Complete list of current Q & A>> Download Microsoft Identity and Access Administrator (SC-300) – Quiz 1 / 15 Category: Microsoft Identity and Access Administrator (SC-300) 1. You have an Azure AD tenant that contains a user named User1. User1 needs to manage license assignments and reset user passwords. Which role should you assign to User1? A. Helpdesk administrator B. Billing administrator C. License administrator D. User administrator 2 / 15 Category: Microsoft Identity and Access Administrator (SC-300) 2. Your network contains an on-premises Active Directory domain that syncs to an Azure Active Directory (Azure AD) tenant. Users sign in to computers that run Windows 10 and are joined to the domain. You plan to implement Azure AD Seamless Single Sign-On (Azure AD Seamless SSO). You need to configure the Windows 10 computers to support Azure AD Seamless SSO. What should you do? A. Configure Sign-in options from the Settings app. B. Enable Enterprise State Roaming. C. Modify the Local intranet Zone settings. D. Install the Azure AD Connect Authentication Agent. 3 / 15 Category: Microsoft Identity and Access Administrator (SC-300) 3. You have an Azure Active Directory (Azure AD) tenant that: contains a user named User1. You need to ensure that User1 can create new catalogs and add1 resources to the catalogs they own. What should you do? A. From the Roles and administrators blade, modify the Groups administrator role. B. From the Roles and administrators blade, modify the Service support administrator role. C. From the Identity Governance blade, modify the Entitlement management settings. D. From the Identity Governance blade, modify the roles and administrators for the General catalog. 4 / 15 Category: Microsoft Identity and Access Administrator (SC-300) 4. You have an Azure Active Directory (Azure AD) Azure AD tenant. You need to bulk create 25 new user accounts by uploading a template file. Which properties are required in the template file? A. displayName, identityIssuer, usageLocation, and userType B. accountEnabled, givenName, surname, and userPrincipalName C. accountEnabled, displayName, userPrincipalName, and passwordProfile D. accountEnabled, passwordProfile, usageLocation, and userPrincipalName 5 / 15 Category: Microsoft Identity and Access Administrator (SC-300) 5. You have a Microsoft Entra tenant named contoso.com that contains an enterprise application named App1. A contractor uses the credentials of user1@outlook.com. You need to ensure that you can provide the contractor with access to App1. The contractor must be able to authenticate as user1@outlook.com. What should you do? A. Implement Microsoft Entra Connect sync. B. Add a custom domain name to contoso.com. C. Implement Microsoft Entra Application Proxy. D. Run the New-MgInvitation cmdlet. 6 / 15 Category: Microsoft Identity and Access Administrator (SC-300) 6. You have an Azure Active Directory (Azure AD) tenant named contoso.com that contains an Azure AD enterprise application named App1. A contractor uses the credentials of user1@outlook.com. You need to ensure that you can provide the contractor with access to App1. The contractor must be able to authenticate as user1@outlook.com. What should you do? A. Run the New-AzureADMSInvitation cmdlet. B. Configure the External collaboration settings. C. Add a WS-Fed identity provider. D. Implement Azure AD Connect. 7 / 15 Category: Microsoft Identity and Access Administrator (SC-300) 7. You have a Microsoft 365 subscription. You need to ensure that when users access the Microsoft 365 portal from Microsoft Edge and have their browser language set to Spanish, they are presented with a Spanish sign-in form. What should you do in the Microsoft Entra admin center? A. From Settings for the users, configure the Usage location setting. B. From Global Secure Access, configure the Session management settings. C. Configure the Company branding settings. D. Create a Conditional Access policy. 8 / 15 Category: Microsoft Identity and Access Administrator (SC-300) 8. You have an Azure Active Directory (Azure AD) tenant named contoso.com. You need to ensure that Azure AD External Identities pricing is based on monthly active users (MAU). What should you configure? A. a user flow B. the terms of use C. a linked subscription D. an access review 9 / 15 Category: Microsoft Identity and Access Administrator (SC-300) 9. Your network contains an Active Directory forest named contoso.com that is linked to an Azure Active Directory (Azure AD) tenant named contoso.com by using Azure AD Connect. You need to prevent the synchronization of users who have the extensionAttribute15 attribute set to NoSync. What should you do in Azure AD Connect? A. Create an inbound synchronization rule for the Windows Azure Active Directory connector. B. Configure a Full Import run profile. C. Create an inbound synchronization rule for the Active Directory Domain Services connector. D. Configure an Export run profile. 10 / 15 Category: Microsoft Identity and Access Administrator (SC-300) 10. You have an Azure Active Directory (Azure AD) tenant named contoso.com that contains an Azure AD enterprise application named App1. A contractor uses the credentials of user1@outlook.com. You need to ensure that you can provide the contractor with access to App1. The contractor must be able to authenticate as user1@outlook.com. What should you do? A. Run the New-AzADUser cmdlet. B. Configure the External collaboration settings. C. Add a WS-Fed identity provider. D. Create a guest user account in contoso.com. 11 / 15 Category: Microsoft Identity and Access Administrator (SC-300) 11. You have an Azure Active Directory (Azure AD) tenant named contoso.com. You plan to bulk invite Azure AD business-to-business (B2B) collaboration users. Which two parameters must you include when you create the bulk invite? A. email address B. redirection URL C. username D. shared key E. password 12 / 15 Category: Microsoft Identity and Access Administrator (SC-300) 12. You have 2,500 users who are assigned Microsoft Office 365 Enterprise E3 licenses. The licenses are assigned to individual users. From the Groups blade in the Azure Active Directory admin center, you assign Microsoft 365 Enterprise E5 licenses to the users. You need to remove the Office 365 Enterprise E3 licenses from the users by using the least amount of administrative effort. What should you use? A. the Identity Governance blade in the Azure Active Directory admin center B. the Set-AzureAdUser cmdlet C. the Licenses blade in the Azure Active Directory admin center D. the Set-WindowsProductKey cmdlet 13 / 15 Category: Microsoft Identity and Access Administrator (SC-300) 13. You have a Microsoft Exchange organization that uses an SMTP address space of contoso.com. Several users use their contoso.com email address for self-service sign-up to Azure Active Directory (Azure AD). You gain global administrator privileges to the Azure AD tenant that contains the self-signed users. You need to prevent the users from creating user accounts in the contoso.com Azure AD tenant for self-service sign-up to Microsoft 365 services. Which PowerShell cmdlet should you run? A. Set-MsolCompanySettings B. Set-MsolDomainFederationSettings C. Update-MsolfederatedDomain D. Set-MsolDomain 14 / 15 Category: Microsoft Identity and Access Administrator (SC-300) 14. You have 2,500 users who are assigned Microsoft Office 365 Enterprise E3 licenses. The licenses are assigned to individual users. From the Groups blade in the Azure Active Directory admin center, you assign Microsoft Office 365 Enterprise E5 licenses to a group that includes all users. You needed to remove the Office 365 Enterprise E3 licenses from the users by using the least amount of administrative effort. What should you use? A. the Groups blade in the Azure Active Directory admin center B. the Set-AzureADGroup cmdlet C. the Identity Governance blade in the Azure Active Directory admin center D. the Set-MsolUserLicense cmdlet 15 / 15 Category: Microsoft Identity and Access Administrator (SC-300) 15. You have a Microsoft Entra tenant named contoso.com that contains an enterprise application named App1. A contractor uses the credentials of user1@outlook.com. You need to ensure that you can provide the contractor with access to App1. The contractor must be able to authenticate as user1@outlook.com. What should you do? A. Run the New-MgUser cmdlet. B. Run the New-MgInvitation cmdlet. C. Configure the External collaboration settings. D. Implement Microsoft Entra Connect sync. Your score is 0% Restart quiz Send feedback