For each of the following statements, select Yes if the statement is true. Otherwise, select No.
You need to identify which cloud service models place the most responsibility on the customer in a shared responsibility model.
In which order should you list the service models from the most customer responsibility to the least?
-Models-
- platform as a service (PaaS)
- software as a service (SaaS)
- on-premises datacenter
- infrastructure as a service (IaaS)
1) on-premises datacenter
2) infrastructure as a service (IaaS)
3) platform as a service (PaaS)
4) software as a service (SaaS)
Select the answer that correctly completes the sentence.
You can assign _________ to an Azure AD role.
↓
- a management group
- a resource group
- a security principal
- an administrative unit
a security principal
You have an Azure subscription.
You need to implement approval-based, time-bound role activation.
What should you use?
A. access reviews in Azure AD
B. Azure AD Privileged Identity Management (PIM)
C. Azure AD Identity Protection
D. Conditional access in Azure AD
B. Azure AD Privileged Identity Management (PIM)
What should you use in the Microsoft 365 Defender portal to view security trends and track the protection status of identities?
A. Reports
B. Incidents
C. Hunting
D. Secure score
A. Reports
Keywords = trends and track = Reports
Select the answer that correctly completes the sentence.
Microsoft cloud security benchmark
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
Which portal contains the solution catalog?
A. Microsoft Purview compliance portal
B. Microsoft 365 Defender portal
C. Microsoft 365 admin center
D. Microsoft 365 Apps admin center
A. Microsoft Purview compliance portal
Select the answer that correctly completes the sentence.
In the Microsoft Purview compliance portal, you can use _____ to remove features from the navigation pane.
↓
- Compliance Manager
- Customize navigation
- Policies
- Settings
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
You implement Compliance Manager.
You need to retrieve status information for a control task.
Which two options can you use?
When you enable Azure AD Multi-Factor Authentication (MFA), how many factors are required for authentication?
A. 1
B. 2
C. 3
D. 4
B. 2
Select the answer that correctly completes the sentence.
Microsoft Defender for Cloud assesses Azure resources ________ for security issues.
↓
- continuously
- daily
- every 15 minutes
- hourly
continuously
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
Select the answer that correctly completes the sentence.
A user-assigned managed identity
Select the answer that correctly completes the sentence.
Conditional Access policies are enforced _____ first-factor authentication.
↓
- after
- before
- during
- instead of
after
You are the Microsoft 365 administrator for a company.
You need to identify available cloud security features.
Match each feature to the correct description.
-Features-
- Cloud Discovery dashboard (now Microsoft Defender for Cloud Apps)
- Microsoft Azure AD Conditional Access
- Microsoft Azure Security Center (now Microsoft Defender for Cloud)
- Microsoft Azure Information Protection (now Microsoft Purview Information Protection)
-Description-
- Classify and label emails and documents in the organization
- Block users from accessing cloud apps from certain devices
- Provide insight into which apps are being used in the organization and risk levels for the apps
- Manage security policies, monitor attacks against virtual machines, and provide remediation for vulnerabilities
Cloud Discovery dashboard → Provide insight into which apps are being used in the organization and risk levels for the apps.
Microsoft Azure AD Conditional Access → Block users from accessing cloud apps from certain devices.
Microsoft Azure Security Center → Manage security policies, monitor attacks against virtual machines, and provide remediation for vulnerabilities.
Microsoft Azure Information Protection → Classify and label emails and documents in the organization
Which Microsoft Purview solution can be used to identify data leakage?
A. insider risk management
B. Compliance Manager
C. communication compliance
D. eDiscovery
A. insider risk management
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
A company needs to protect documents and emails by automatically applying classifications and labels. You must minimize costs.
What should the company implement?
The company should implement
↓
- Azure Information Protection P1
- Azure Information Protection P2
- Microsoft 365 E3
Azure Information Protection P2
Select the answer that correctly completes the sentence.
Microsoft Entra Permissions Management is
↓
- a cloud infrastructure entitlement management (CIEM) solution
- a cloud security posture management (CSPM) solution
- a security information and event management (SIEM) solution
- an extended detection and response (XDR) solution
a cloud infrastructure entitlement management (CIEM) solution
For each of the following statements, select Yes if the statement is true. Otherwise, select No.