Exam Details

  • Exam Code
    :MS-500
  • Exam Name
    :Microsoft 365 Security Administration
  • Certification
    :Microsoft Certifications
  • Vendor
    :Microsoft
  • Total Questions
    :367 Q&As
  • Last Updated
    :Sep 11, 2023

Microsoft Microsoft Certifications MS-500 Questions & Answers

  • Question 301:

    HOTSPOT

    You have a Microsoft 365 tenant.

    You need to retain Azure Active Directory (Azure AD) audit logs for two years. Administrators must be able to query the audit log information by using the Azure Active Directory admin center.

    What should you do? To answer, select the appropriate options in the answer area.

    NOTE: Each correct selection is worth one point.

    Hot Area:

  • Question 302:

    HOTSPOT

    You have an Azure Active Directory (Azure AD) tenant named contoso.com that contains the users shown in the following table.

    You assign an enterprise application named App1 to Group1 and User2.

    You configure an Azure AD access review of App1. The review has the following settings:

    Review name: Review1 Start date: 01–15–2020 Frequency: One time End date: 02–14–2020 Users to review: Assigned to an application Scope: Everyone Applications: App1 Reviewers: Members (self) Auto apply results to resource: Enable Should reviewer not respond: Take recommendations

    On February 15, 2020, you review the access review report and see the entries shown in the following table:

    For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.

    Hot Area:

  • Question 303:

    HOTSPOT

    You have a Microsoft 365 subscription that contains the users shown in the following table.

    You create and enforce an Azure Active Directory (Azure AD) Identity Protection sign-in risk policy that has the following settings:

    1.

    Assignments: Include Group1, Exclude Group2

    2.

    Conditions: User risk level of Medium and above

    3.

    Access: Allow access, Require password change

    The users attempt to sign in. The risk level for each user is shown in the following table.

    For each of the following statements, select Yes if the statement is true. Otherwise, select No.

    NOTE: Each correct selection is worth one point.

    Hot Area:

  • Question 304:

    HOTSPOT

    Your network contains an on-premises Active Directory domain that syncs to Azure Active Directory (Azure AD) as shown in the following exhibit.

    The synchronization schedule is configured as shown in the following exhibit.

    Use the drop-down menus to select the answer choice that answers each question based on the information presented in the graphic.

    NOTE: Each correct selection is worth one point.

    Hot Area:

  • Question 305:

    HOTSPOT

    You have a Microsoft 365 tenant.

    You create an attack surface reduction policy that uses an application control profile as shown in the following exhibit.

    Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic. NOTE: Each correct selection is worth one point.

    Hot Area:

  • Question 306:

    HOTSPOT

    You have a Microsoft 365 E5 subscription that contains the users shown in the following table.

    You plan to implement Azure Active Directory (Azure AD) Identity Protection.

    You need to identify which users can perform the following actions:

    Configure a user risk policy.

    View the risky users report.

    Which users should you identify? To answer, select the appropriate options in the answer area.

    NOTE: Each correct selection is worth one point.

    Hot Area:

  • Question 307:

    HOTSPOT

    You have an Azure Active Directory (Azure AD) tenant named contoso.com that contains the users shown in the following table.

    You add internal as a blocked word in the group naming policy for contoso.com.

    You add Contoso-as prefix in the group naming policy for contoso.com.

    For each of the following statements, select Yes if the statement is true. Otherwise, select No.

    NOTE: Each correct selection is worth one point.

    Hot Area:

  • Question 308:

    HOTSPOT

    You have a Microsoft 365 subscription that contains a Microsoft SharePoint Online site named Site1. Site1 contains the folders shown in the following table.

    At 09:00, you create a Microsoft Cloud App Security policy named Policy1 as shown in the following exhibit.

    After you create Policy1, you upload files to Site1 as shown in the following table.

    For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.

    Hot Area:

  • Question 309:

    HOTSPOT

    You have a Microsoft 365 subscription that uses a default domain name of litwareinc.com. You configure the Sharing settings in Microsoft OneDrive as shown in the following exhibit.

    Hot Area:

  • Question 310:

    HOTSPOT

    You have a Microsoft 365 sensitivity label that is published to all the users in your Azure Active Directory (Azure AD) tenant as shown in the following exhibit.

    For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.

    Hot Area:

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Microsoft exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your MS-500 exam preparations and Microsoft certification application, do not hesitate to visit our Vcedump.com to find your solutions here.