Weekend Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: bigdisc65

SC-300 Exam Dumps - Microsoft Certified: Identity and Access Administrator Associate Questions and Answers

Question # 4

You have a Microsoft 365 tenant.

In Azure Active Directory (Azure AD), you configure the terms of use.

You need to ensure that only users who accept the terms of use can access the resources in the tenant. Other

users must be denied access.

What should you configure?

Options:

A.

an access policy in Microsoft Cloud App Security.

B.

Terms and conditions in Microsoft Endpoint Manager.

C.

a conditional access policy in Azure AD

D.

a compliance policy in Microsoft Endpoint Manager

Buy Now
Question # 5

Task 2

You need to implement a process to review guest users who have access to the Salesforce app. The review must meet the following requirements:

• The reviews must occur monthly.

• The manager of each guest user must review the access.

• If the reviews are NOT completed within five days, access must be removed.

• If the guest user does not have a manager, Megan Bowen must review the access.

Options:

Buy Now
Question # 6

You have a Microsoft Entra tenant that contains the users shown in the following table:

User1 is the owner of Group1.

You create an access review that has the following settings:

What to review: Teams + Groups

Scope: All users

Group: Group1

Reviewers: Users review their own access

Which users can perform access reviews for User3?

Options:

A.

User1 only

B.

User3 only

C.

User1 and User2 only

D.

User1, User2, and User3

Buy Now
Question # 7

Your company has an Azure AD tenant that contains the users shown in the following table.

You have the app registrations shown in the following table.

A company policy prevents changes to user permissions.

Which user can create appointments in the calendar of each user at the company?

Options:

A.

User1

B.

User2

C.

User3

D.

User4

Buy Now
Question # 8

You have a Microsoft 365 tenant.

The Sign-ins activity report shows that an external contractor signed in to the Exchange admin center.

You need to review access to the Exchange admin center at the end of each month and block sign-ins if

required.

What should you create?

Options:

A.

an access package that targets users outside your directory

B.

an access package that targets users in your directory

C.

a group-based access review that targets guest users

D.

an application-based access review that targets guest users

Buy Now
Question # 9

You have a Microsoft Entra tenant that contains an administrative unit named AU1. AU1 is configured for assigned membership.

The tenant contains the users shown in the following table.

For AU1, you update the following configurations:

. Membership type: Dynamic User

· Dynamic membership rule: (user.department -eq "hr")

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

Options:

Buy Now
Question # 10

You need to meet the authentication requirements for leaked credentials.

What should you do?

Options:

A.

Enable federation with PingFederate in Azure AD Connect.

B.

Configure Azure AD Password Protection.

C.

Enable password hash synchronization in Azure AD Connect.

D.

Configure an authentication method policy in Azure AD.

Buy Now
Question # 11

Your company recently implemented Azure Active Directory (Azure AD) Privileged Identity Management (PIM).

While you review the roles in PIM, you discover that all 15 users in the IT department at the company have

permanent security administrator rights.

You need to ensure that the IT department users only have access to the Security administrator role when

required.

What should you configure for the Security administrator role assignment?

Options:

A.

Expire eligible assignments after from the Role settings details

B.

Expire active assignments after from the Role settings details

C.

Assignment type to Active

D.

Assignment type to Eligible

Buy Now
Question # 12

Your company has a Microsoft 365 tenant.

The company has a call center that contains 300 users. In the call center, the users share desktop computers

and might use a different computer every day. The call center computers are NOT configured for biometric

identification.

The users are prohibited from having a mobile phone in the call center.

You need to require multi-factor authentication (MFA) for the call center users when they access Microsoft 365

services.

What should you include in the solution?

Options:

A.

a named network location

B.

the Microsoft Authenticator app

C.

Windows Hello for Business authentication

D.

FIDO2 tokens

Buy Now
Question # 13

You have an Azure subscription.

From Entitlement management, you plan to create a catalog named Catalog1 that will contain a custom extension.

What should you create first and what should you use to distribute Catalog1? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Options:

Buy Now
Exam Code: SC-300
Exam Name: Microsoft Identity and Access Administrator
Last Update: Jun 14, 2025
Questions: 326
SC-300 pdf

SC-300 PDF

$33.25  $94.99
SC-300 Engine

SC-300 Testing Engine

$38.5  $109.99
SC-300 PDF + Engine

SC-300 PDF + Testing Engine

$50.75  $144.99