • SC-300 Exam Question 77

    Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
    After you answer a question in this section, you will NOT be able to return to it as a result these questions will not appear in the review screen.
    You have a Microsoft 365 E5 subscription.
    You create a user named User1.
    You need to ensure that User1 can update the status of identity Secure Score improvement actions.
    Solution: You assign the User Administrator role to User1.
    Does this meet the goal?
  • SC-300 Exam Question 78

    You have an Azure Active Directory (Azure AD) tenant that has multi-factor authentication (MFA) enabled.
    The account lockout settings are configured as shown in the following exhibit.

    Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.
    NOTE: Each correct selection is worth one point.

    SC-300 Exam Question 79

    You have an Azure AD tenant that contains the users shown in the following table.

    In Azure AD Identity Protection, you configure a user risk policy that has the following settings:
    * Assignments:
    o Users: Group1
    o User risk: Low and above
    * Controls:
    o Access: Block access
    * Enforce policy: On
    In Azure AD Identity Protection, you configure a sign-in risk policy that has the following settings:
    * Assignments:
    o Users: Group2
    o Sign-in risk: Low and above
    * Controls:
    o Access: Require multi-factor authentication
    * Enforce policy. On
    the following settings:
    ng settings:
    For each of the following statements, select Yes if the statement is true. Otherwise, select No.
    NOTE: Each correct selection is worth one point.

    SC-300 Exam Question 80

    Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
    After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
    You have an Azure Active Directory (Azure AD) tenant that syncs to an Active Directory forest.
    You discover that when a user account is disabled in Active Directory, the disabled user can still authenticate to Azure AD for up to 30 minutes.
    You need to ensure that when a user account is disabled in Active Directory, the user account is immediately prevented from authenticating to Azure AD.
    Solution: You configure password writeback.
    Does this meet the goal?