MS-100 Research & Evidence-Based Practice 5 — Questions and Answers
Question 1: An MS-100 exam candidate is unsure whether a specific Azure AD feature was recently deprecated. What is the most reliable way to verify current feature status?
- Check the Azure AD 'What's new' documentation and release notes on learn.microsoft.com (Correct answer)
- Search Bing for recent news about the feature
- Ask in the Microsoft Tech Community forums and trust the top answer
- Review the Azure portal for the feature's presence
Correct answer: Check the Azure AD 'What's new' documentation and release notes on learn.microsoft.com
Microsoft maintains 'What's new in Azure AD' release notes on learn.microsoft.com, which includes deprecation notices, retirements, and new feature announcements.
Question 2: An organization wants evidence that their Microsoft 365 tenant complies with ISO 27001. Which Microsoft resource provides audit report evidence for this certification?
- Service Trust Portal (servicetrust.microsoft.com) where Microsoft publishes ISO audit reports (Correct answer)
- Microsoft 365 Compliance Center compliance score only
- Azure Security Center recommendations
- Microsoft 365 admin center security reports
Correct answer: Service Trust Portal (servicetrust.microsoft.com) where Microsoft publishes ISO audit reports
The Service Trust Portal hosts Microsoft's third-party audit reports including ISO 27001 certifications and SOC reports available for customer download.
Question 3: When a new Microsoft 365 feature is 'In development' on the Microsoft 365 Roadmap, what does this status represent?
- The feature is being built and is not yet available in any tenant, including preview (Correct answer)
- The feature is live in production for all tenants
- The feature is available in preview for early adopters only
- The feature has been cancelled
Correct answer: The feature is being built and is not yet available in any tenant, including preview
'In development' on the Microsoft 365 Roadmap means the feature is still being built and has not been released to any production or preview environments.
Question 4: An admin suspects that Azure AD Multi-Factor Authentication is causing user sign-in failures after a configuration change. What is the evidence-based first step?
- Filter the Azure AD Sign-in logs by Authentication method detail and review MFA result codes (Correct answer)
- Disable MFA globally as a temporary rollback
- Review on-premises AD event logs for authentication errors
- Submit a Microsoft support ticket before investigating locally
Correct answer: Filter the Azure AD Sign-in logs by Authentication method detail and review MFA result codes
Azure AD Sign-in logs include Authentication details that show exactly which MFA method was attempted and the specific result or failure code.
Question 5: A Microsoft 365 admin is researching best practices for managing emergency access (break-glass) accounts. Which source represents the most authoritative evidence-based guidance?
- Microsoft's emergency access accounts documentation on learn.microsoft.com (Correct answer)
- A security blog post by a third-party vendor
- Microsoft Community forum thread on break-glass accounts
- Azure AD product team's Twitter account
Correct answer: Microsoft's emergency access accounts documentation on learn.microsoft.com
Microsoft publishes specific emergency access account guidance on learn.microsoft.com covering creation, monitoring, and testing practices based on real-world incident response evidence.
Question 6: Before recommending Azure AD B2B collaboration to a customer, an admin wants evidence on which identity providers external guests can use. Which resource is authoritative?
- Azure AD B2B documentation listing supported identity providers on learn.microsoft.com (Correct answer)
- Testing each identity provider manually in a trial tenant
- Microsoft Partner Network partner advisories
- Azure AD B2B forum discussions on Microsoft Tech Community
Correct answer: Azure AD B2B documentation listing supported identity providers on learn.microsoft.com
Microsoft's Azure AD B2B documentation on learn.microsoft.com explicitly lists all supported identity providers including Microsoft accounts, Google federation, and SAML/WS-Fed federation.
Question 7: When an organization's Microsoft 365 Secure Score drops unexpectedly, what is the evidence-based first action to identify what changed?
- Review the Secure Score history graph and 'Improvement actions' tab for recently regressed controls (Correct answer)
- Immediately re-enable all previously recommended security controls
- Check the Microsoft 365 Service Health Dashboard for outages
- Review Azure AD audit logs for admin role assignments
Correct answer: Review the Secure Score history graph and 'Improvement actions' tab for recently regressed controls
The Secure Score history graph and Improvement actions tab identify which specific controls regressed and when, providing targeted evidence for investigation.
An MS-100 exam candidate is unsure whether a specific Azure AD feature was recently deprecated.
What is the most reliable way to verify current feature status?