Free SC-900 Access Management Solutions Questions and Answers — Questions and Answers
Question 1: Which of the following provides: "an end to end workflow to preserve, collect, analyze, review and export content in MS365"?
- Core eDiscovery
- Sensitivity Labels
- Advanced eDiscovery (Correct answer)
- Content Search
Correct answer: Advanced eDiscovery
Advanced eDiscovery in Microsoft 365 provides an end-to-end workflow for preserving, collecting, analyzing, reviewing, and exporting content in Microsoft 365. It helps organizations efficiently respond to legal matters and internal investigations. This comprehensive solution includes features like custodian management, legal hold, and advanced analytics to streamline the entire eDiscovery process.
Question 2: Which of the following can be accomplished with the use of the Azure Privileged Identity Management Service?
- Measure Security posture of resources defined in Azure environment
- Provide just-in-time access to resources roles in Azure (Correct answer)
- Filter traffic to Azure virtual machines
- Enable MFA for the users based on detected sign-in-risks
Correct answer: Provide just-in-time access to resources roles in Azure
Azure Privileged Identity Management (PIM) is a service in Azure AD that enables you to manage, control, and monitor access to important resources. A key feature is providing just-in-time (JIT) access, which grants elevated privileges only when needed and for a limited time. This minimizes the exposure time of privileged access, significantly reducing the risk of unauthorized use.
Question 3: A new admin has joined the team and needs to be able to access the Microsoft 365 Compliance Center. Which of the following roles could the admin use to access the Compliance Center?
- Help desk Administrator role
- User Administrator role
- Compliance Administrator role (Correct answer)
Correct answer: Compliance Administrator role
The Compliance Administrator role in Microsoft 365 is specifically designed to manage compliance features within the Microsoft 365 Compliance Center. Assigning this role grants the necessary permissions to access and manage compliance-related settings, policies, and reports. This ensures the new admin can effectively perform their duties related to organizational compliance.
Question 4: Which of the following measures might an organization implement as part of the defense in-depth security methodology?
- Multi-factor authentication for all users. (Correct answer)
- Ensuring there's no segmentation of your corporate network.
- Locating all its servers in a single physical location.
Correct answer: Multi-factor authentication for all users.
Multi-factor authentication (MFA) is a prime example of a control implemented as part of a defense-in-depth security methodology. By requiring multiple forms of verification, MFA adds an additional, robust layer of security beyond just a password. This makes it significantly harder for unauthorized users to gain access, even if one credential layer is compromised.
Question 5: Which edition of the Azure active directory gives you Privileged Identity Management to help discover, restrict, and monitor administrators?
- Premium P1
- Office 365
- Premium P2 (Correct answer)
- Free
Correct answer: Premium P2
Azure Active Directory Premium P2 is the edition that includes advanced identity protection capabilities, such as Azure AD Privileged Identity Management (PIM). PIM allows organizations to discover, restrict, and monitor administrators, and provide just-in-time access to resources. This robust feature set is essential for managing and securing privileged access effectively within an organization.
Which of the following provides: "an end to end workflow to preserve, collect, analyze, review and export content in MS365"?