Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. You have a Microsoft 365 tenant. You have 100 IT administrators who are organized into 10 departments. You create the access review shown in the exhibit. (Click theExhibittab.) 
Q: 1
You have on-premises Linux devices.
You have a Microsoft 365 E5 subscription.
You plan to configure Global Secure Access Internet Access.
You need to ensure that the devices can connect to Global Secure Access.
What should you do?
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 2
Note: This question is part of a series of questions that present the same scenario. Each question in
the series contains a unique solution that might meet the stated goals. Some question setsmight
have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it as a result, these
questions will not appear in the review screen.
You have an Amazon Web Services (AWS) account, a Google Workspace subscription, and a GitHub
account.
You deploy an Azure subscription and enable Microsoft 365 Defender.
You need to ensure that you can monitor OAuth authentication requests by using Microsoft Defender
for Cloud Apps.
Solution: From the Microsoft 365 Defender portal, you add the Google Workspace app connector.
Does this meet the goal?
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 3
You have an Azure subscription that is linked to a Microsoft Entra tenant. The tenant contains a
registered app named App1. You have a partner organization that has a Microsoft Entra tenant. The
tenant contains a registered app named App2. You need to ensure that App1 can access App2.
Which two types of credentials can App1 use? Each correct answer presents a complete solution.
NOTE: Each correct selection is worth one point.
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 4
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 5
You have an Azure AD tenant named Contoso that contains a terms of use (ToU) named Terms1 and
an access package. Contoso users collaborate with an external organization named Fabrikam.
Fabrikam users must accept Terms1 before being allowed to use the access package.
You need to identify which users accepted or declined Terms1.
What should you use?
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 6
You configure a new Microsoft 36S tenant to use a default domain name of contosso.com.
You need to ensure that you can control access to Microsoft 365 resource-, by using conditional
access policy.
What should you do first?
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 7
You need to configure the MFA settings for users who connect from the Boston office. The solution
must meet the authentication requirements and the access requirements.
What should you configure?
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 8
You have an Azure Active Directory (Azure AD) tenant that syncs to an Active Directory domain.
The on-premises network contains a VPN server that authenticates to the on-premises Active
Directory
domain. The VPN server does NOT support Azure Multi-Factor Authentication (MFA).
You need to recommend a solution to provide Azure MFA for VPN connections.
What should you include in the recommendation?
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 9
You have a Microsoft 365 subscription.
You plan to deploy an app named App1 that will have the following configurations:
• Will be registered in Microsoft Entra
• Will run as a service without user interaction
• Will collect audit logs associated with user sign-ins
• Will access resources by using the Microsoft Graph API
You need to ensure that App1 can access Microsoft Graph.
What should you use?
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 10
You have an Azure subscription that contains a resource group named RG1 and four users named
User1, User2, User3, and User4. You plan to assign the users the following roles for RG1:
• User1: Reader
• User2: Contributor
• User3: Storage Blob Data Reader
• User4: Virtual Machine Contributor
You are evaluating the use of attribute-based access control (ABAC). Which user's role will support
the use of ABAC?
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Question 1 of 20 · Page 1 / 2