Labour Day Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: bigdisc65

Microsoft Certified: Identity and Access Administrator Associate SC-300 Book

Page: 4 / 9
Question 16

Your company purchases 2 new Microsoft 365 ES subscription and an app named App.

You need to create a Microsoft Defender for Cloud Apps access policy for App1.

What should you do you first? (Choose Correct Answer based on Microsoft Identity and Access Administrator at microsoft.com)

Options:

A.

Configure a Token configuration for App1.

B.

Add an API permission for App1.

C.

Configure a Conditional Access policy to use app-enforced restrictions.

D.

Configure a Conditional Access policy to use Conditional Access App Control.

Question 17

Your network contains an on-premises Active Directory domain that syncs to an Azure Active Directory (Azure AD) tenant. The tenant contains the users shown in the following table.

All the users work remotely.

Azure AD Connect is configured in Azure AD as shown in the following exhibit.

Connectivity from the on-premises domain to the internet is lost.

Which users can sign in to Azure AD?

Options:

A.

User1 and User3 only

B.

User1 only

C.

User1, User2, and User3

D.

User1 and User2 only

Question 18

You have an Azure AD tenant that contains the users shown in the following table.

You need to compare the role permissions of each user. The solution must minimize administrative effort.

What should you use?

Options:

A.

the Microsoft 365 Defender portal

B.

the Microsoft 365 admin center

C.

the Microsoft Entra admin center

D.

the Microsoft Purview compliance portal

Question 19

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.

After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.

You have an Azure Active Directory (Azure AD) tenant that syncs to an Active Directory forest.

You discover that when a user account is disabled in Active Directory, the disabled user can still authenticate to Azure AD for up to 30 minutes.

You need to ensure that when a user account is disabled in Active Directory, the user account is immediately prevented from authenticating to Azure AD.

Solution: You configure conditional access policies.

Does this meet the goal?

Options:

A.

Yes

B.

No

Page: 4 / 9
Exam Code: SC-300
Exam Name: Microsoft Identity and Access Administrator
Last Update: Apr 24, 2024
Questions: 248
SC-300 pdf

SC-300 PDF

$31.5  $90
SC-300 Engine

SC-300 Testing Engine

$36.75  $105
SC-300 PDF + Engine

SC-300 PDF + Testing Engine

$49  $140