MS-102 Study Guide 2026

Everything you need to pass the MS-102 exam in one place: the exam format, every topic to study, real practice questions with explanations, flashcards, and full-length practice tests. Free, no sign-up needed.

๐Ÿ“‹ MS-102 Exam Format at a Glance

50
Questions
100 min
Time Limit
70%
Passing Score

๐Ÿ“š MS-102 Topics to Study (60)

Microsoft 365 Tenant & Service Management ยท 9 cardsIdentity & Access Management ยท 7 cardsIdentity & Access Management ยท 7 cardsIdentity & Access Management ยท 7 cardsIdentity & Access Management ยท 7 cardsMicrosoft 365 Administrator Expert Configuring Identity Synchronization ยท 7 cardsMicrosoft 365 Administrator Expert Configuring Identity Synchronization ยท 7 cardsMicrosoft 365 Administrator Expert Configuring Identity Synchronization ยท 7 cardsMicrosoft 365 Administrator Expert Configuring Identity Synchronization ยท 7 cardsMicrosoft 365 Administrator Expert Configuring Information Protection ยท 7 cardsMicrosoft 365 Administrator Expert Configuring Information Protection ยท 7 cardsMicrosoft 365 Administrator Expert Configuring Information Protection ยท 7 cardsMicrosoft 365 Administrator Expert Configuring Information Protection ยท 7 cardsMicrosoft 365 Administrator Expert Implementing Conditional Access Policies ยท 7 cardsMicrosoft 365 Administrator Expert Implementing Conditional Access Policies ยท 7 cardsMicrosoft 365 Administrator Expert Implementing Conditional Access Policies ยท 7 cardsMicrosoft 365 Administrator Expert Implementing Conditional Access Policies ยท 7 cardsMicrosoft 365 Administrator Expert Implementing Data Loss Prevention ยท 7 cardsMicrosoft 365 Administrator Expert Implementing Data Loss Prevention ยท 7 cardsMicrosoft 365 Administrator Expert Implementing Data Loss Prevention ยท 7 cardsMicrosoft 365 Administrator Expert Implementing Data Loss Prevention ยท 7 cardsMicrosoft 365 Administrator Expert Managing Defender for Endpoint ยท 7 cardsMicrosoft 365 Administrator Expert Managing Defender for Endpoint ยท 7 cardsMicrosoft 365 Administrator Expert Managing Defender for Endpoint ยท 7 cardsMicrosoft 365 Administrator Expert Managing Defender for Endpoint ยท 7 cardsMicrosoft 365 Administrator Expert Managing Defender for Office ยท 7 cardsMicrosoft 365 Administrator Expert Managing Defender for Office ยท 7 cardsMicrosoft 365 Administrator Expert Managing Defender for Office ยท 7 cardsMicrosoft 365 Administrator Expert Managing Defender for Office ยท 7 cardsMicrosoft 365 Administrator Expert Managing Entra ID Authentication ยท 7 cards

โœ๏ธ Sample MS-102 Questions & Answers

1. Which Defender for Office 365 feature provides a detonation-based analysis of email attachments in an isolated environment before delivery?
โœ“ Safe Attachments

Safe Attachments detonates suspicious attachments in a sandboxed virtual environment to detect malware before the email is delivered to the recipient.

2. What is the purpose of the 'Live Response' feature in Microsoft Defender for Endpoint?
โœ“ Provide a remote shell session to investigate and remediate a device in real time

Live Response gives security analysts a remote shell connection to a device, allowing them to run commands, collect files, and remediate threats interactively.

3. What is 'co-management' in the context of Microsoft Intune and Microsoft Endpoint Configuration Manager (MECM)?
โœ“ Sharing device management workloads between Configuration Manager and Intune simultaneously

Co-management connects existing ConfigMgr-managed Windows devices to Intune and allows organizations to progressively shift specific management workloads (e.g., Compliance, Device Configuration) from on-premises ConfigMgr to cloud-based Intune.

4. An organization has synchronized on-premises Active Directory users to Azure AD using Azure AD Connect. A user's account is disabled in on-premises AD. What happens to the Azure AD account?
โœ“ The Azure AD account is disabled on the next synchronization cycle

Azure AD Connect synchronizes account state changes, so the Azure AD account will be disabled after the next sync cycle (default every 30 minutes).

5. Which role is required to create and manage DLP policies in the Microsoft Purview compliance portal?
โœ“ DLP Compliance Management

The DLP Compliance Management role grants permissions to create, edit, and manage DLP policies in the Microsoft Purview compliance portal.

6. An administrator must ensure that all Microsoft 365 license assignments are removed when a user account is deleted. Which behavior is correct by default?
โœ“ Licenses remain assigned to the deleted user account for 30 days then are reclaimed

When a user is deleted in Microsoft 365, the account enters a soft-delete state for 30 days, during which the license remains consumed; the license is reclaimed after the 30-day retention period.

๐ŸŽฏ Free MS-102 Practice Tests

๐Ÿ“– MS-102 Guides & Articles

Your MS-102 Study Path
1. Learn with Flashcards โ†’ 2. Drill Practice Tests โ†’ 3. Take the Full Exam Simulation
Was this helpful?
MS-102 Study Guide 2026 โ€” Exam Format, Topics & Practice Questions