Complete list of current Q & A>> Download Microsoft 365 Endpoint Administrator (MD-102) – Quiz 1 / 15 Category: Microsoft 365 Endpoint Administrator (MD-102) 1. You use Microsoft Intune and Intune Data Warehouse. You need to create a device inventory report that includes the data stored in the data warehouse. What should you use to create the report? A. the Company Portal app B. Endpoint analytics C. the Azure portal app D. Microsoft Power BI 2 / 15 Category: Microsoft 365 Endpoint Administrator (MD-102) 2. Your company uses Microsoft Intune to manage devices. You need to ensure that only Android devices that use Android work profiles can enroll in Intune. Which two configurations should you perform in the device enrollment restrictions? Each correct answer presents part of the solution. A. From Platform Settings, set Android device administrator Personally Owned to Block. B. From Platform Settings, set Android Enterprise (work profile) to Allow. C. From Platform Settings, set Android device administrator Personally Owned to Allow. D. From Platform Settings, set Android device administrator to Block. 3 / 15 Category: Microsoft 365 Endpoint Administrator (MD-102) 3. You have a Microsoft 365 E5 subscription. The subscription contains 25 computers that run Windows 11 and are enrolled in Microsoft Intune. You need to onboard the devices to Microsoft Defender for Endpoint. What should you create in the Microsoft Intune admin center? A. an attack surface reduction (ASR) policy B. a security baseline C. an endpoint detection and response (EDR) policy D. an account protection policy E. an antivirus policy 4 / 15 Category: Microsoft 365 Endpoint Administrator (MD-102) 4. You have 100 computers that run Windows 10 and connect to an Azure Log Analytics workspace. Which three types of data can you collect from the computers by using Log Analytics? Each correct answer presents a complete solution. A. failure events from the Security log B. the list of processes and their execution times C. the average processor utilization D. error events from the System log E. third-party application logs stored as text files 5 / 15 Category: Microsoft 365 Endpoint Administrator (MD-102) 5. You have an Azure AD group named Group1. Group1 contains two Windows 10 Enterprise devices named Device1 and Device2. You create a device configuration profile named Profile1. You assign Profile1 to Group1. You need to ensure that Profile1 applies to Device1 only. What should you modify in Profile1? A. Assignments B. Settings C. Scope (Tags) C. Scope (Tags) 6 / 15 Category: Microsoft 365 Endpoint Administrator (MD-102) 6. You have an Azure AD tenant and 100 Windows 10 devices that are Azure AD joined and managed by using Microsoft Intune. You need to configure Microsoft Defender Firewall and Microsoft Defender Antivirus on the devices. The solution must minimize administrative effort. Which two actions should you perform? Each correct answer presents part of the solution. A. To configure Microsoft Defender Antivirus, create a Group Policy Object (GPO) and configure the Windows Defender Antivirus settings. B. To configure Microsoft Defender Firewall, create a device configuration profile and configure the Device restrictions settings. C. To configure Microsoft Defender Antivirus, create a device configuration profile and configure the Endpoint protection settings. D. To configure Microsoft Defender Antivirus, create a device configuration profile and configure the Device restrictions settings. E. To configure Microsoft Defender Firewall, create a device configuration profile and configure the Endpoint protection settings. F. To configure Microsoft Defender Firewall, create a Group Policy Object (GPO) and configure Windows Defender Firewall with Advanced Security. 7 / 15 Category: Microsoft 365 Endpoint Administrator (MD-102) 7. You have a Microsoft 365 E5 subscription that contains 500 macOS devices enrolled in Microsoft Intune. You need to ensure that you can apply Microsoft Defender for Endpoint antivirus policies to the macOS devices. The solution must minimize administrative effort. What should you do? A. Onboard the macOS devices to the Microsoft Purview compliance portal. B. From the Microsoft Intune admin center, create a security baseline. C. Install Defender for Endpoint on the macOS devices. D. From the Microsoft Intune admin center, create a configuration profile. 8 / 15 Category: Microsoft 365 Endpoint Administrator (MD-102) 8. You have a Microsoft 365 E5 subscription that contains 10 Android Enterprise devices. Each device has a corporate-owned work profile and is enrolled in Microsoft Intune. You need to configure the devices to run a single app in kiosk mode. Which Configuration settings should you modify in the device restrictions profile? A. Users and Accounts B. General C. System security D. Device experience 9 / 15 Category: Microsoft 365 Endpoint Administrator (MD-102) 9. You have a Microsoft 365 subscription that uses Microsoft Intune Suite. You use Microsoft Intune to manage devices. You need to review the startup times and restart frequencies of the devices. What should you use? A. Azure Monitor B. Intune Data Warehouse C. Microsoft Defender for Endpoint D. Endpoint analytics 10 / 15 Category: Microsoft 365 Endpoint Administrator (MD-102) 10. You have a Microsoft 365 subscription that uses Microsoft Intune Suite. You use Microsoft Intune to manage devices. You have a Windows 11 device named Device1 that is enrolled in Intune. Device1 has been offline for 30 days. You need to remove Device1 from Intune immediately. The solution must ensure that if the device checks in again, any apps and data provisioned by Intune are removed. User-installed apps, personal data, and OEM-installed apps must be retained. What should you use? A. a Delete action B. a Retire action C. a Fresh Start action D. an Autopilot Reset action 11 / 15 Category: Microsoft 365 Endpoint Administrator (MD-102) 11. You have a Microsoft 365 subscription. You have 10 computers that run Windows 10 and are enrolled in mobile device management (MDM). You need to deploy the Microsoft 365 Apps for enterprise suite to all the computers. What should you do? A. From the Microsoft Intune admin center, create a Windows 10 device profile. B. From Azure AD, add an app registration. B. From Azure AD, add an app registration. D. From the Microsoft Intune admin center, add an app. 12 / 15 Category: Microsoft 365 Endpoint Administrator (MD-102) 12. You have a Microsoft 365 E5 subscription that contains a user named User1 and a web app named App1. App1 must only accept modern authentication requests. You plan to create a Conditional Access policy named CAPolicy1 that will have the following settings: Assignments – Users or workload identities: User1 Cloud apps or actions: App1 – Access controls – Grant: Block access – You need to block only legacy authentication requests to App1. Which condition should you add to CAPolicy1? A. Filter for devices B. Device platforms C. User risk D. Sign-in risk E. Client apps 13 / 15 Category: Microsoft 365 Endpoint Administrator (MD-102) 13. You have a Microsoft 365 E5 subscription that contains 100 iOS devices enrolled in Microsoft Intune. You need to deploy a custom line-of-business (LOB) app to the devices by using Intune. Which extension should you select for the app package file? A. .intunemac B. .ipa C. .apk D. .appx 14 / 15 Category: Microsoft 365 Endpoint Administrator (MD-102) 14. You have a Microsoft 365 subscription that uses Microsoft Intune Suite. You use Microsoft Intune to manage devices. You plan to deploy two apps named App1 and App2 to all Windows devices. App1 must be installed before App2. From the Intune admin center, you create and deploy two Windows app (Win32) apps. You need to ensure that App1 is installed before App2 on every device. What should you configure? A. the App1 deployment configurations B. a dynamic device group C. a detection rule D. the App2 deployment configurations 15 / 15 Category: Microsoft 365 Endpoint Administrator (MD-102) 15. You have a Microsoft 365 E5 subscription and 25 Apple iPads. You need to enroll the iPads in Microsoft Intune by using the Apple Configurator enrollment method. What should you do first? A. Configure an Apply MDM push certificate. B. Add your user account as a device enrollment manager (DEM). C. Modify the enrollment restrictions. D. Upload a file that has the device identifiers for each iPad. Your score is 0% Restart quiz Send feedback