Weekend Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: bigdisc65

SC-300 Exam Dumps - Microsoft Certified: Identity and Access Administrator Associate Questions and Answers

Question # 4

You have a Microsoft 365 tenant.

You currently allow email clients that use Basic authentication to conned to Microsoft Exchange Online.

You need to ensure that users can connect t to Exchange only run email clients that use Modern authentication protocols.

What should you implement?

You need to ensure that use Modern authentication

Options:

A.

a compliance policy in Microsoft Endpoint Manager

B.

a conditional access policy in Azure Active Directory (Azure AD)

C.

an application control profile in Microsoft Endpoint Manager

D.

an OAuth policy in Microsoft Cloud App Security

Buy Now
Question # 5

You have a Microsoft 365 E5 subscription that contains three users named User1, User2, and User3.

You have two Azure AD roles that have the Activation settings shown in the following table.

The Azure AD roles have the Assignment settings shown in the following table.

The Azure AD roles have the eligible users shown in the following table.

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

NOTE: Each correct selection is worth one point.

Options:

Buy Now
Question # 6

You have an Azure AD tenant that contains an access package named Package1 and a user named User1. Package1 is configured as shown in the following exhibit.

You need to ensure that User1 can modify the review frequency of Package1. The solution must use the principle of least privilege.

Which role should you assign to User1?

Options:

A.

Privileged role administrator

B.

User administrator

C.

External Identity Provider administrator

D.

Security administrator

Buy Now
Question # 7

You need to meet the authentication requirements for leaked credentials.

What should you do?

Options:

A.

Enable federation with PingFederate in Azure AD Connect.

B.

Configure Azure AD Password Protection.

C.

Enable password hash synchronization in Azure AD Connect.

D.

Configure an authentication method policy in Azure AD.

Buy Now
Question # 8

You need to identify which roles to use for managing role assignments. The solution must meet the delegation requirements.

What should you do? To answer, select the appropriate options in the answer area.

NOTE:Each correct selection is worth one point.

Options:

Buy Now
Question # 9

You have a Microsoft 365 E5 subscription that contains a Microsoft SharePoint Online site named Site1 and the users shown in the following table.

The users have the devices shown in the following table.

You create the following two Conditional Access policies:

• Name: CAPolicy1

• Assignments

o Users or workload identities: Group 1

o Cloud apps or actions: Office 365 SharePoint Online

o Conditions

■Filter for devices: Exclude filtered devices from the policy

■Rule syntax: device.displayName -starts With "Device*"

o Access controls

■Grant: Block access

■Session: 0 controls selected

o Enable policy: On

• Name: CAPolicy2

• Assignments

o Users or workload identities: Group2

o Cloud apps or actions: Office 365 SharePoint Online

o Conditions: 0 conditions selected

• Access controls

o Grant: Grant access

■Require multifactor authentication

o Session:

0 controls selected

• Enable policy: On

All users confirm that they can successfully authenticate using MFA.

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

NOTE: Each correct selection is worth one point.

Options:

Buy Now
Question # 10

You have 2,500 users who are assigned Microsoft Office 365 Enterprise E3 licenses. The licenses are

assigned to individual users.

From the Groups blade in the Azure Active Directory admin center, you assign Microsoft 365 Enterprise E5

licenses to the users.

You need to remove the Office 365 Enterprise E3 licenses from the users by using the least amount of

administrative effort.

What should you use?

Options:

A.

the Identity Governance blade in the Azure Active Directory admin center

B.

the Set-AzureAdUser cmdlet

C.

the Licenses blade in the Azure Active Directory admin center

D.

the Set-WindowsProductKey cmdlet

Buy Now
Question # 11

You have an Azure Active Directory (Azure AD) tenant that contains the groups shown in the following table.

For which groups can you create an access review?

Options:

A.

Group1 only

B.

Group1 and Group4 only

C.

Group1 and Group2 only

D.

Group1, Group2, Group4, and Group5 only

E.

Group1, Group2, Group3, Group4 and Group5

Buy Now
Question # 12

You have a Microsoft 365 E5 subscription that contains the users shown in the following table.

You configure Microsoft Entra Internet Access. Which users can manage Microsoft Entra Internet Access?

Options:

A.

User1 only

B.

User2only

C.

User3only

D.

User1 and User2 only

E.

User1, User2, and User3

Buy Now
Question # 13

You have a Microsoft 365 tenant that contains the administrative units shown in the following table.

The subscription contains the administrators shown in the following table.

The subscription contains the users shown in the following table.

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

NOTE: Each correct selection is worth one point.

Options:

Buy Now
Exam Code: SC-300
Exam Name: Microsoft Identity and Access Administrator
Last Update: Sep 16, 2025
Questions: 341
SC-300 pdf

SC-300 PDF

$33.25  $94.99
SC-300 Engine

SC-300 Testing Engine

$38.5  $109.99
SC-300 PDF + Engine

SC-300 PDF + Testing Engine

$50.75  $144.99