DRAG DROP
-
Match the pillars of Zero Trust to the appropriate requirements.
To answer, drag the appropriate pillar from the column on the left to its requirement on the right. Each pillar may be used once, more than once, or not at all.
NOTE: Each correct match is worth one point.
Show Answer
Correct Answer: Networks → Must be segmented
Identities → Must be verified by using strong authentication
Data → Must be classified, labeled, and encrypted based on its attributes
Explanation: Zero Trust segments networks to limit lateral movement, verifies identities with strong authentication, and protects data through classification, labeling, and encryption.
Question 104
Which compliance feature should you use to identify documents that are employee resumes?
A. pre-trained classifiers
B. Activity explorer
C. eDiscovery
D. Content explorer
Show Answer
Correct Answer: A
Explanation: Microsoft Purview provides a built-in pre-trained (trainable) classifier specifically designed to detect resume documents. These classifiers analyze document content and structure to automatically identify employee or applicant resumes, unlike Activity explorer, eDiscovery, or Content explorer, which are used for investigation and reporting rather than classification.
Question 105
HOTSPOT -
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Hot Area:
Show Answer
Correct Answer: No
Yes
Yes
Explanation: Microsoft Sentinel supports data connectors for both Microsoft and non-Microsoft services. Azure Monitor Workbooks can be used to visualize and monitor data collected by Microsoft Sentinel. Hunting in Microsoft Sentinel enables proactive identification of potential security threats before alerts are triggered.
Question 106
What are three uses of Microsoft Cloud App Security? Each correct answer presents a complete solution.
NOTE: Each correct selection is worth one point.
A. to discover and control the use of shadow IT
B. to provide secure connections to Azure virtual machines
C. to protect sensitive information hosted anywhere in the cloud
D. to provide pass-through authentication to on-premises applications
E. to prevent data leaks to noncompliant apps and limit access to regulated data
Show Answer
Correct Answer: A, C, E
Explanation: Microsoft Cloud App Security (now Microsoft Defender for Cloud Apps) is used to discover and control Shadow IT, protect sensitive information across cloud services using DLP and governance controls, and prevent data leaks to noncompliant apps while limiting access to regulated data. It does not provide VM connectivity or pass-through authentication.
Question 108
Which type of alert can you manage from the Microsoft 365 Defender portal?
A. Microsoft Defender for Storage
B. Microsoft Defender for SQL
C. Microsoft Defender for Endpoint
D. Microsoft Defender for IoT
Show Answer
Correct Answer: C
Explanation: The Microsoft 365 Defender portal is used to investigate and manage alerts from integrated Microsoft 365 security products, including Microsoft Defender for Endpoint. Defender for Storage, SQL, and IoT are managed primarily through Microsoft Defender for Cloud or other portals, not directly from the Microsoft 365 Defender portal.
Question 109
What should you use to ensure that the members of an Azure Active Directory group use multi-factor authentication (MFA) when they sign in?
A. Azure role-based access control (Azure RBAC)
B. Azure Active Directory (Azure AD) Privileged Identity Management (PIM)
C. Azure Active Directory (Azure AD) Identity Protection
D. a conditional access policy
Show Answer
Correct Answer: D
Explanation: To require members of an Azure AD group to use multi-factor authentication at sign-in, you must use a Conditional Access policy. Conditional Access is the Azure AD feature designed to enforce MFA based on users or groups, applications, and sign-in conditions. Azure RBAC controls authorization, PIM manages privileged role activation, and Identity Protection focuses on risk detection rather than enforcing MFA directly for a group.
Question 110
HOTSPOT -
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Hot Area:
Show Answer
Correct Answer: Yes
Yes
Yes
Explanation: Microsoft Defender for Cloud secure score increases when recommended actions are implemented. Applying system updates and enabling MFA are tracked security controls that improve the score. Secure score can also aggregate and evaluate resources across multiple Azure subscriptions.
Question 111
Which two Azure resources can a network security group (NSG) be associated with? Each correct answer presents a complete solution.
NOTE: Each correct selection is worth one point.
A. a virtual network subnet
B. a network interface
C. a resource group
D. a virtual network
E. an Azure App Service web app
Show Answer
Correct Answer: A, B
Explanation: An Azure Network Security Group can be associated only with a virtual network subnet or with a network interface. It cannot be associated with a resource group, an entire virtual network, or an Azure App Service.
Question 112
What can you use to provide threat detection for Azure SQL Managed Instance?
A. Microsoft Secure Score
B. application security groups
C. Microsoft Defender for Cloud
D. Azure Bastion
Show Answer
Correct Answer: C
Explanation: Threat detection for Azure SQL Managed Instance is provided by Microsoft Defender for Cloud through its Microsoft Defender for SQL plan, which detects anomalous activities, potential threats, and vulnerabilities in SQL databases. The other options do not provide SQL threat detection.
Question 113
What can you use to view the Microsoft Secure Score for Devices?
A. Microsoft Defender for Cloud Apps
B. Microsoft Defender for Endpoint
C. Microsoft Defender for Identity
D. Microsoft Defender for Office 365
Show Answer
Correct Answer: B
Explanation: Microsoft Secure Score for Devices is viewed through Microsoft Defender for Endpoint. Device security posture and secure score data are surfaced via Defender for Endpoint (including the Defender Vulnerability Management dashboard) within the Microsoft 365 Defender portal. Other Defender products focus on apps, identity, or email rather than device endpoints.
$19
Get all 224 questions with detailed answers and explanations
Instant download HTML + PDF delivered the moment payment clears.
Secure Stripe checkout we never see or store your card details.
7-day refund if files are defective see our refund policy.