SC-300 Exam Details

  • Exam Code
    :SC-300
  • Exam Name
    :Microsoft Identity and Access Administrator
  • Certification
    :Microsoft Certifications
  • Vendor
    :Microsoft
  • Total Questions
    :465 Q&As
  • Last Updated
    :May 29, 2026

Microsoft SC-300 Online Questions & Answers

  • Question 201:

    Your company has an Azure AD tenant that contains the users shown in the following table.

    You have the app registrations shown in the following table.

    A company policy prevents changes to user permissions.

    Which user can create appointments in the calendar of each user at the company?

    A. User1
    B. User2
    C. User3
    D. User4

  • Question 202:

    HOTSPOT

    You have an Azure subscription that uses Microsoft Entra Permissions Management.

    You have an Amazon Web Services (AWS) account.

    You plan to connect Permissions Management to AWS.

    You need to create a Permissions Management app in Azure.

    How should you complete the PowerShell command? To answer, select the appropriate options in the answer area.

    NOTE: Each correct selection is worth one point.

  • Question 203:

    Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.

    After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.

    You have an Amazon Web Services (AWS) account, a Google Workspace subscription, and a GitHub account.

    You deploy an Azure subscription and enable Microsoft 365 Defender.

    You need to ensure that you can monitor OAuth authentication requests by using Microsoft Defender for Cloud Apps.

    Solution: From the Microsoft 365 Defender portal, you add the Google Workspace app connector.

    Does this meet the goal?

    A. Yes
    B. No

  • Question 204:

    You have a Microsoft Entra tenant that contains the groups shown in the following table.

    You need to implement Privileged Identity Management (PIM) for the groups.

    Which groups can be managed by using PIM?

    A. Group1 only
    B. Group1 and Group2 only
    C. Group1 and Group3 only
    D. Group3 and Group4 only
    E. Group1, Group2, Group3, and Group4

  • Question 205:

    SIMULATION

    Use the following login credentials as needed:

    To enter your username, place your cursor in the Sign in box and click the username below.

    To enter your password, place your cursor in the Enter password box and click the password below.

    Microsoft 365 Username: [email protected]

    Microsoft 365 Password: 1122334455667788

    If the Microsoft 365 portal does not load successfully in the browser, press CTRL+K to reload the portal in a new browser tab.

    The following information is for technical support purposes only:

    Lab Instance: 99999999

    You need to enforce multi-factor authentication (MFA) for users in the Executives group when they connect to Microsoft Office 365 apps. The solution must affect only the users in the Executives group.

    To complete this task, sign in to the appropriate admin center.

    A. See the explanation below
    B. PlaceHolder
    C. PlaceHolder
    D. PlaceHolder

  • Question 206:

    You have a Microsoft 365 E5 subscription.

    You have an Azure subscription that is linked to a Microsoft Entra tenant. The tenant contains a user named User1.

    You plan to deploy Microsoft Entra Permissions Management.

    You need to ensure that User1 can onboard the Azure subscription to Permissions Management. The solution must follow the principle of least privilege.

    Which Microsoft Entra role should you assign to User1?

    A. Permissions Management Administrator
    B. Global Administrator
    C. Security Administrator
    D. Application Administrator

  • Question 207:

    Your network contains an Active Directory forest named contoso.com that is linked to an Azure Active Directory

    (Azure AD) tenant named contoso.com by using Azure AD Connect.

    You need to prevent the synchronization of users who have the extensionAttribute15 attribute set to NoSync.

    What should you do in Azure AD Connect?

    A. Create an inbound synchronization rule for the Windows Azure Active Directory connector.
    B. Configure a Full Import run profile.
    C. Create an inbound synchronization rule for the Active Directory Domain Services connector.
    D. Configure an Export run profile.

  • Question 208:

    HOTSPOT

    You have a Microsoft Entra tenant named contoso.com that contains an administrative unit named AU1 and two users named User1 and User2. User1 is a member of AU1.

    You need to perform the following role assignments:

    1. User1: Security Administrator

    2. User2: User Administrator

    For which scopes can each user be assigned the role? To answer, select the appropriate options in the answer area.

    NOTE: Each correct selection is worth one point.

  • Question 209:

    You need to meet the planned changes for the User administrator role.

    What should you do?

    A. Create an access review.
    B. Create an administrative unit.
    C. Modify Active assignments.
    D. Modify Role settings.

  • Question 210:

    HOTSPOT

    You have an Azure Active Directory (Azure AD) tenant named contoso.com that contains a group named All Company and has the following Identity Governance settings:

    Block external users from signing in to this directory: Yes Remove external user. Yes Number of days before removing external user from this directory: 30

    On March 11, 2.022, you create an access package named Package1 that has the following settings: Resource rales

    1. Name: All Company

    2. Type: Group and Team

    3. Role: Member

    Lifecycle

    1. Access package assignment expire: On date

    2. Assignment expiration date: April 1, 2022

    On March 1, 2022, you assign Package1 to the guest users shown in the following table.

    On March 2, 2022, you assign the Reports reader role to Guest1.

    On April 1, 2022, you invite a guest user named Guest3 to contoso.com.

    On April 4, 2022, you add Guest3 to the All Company group.

    For each of the following statements, select Yes if the statement is true. Otherwise, select No.

    NOTE: Each correct selection is worth one point.

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Microsoft exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SC-300 exam preparations and Microsoft certification application, do not hesitate to visit our Vcedump.com to find your solutions here.