MS-100 Research & Evidence-Based Practice 4 — Questions and Answers
Question 1: A compliance officer asks for evidence that Microsoft 365 data is stored only in US datacenters for their tenant. Which tool provides this data residency evidence?
- The 'Data location' section in the Microsoft 365 admin center under Settings > Org settings (Correct answer)
- A Microsoft sales representative verbal confirmation
- Azure AD Connect sync logs
- Microsoft 365 Message Center posts
Correct answer: The 'Data location' section in the Microsoft 365 admin center under Settings > Org settings
The Microsoft 365 admin center Settings > Org settings > Data location section displays the actual datacenter regions where each service's data is stored.
Question 2: When researching whether Microsoft has received government requests for your tenant's data in the past year, where is this information published?
- Microsoft's Law Enforcement Requests Report published on the Microsoft Trust Center (Correct answer)
- Directly in the Microsoft 365 compliance center per tenant
- Via a support request to Microsoft Legal
- In the Microsoft 365 Message Center
Correct answer: Microsoft's Law Enforcement Requests Report published on the Microsoft Trust Center
Microsoft publishes an annual Law Enforcement Requests Report on the Trust Center disclosing the volume and types of government data requests received.
Question 3: An admin needs evidence on the exact retention period for Microsoft's deletion of customer data after a Microsoft 365 subscription expires. Which document is authoritative?
- Microsoft Online Services Terms (OST) or Data Protection Addendum (DPA) (Correct answer)
- The Microsoft 365 admin center billing cancellation page
- Azure AD audit logs after subscription expiry
- Microsoft's community support forums
Correct answer: Microsoft Online Services Terms (OST) or Data Protection Addendum (DPA)
The Microsoft Online Services Terms (OST) and Data Protection Addendum (DPA) contractually specify that Microsoft retains data for 90 days after subscription termination before deletion.
Question 4: A team is researching whether enabling Microsoft 365 Customer Lockbox is available on their current plan. What is the most evidence-based way to verify plan eligibility?
- Check the Microsoft 365 licensing documentation and compare against their current subscription in the admin center (Correct answer)
- Try to enable Customer Lockbox in the admin center and see if it fails
- Ask the Microsoft account team
- Search for Customer Lockbox in the Microsoft 365 Roadmap
Correct answer: Check the Microsoft 365 licensing documentation and compare against their current subscription in the admin center
Comparing official licensing documentation against the tenant's actual subscription in the admin center is the most reliable evidence-based method for verifying feature eligibility.
Question 5: When evaluating Azure AD Identity Protection risk detections in your tenant, which report provides real evidence of compromised credentials being used?
- Risky sign-ins report in Azure AD Identity Protection (Correct answer)
- Microsoft Defender for Office 365 email threat report
- Microsoft 365 Secure Score improvement actions
- Azure AD audit log for directory role changes
Correct answer: Risky sign-ins report in Azure AD Identity Protection
The Risky sign-ins report in Azure AD Identity Protection surfaces sign-in attempts flagged by Microsoft's threat intelligence as potentially compromised.
Question 6: An administrator wants evidence on the root cause of failed password hash synchronization between on-premises AD and Azure AD. What is the best diagnostic tool?
- Azure AD Connect troubleshooting cmdlet Invoke-ADSyncDiagnostics and sync error reports in Azure AD Connect Health (Correct answer)
- Azure AD audit logs for user password change events
- Microsoft 365 admin center password reset activity
- On-premises Active Directory event viewer application logs only
Correct answer: Azure AD Connect troubleshooting cmdlet Invoke-ADSyncDiagnostics and sync error reports in Azure AD Connect Health
Invoke-ADSyncDiagnostics and Azure AD Connect Health sync error reports together provide diagnostic evidence specific to password hash sync pipeline failures.
Question 7: Before presenting a Microsoft 365 migration business case, which type of Microsoft evidence most effectively quantifies ROI for stakeholders?
- Microsoft-published Total Economic Impact (TEI) studies from Forrester commissioned by Microsoft (Correct answer)
- Internal team estimates without external validation
- Peer Reddit posts about migration experiences
- Microsoft 365 admin center usage analytics from a trial tenant
Correct answer: Microsoft-published Total Economic Impact (TEI) studies from Forrester commissioned by Microsoft
Forrester TEI studies commissioned by Microsoft provide third-party-validated financial evidence including cost savings, productivity gains, and payback periods.
A compliance officer asks for evidence that Microsoft 365 data is stored only in US datacenters for their tenant.
Which tool provides this data residency evidence?