โ† All SC-900 Flashcard Decks

Microsoft Security, Compliance, and Identity Fundamentals Microsoft Entra Access Management Flashcards

7 cards from real SC-900 practice questions. Tap to flip, then mark Knew It or Still Learning โ€” missed cards come back until you master them.

Read the first 7 Microsoft Security, Compliance, and Identity Fundamentals Microsoft Entra Access Management flashcards as text
  1. What is the role of an 'Authentication Strength' policy in Microsoft Entra Conditional Access?

    Answer: It specifies which combinations of authentication methods are required for specific scenarios

    Authentication Strength policies let administrators require specific combinations of authentication methods (e.g., phishing-resistant MFA) through Conditional Access.

  2. Which Microsoft Entra ID feature allows users to join their personal devices to the directory without full device management enrollment?

    Answer: Microsoft Entra Device Registration (Workplace Join)

    Microsoft Entra Device Registration (Workplace Join) lets users register personal devices to get SSO to organizational resources without full MDM enrollment.

  3. What does 'Hybrid Azure AD Join' (Microsoft Entra Hybrid Join) accomplish?

    Answer: It registers on-premises Active Directory-joined devices with Microsoft Entra ID

    Hybrid Entra Join allows domain-joined on-premises devices to also register with Microsoft Entra ID, enabling both on-premises and cloud SSO scenarios.

  4. In Conditional Access, what is the 'Sign-in Frequency' control used for?

    Answer: Controlling how often users must re-authenticate to a resource

    Sign-in Frequency Conditional Access controls how often a user must interactively re-authenticate, which helps limit session exposure for sensitive apps.

  5. What type of Microsoft Entra ID account is created when a guest user accepts a B2B collaboration invitation?

    Answer: A guest user account with limited directory access by default

    B2B guest users are represented as guest-type accounts in the inviting tenant's directory, with limited default permissions compared to member accounts.

  6. Which Microsoft Entra ID license tier is required to use Conditional Access policies?

    Answer: Microsoft Entra ID P1 or P2

    Conditional Access requires Microsoft Entra ID P1 (or P2 for risk-based policies), which is included in Microsoft 365 E3/E5 or available as a standalone add-on.

  7. What is the purpose of 'Named Locations' in Microsoft Entra Conditional Access?

    Answer: To define trusted or blocked IP ranges and countries for use in access policies

    Named Locations allow administrators to define specific IP ranges or countries/regions that can then be used as conditions within Conditional Access policies.