SC-300 Exam Question 56

You have a Microsoft Entra tenant that contains the users shown in the following table:

User1 is the owner of Group1.
You create an access review that has the following settings:
What to review: Teams + Groups
Scope: All users
Group: Group1
Reviewers: Users review their own access
Which users can perform access reviews for User3?
  • SC-300 Exam Question 57

    You have an Azure subscription that contains an Azure Automation account named Automation1.
    You need to grant Automation1 access to Azure resources. The solution must meet the following requirements:
    * Ensure that any permissions granted to Automation1 are removed when the account is deleted.
    * Minimize administrative effort.
    What should you use?
  • SC-300 Exam Question 58

    You have a Microsoft 365 E5 subscription that contains a Microsoft SharePoint Online site named Site1 and the users shown in the following table.
    The users have the devices shown in the following table.
    You create the following two Conditional Access policies:
    * Name: CAPolicy1
    * Assignments
    o Users or workload identities: Group 1
    o Cloud apps or actions: Office 365 SharePoint Online
    o Conditions
    #Fil ter for devices: Exclude filtered devices from the policy
    #Rule syntax: device.displayName -starts With " Device* "
    o Access controls
    #Grant: Block access
    #Session: 0 controls selected
    o Enable policy: On
    * Name: CAPolicy2
    * Assignments
    o Users or workload identities: Group2
    o Cloud apps or actions: Office 365 SharePoint Online
    o Conditions: 0 conditions selected
    * Access controls
    o Grant: Grant access
    #Require multifactor authentication
    o Session:
    0 controls selected
    * Enable policy: On
    All users confirm th at they can successfully authenticate using MFA.
    For each of the following statements, select Yes if the statement is true. Otherwise, select No.
    NOTE: Each correct selection is worth one point.

    SC-300 Exam Question 59

    You have a Microsoft 365 E5 subscription that contains a Microsoft SharePoint Online site named Site1. You need to be notified if a user downloads more than 50 files in one minute from Site1.
    Which type of policy should you create in the Microsoft Defender for Cloud Apps portal?
  • SC-300 Exam Question 60

    You have a Microsoft 365 tenant.
    Sometimes, users use external, third-party applications that require limited access to the Microsoft 365 data of the respective user. The users register the applications in Azure Active Directory (Azure AD).
    You need to receive an alert if a registered application gains read and write access to the users' email.
    What should you do? To answer, select the appropriate options in the answer area.
    NOTE: Each correct selection is worth one point.