Question 1
Your business recently adopted Privileged Identity Management for Azure Active Directory (Azure AD) (PIM). You analyze the roles in PIM and find that all 15 employees in the company's IT division have permanent security administrator privileges. The IT department users should only have access to the Security administrator job when necessary, you must make sure. How should the Security administrator role assignment be configured?
Correct Answer:
Assignment type to Eligible
Question 2
You have a tenant called contoso.com in Azure Active Directory (Azure AD). Policies governing conditional access are applied to all users that run applications that are registered in Azure AD. The users must not be allowed to use legacy authentication. What ought to be covered by the conditional access policies to weed out attempts at legacy authentication?
Correct Answer:
Client apps condition
Question 3
Your Azure Active Directory (Azure AD) tenancy already exists. To look into previous sign-ins, you must look via the Azure AD sign-ins log. How long are events kept in the sign-in log by Azure AD?
Correct Answer:
30 days
Question 4
You set up a new Microsoft 365 tenant to utilize the contoso.com domain name by default. By utilizing conditional access restrictions, you must make sure that you have control over who has access to Microsoft 365 resources. What should you do first?
Correct Answer:
Disable Security defaults
Question 5
An Azure Active Directory (Azure AD) tenant and your Active Directory domain are synced. A VPN server that authenticates to the on-premises Active Directory domain is part of the on-premises network. The Azure Multi-Factor Authentication feature is NOT supported by the VPN server (MFA). You must suggest a method for enabling Azure MFA for VPN connections. What should the recommendation contain?
Correct Answer:
Network Policy Server (NPS)
Question 1
Exam overview

About this Exam

Prepare with the SC-300 Microsoft Identity and Access Administrator practice quiz. This question bank includes 50 questions covering azure, users, directory, active, and access. Use it to review important concepts, identify knowledge gaps, and build confidence for the related exam, course, or assessment.

More details

Additional Information

SC-300 Microsoft Identity and Access Administrator

This practice set contains 50 questions from the matching question bank and focuses on azure, users, directory, active, and access. Work through each question carefully, review the provided solutions, and revisit topics that need more study before your next attempt.

This is an independent study resource intended for practice and review; it is not an official examination or an endorsement by any organization named in the title.

Quiz information

Frequently Asked Questions

The complete question count is available after full access is unlocked.
No fixed duration is currently configured for this quiz.
Question explanations are included where they are available in the quiz content, helping you review the reasoning after answering.
Yes. You can retake the practice test again as you continue studying during your available access period.
After your access is confirmed, you can continue into the complete practice exam from this quiz flow.
Unless explicitly stated otherwise, this page provides independent practice material for study and exam preparation and is not the official examination itself.
Keep studying

Related Questions