Microsoft Certification Microsoft Security, Compliance, and Identity (SC-900) 1 — Questions and Answers
Question 1: What does the Zero Trust security model assume about network traffic?
- All internal traffic is safe
- No traffic should be trusted by default (Correct answer)
- Only external traffic is dangerous
- Firewalls eliminate all risks
Correct answer: No traffic should be trusted by default
Zero Trust assumes breach and verifies every request explicitly, never trusting traffic simply because it's inside the network perimeter.
Question 2: What is the purpose of Microsoft Sentinel?
- Email spam filtering
- Cloud-native SIEM and SOAR solution (Correct answer)
- Password reset portal
- Device enrollment service
Correct answer: Cloud-native SIEM and SOAR solution
Microsoft Sentinel is a cloud-native security information and event management (SIEM) and security orchestration, automation, and response (SOAR) solution.
Question 3: Which Microsoft service provides identity protection by detecting risky sign-ins?
- Microsoft Defender for Endpoint
- Azure AD Identity Protection (Correct answer)
- Microsoft Intune
- Microsoft Purview
Correct answer: Azure AD Identity Protection
Azure AD Identity Protection detects suspicious sign-in behaviors and risky user accounts to protect identities.
Question 4: What does Conditional Access in Azure AD allow administrators to do?
- Grant all users admin rights
- Enforce access policies based on conditions like location and device (Correct answer)
- Disable MFA for all users
- Restrict storage quotas
Correct answer: Enforce access policies based on conditions like location and device
Conditional Access evaluates signals like user location, device compliance, and risk level to enforce access policies.
Question 5: What is Privileged Identity Management (PIM) used for in Azure AD?
- Managing email attachments
- Providing just-in-time privileged access to resources (Correct answer)
- Backing up user data
- Monitoring network bandwidth
Correct answer: Providing just-in-time privileged access to resources
PIM enables just-in-time privileged access, reducing standing admin rights to minimize security risks.
Question 6: Which compliance framework does Microsoft use to demonstrate its cloud security practices?
- HIPAA only
- ISO/IEC 27001 and SOC reports (Correct answer)
- FERPA only
- PCI-DSS only
Correct answer: ISO/IEC 27001 and SOC reports
Microsoft adheres to multiple standards including ISO/IEC 27001 and SOC 1/2/3 reports to demonstrate cloud security compliance.
What does the Zero Trust security model assume about network traffic?