Summer Sale Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: v4s65

SC-300 Exam Dumps - Microsoft Identity and Access Administrator

Go to page:
Question # 25

You have a Microsoft 365 tenant.

You have an Active Directory domain that syncs to the Azure Active Directory {Azure AD) tenant.

Users connect to the internet by using a hardware firewall at your company. The users authenticate to the firewall by using their Active Directory credentials.

You plan to manage access to external applications by using Azure AD.

You need to use the firewall logs to create a list of unmanaged external applications and the users who access them.

What should you use to gather the information?

A.

Cloud App Discovery in Microsoft Defender for Cloud Apps

B.

enterprise applications in Azure AD

C.

access reviews in Azure AD

D.

Application Insights in Azure Monitor

Full Access
Question # 26

You have an Azure subscription that uses Azure AD Privileged Identity Management (PIM).

You need to identify users that are eligible for the Cloud Application Administrator role.

Which blade in the Privileged Identity Management settings should you use?

A.

Azure resources

B.

Privileged access groups

C.

Review access

D.

Azure AD roles

Full Access
Question # 27

You have three Azure subscriptions that are linked to a single Microsoft Entra tenant.

You need to evaluate and remediate the risks associated with highly privileged accounts. The solution must minimize administrative effort.

What should you use?

A.

Microsoft Entra Verified ID

B.

Privileged Identify Management (PIM)

C.

Global Secure Access

D.

Microsoft Entra Permissions Management

Full Access
Question # 28

You have an Azure AD tenant that contains a user named Admin1.

Admin1 uses the Require password change for high-risk user’s policy template to create a new Conditional Access policy.

Who is included and excluded by default in the policy assignment? To answer, drag the appropriate options to the correct target. Each option may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.

NOTE: Each correct selection is worth one point.

Full Access
Question # 29

You have an Azure subscription that contains a user named User1 and an Azure Key Vault named Vault1.

You need to ensure that User1 can read the metadata of certificates, keys, and secrets stored in Vault1. The solution must follow the principle of least privilege.

Which role should you assign to User1?

A.

Key Vault Crypto User

B.

Key Vault Crypto Officer

C.

Key Vault Reader

D.

Key Vault Secrets User

Full Access
Question # 30

You have a Microsoft Entra tenant that contains the users shown in the following table:

Admin4 creates a Conditional Access policy named Policy1 by using the "Require multifactor authentication for Azure management" template.

Which users will be required to use multi-factor authentication (MFA) the next time they sign in?

A.

Admin2 and Admin3 only

B.

Admin1 and Admin4 only

C.

Admin1, Admin2, and Admin3 only

D.

Admin1, Admin2, Admin3, and Admin4

Full Access
Question # 31

You need to resolve the issue of the sales department users. What should you configure for the Azure AD tenant?

A.

the User settings

B.

the Device settings

C.

the Access reviews settings

D.

Security defaults

Full Access
Question # 32

You have an Azure subscription that contains a virtual machine named VM1. VM1 has the following configurations:

• Private IP address: 172.16.1.5

• Public IP address 10fl.143.16U5

• System-assigned managed identity status: On

You install an app named App1 on VM1.

You need to configure App1 to request a managed identity app-only access token. Which IP address should App1 use for the request?

A.

108.143.161.25

B.

127.0.0.1

C.

169.254.169.254

D.

172.1615

Full Access
Go to page: