MS-100 Professional Standards & Competencies 4 — Questions and Answers
Question 1: An admin wants to ensure that only licensed users can send email through Exchange Online. Which approach enforces this standard?
- Apply a mail flow rule blocking unlicensed users
- Assign Exchange Online licenses only to users who need email (Correct answer)
- Enable DKIM for the tenant domain
- Configure a retention policy on the mailbox
Correct answer: Assign Exchange Online licenses only to users who need email
Assigning Exchange Online licenses only to users who require email access is the correct way to control who can use the mail service.
Question 2: Which Microsoft 365 competency involves ensuring that data loss prevention policies align with organizational regulatory requirements?
- Identity governance
- Compliance management (Correct answer)
- Endpoint management
- Threat protection
Correct answer: Compliance management
Compliance management in Microsoft 365 encompasses aligning DLP policies, sensitivity labels, and retention policies with regulatory standards.
Question 3: A new IT admin joins the team and needs access to the Microsoft 365 admin center but should not be able to modify billing settings. Which role is appropriate?
- Billing Administrator
- Global Administrator
- Service Support Administrator (Correct answer)
- Message Center Reader
Correct answer: Service Support Administrator
The Service Support Administrator can open service requests and view the admin center but cannot change billing configurations.
Question 4: What is the purpose of the Microsoft 365 Message Center in the admin center?
- To send email announcements to all users
- To notify admins of upcoming service changes and new features (Correct answer)
- To manage user message rules in Exchange Online
- To track phishing reports from users
Correct answer: To notify admins of upcoming service changes and new features
The Message Center publishes planned changes, new features, and actionable advisories that admins need to be aware of.
Question 5: An organization's security policy requires that admin actions in Microsoft 365 be attributable to individual accounts. Which practice enforces this?
- Sharing a single admin account among the team
- Requiring each admin to have their own named admin account (Correct answer)
- Using a distribution list as the admin account
- Assigning admin tasks only via service accounts
Correct answer: Requiring each admin to have their own named admin account
Each administrator should have an individual named account so that audit logs can attribute actions to specific individuals.
Question 6: Which feature in Microsoft Purview Compliance Manager helps organizations assess their compliance posture against specific regulations like GDPR or HIPAA?
- Sensitivity labels
- Assessment templates (Correct answer)
- Audit retention policies
- eDiscovery holds
Correct answer: Assessment templates
Compliance Manager provides regulation-specific assessment templates that measure controls implemented against requirements like GDPR or HIPAA.
Question 7: An admin is setting up Microsoft 365 for a new organization and must verify the custom domain before it can be used for email. What record type is typically used for domain verification?
- MX record
- TXT record (Correct answer)
- CNAME record
- SRV record
Correct answer: TXT record
Microsoft 365 typically uses a TXT record added to the domain's DNS zone to verify domain ownership.
An admin wants to ensure that only licensed users can send email through Exchange Online.
Which approach enforces this standard?