New Year Sale 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 70track

Free Microsoft SC-300 Practice Exam with Questions & Answers | Set: 4

Questions 31

You need to implement the planned changes for litware.com. What should you configure?

Options:
A.

Azure AD Connect cloud sync between the Azure AD tenant and litware.com

B.

Azure AD Connect to include the litware.com domain

C.

staging mode in Azure AD Connect for the litware.com domain

Microsoft SC-300 Premium Access
Questions 32

You need to implement the planned changes for Package1. Which users can create and manage the access review?

Options:
A.

User3 only

B.

User4 only

C.

User5 only

D.

User3 and User4

E.

User3 and User5

F.

User4and User5

Questions 33

You need to modify the settings of the User administrator role to meet the technical requirements. Which two actions should you perform for the role? Each correct answer presents part of the solution. NOTE: Each correct selection is worth one point.

Options:
A.

Select Require justification on activation

B.

Set all assignments to Active

C.

Set all assignments to Eligible

D.

Modify the Expire eligible assignments after setting.

E.

Select Require ticket information on activation.

Questions 34

You have a Microsoft Entra tenant that contains an administrative unit named AU1. AU1 is configured for assigned membership.

The tenant contains the users shown in the following table.

SC-300 Question 34

For AU1, you update the following configurations:

. Membership type: Dynamic User

· Dynamic membership rule: (user.department -eq "hr")

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

SC-300 Question 34

Options:
Questions 35

You have a Microsoft 365 tenant.

In Azure Active Directory (Azure AD), you configure the terms of use.

You need to ensure that only users who accept the terms of use can access the resources in the tenant. Other

users must be denied access.

What should you configure?

Options:
A.

an access policy in Microsoft Cloud App Security.

B.

Terms and conditions in Microsoft Endpoint Manager.

C.

a conditional access policy in Azure AD

D.

a compliance policy in Microsoft Endpoint Manager

Questions 36

You have a Microsoft Entra tenant that has a Microsoft Entra ID P1 license.

You need to review the Microsoft Entra ID sign-in logs to investigate sign-ins that occurred in the past.

For how long does Microsoft Entra ID store events in the sign-in logs?

Options:
A.

14 days

B.

30 days

C.

90days

D.

365 days

Questions 37

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.

After you answer a question in this section, you will NOT be able to return to it as a result, these questions will not appear in the review screen.

You have an Amazon Web Services (AWS) account, a Google Workspace subscription, and a GitHub account.

You deploy an Azure subscription and enable Microsoft 365 Defender.

You need to ensure that you can monitor OAuth authentication requests by using Microsoft Defender for Cloud Apps.

Solution: From the Microsoft 365 Defender portal, you add the Amazon Web Services app connector.

Does this meet the goal?

Options:
A.

Yes

B.

No

Questions 38

You have 2,500 users who are assigned Microsoft Office 365 Enterprise E3 licenses. The licenses are assigned to individual users.

From the Groups blade in the Azure Active Directory admin center, you assign Microsoft 365 Enterprise E5 licenses to the users.

You need to remove the Office 365 Enterprise E3 licenses from the users by using the least amount of administrative effort.

What should you use?

Options:
A.

the Set -KindohsProductKcy cmdlct

B.

the Update-MgGroup cmdlet

C.

the Set-HgUserLicense cmdlet

D.

the Update-MgUser cmdlet

Questions 39

You have an Azure subscription that contains two resource groups named RG1 and RG2, a storage account named storage1.

You assign roles for the subscription as shown in the following table.

SC-300 Question 39

You assign roles for RG1 as shown in the following table.

SC-300 Question 39

You assign roles for storage1 as shown in the following exhibit.

SC-300 Question 39

Roles are NOT assigned for other Azure resources.

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

SC-300 Question 39

Options:
Questions 40

You have an Azure Active Directory (Azure AD) tenant named contoso.com that contains an Azure AD enterprise application named App1.

A contractor uses the credentials of user1@outlook.com.

You need to ensure that you can provide the contractor with access to App1. The contractor must be able to authenticate as user1@outlook.com.

What should you do?

Options:
A.

Run theNew-AzureADMSInvitationcmdlet.

B.

Configure the External collaboration settings.

C.

Add a WS-Fed identity provider.

D.

Implement Azure AD Connect.

Exam Code: SC-300
Certification Provider: Microsoft
Exam Name: Microsoft Identity and Access Administrator
Last Update: Dec 15, 2025
Questions: 343