Azure Identity and Security Flashcards
7 cards from real AZ-900 practice questions. Tap to flip, then mark Knew It or Still Learning โ missed cards come back until you master them.
Read the first 7 Azure Identity and Security flashcards as text
Which Azure AD (Microsoft Entra ID) feature requires users to provide two or more verification methods to sign in?
Answer: Multi-factor authentication
Multi-factor authentication (MFA) requires two or more verification methods such as a password plus a phone approval.
What does Single Sign-On (SSO) primarily provide to users?
Answer: Access to multiple applications with one set of credentials
SSO lets users authenticate once and access multiple connected applications without signing in again.
Which Azure service helps protect privileged accounts by providing just-in-time access?
Answer: Privileged Identity Management (PIM)
PIM provides just-in-time, time-limited activation of privileged roles to reduce standing access.
What is the term for Microsoft's identity and access management cloud service formerly called Azure Active Directory?
Answer: Microsoft Entra ID
Azure Active Directory was renamed Microsoft Entra ID and provides cloud identity and access management.
Which feature allows you to enforce policies like 'require MFA when signing in from an untrusted location'?
Answer: Conditional Access
Conditional Access enforces access controls based on signals such as location, device, and risk.
What type of authentication uses a fingerprint or facial recognition instead of a password?
Answer: Biometric authentication
Biometric authentication, such as Windows Hello, verifies identity using physical characteristics like fingerprints or face.
Which Azure AD edition feature provides self-service password reset for users?
Answer: Self-Service Password Reset (SSPR)
SSPR lets users reset their own passwords without contacting a help desk, reducing support overhead.