View Full Microsoft MS-102 Exam Dumps and Practice Test Dumps.
Question 241
Which Microsoft 365 capability helps administrators manage the organization’s subscriptions and available licenses?
- Microsoft 365 admin center
- Microsoft Defender XDR
- Microsoft Purview Audit
- Microsoft Intune
Correct Answer: 1
Explanation
The Microsoft 365 admin center provides administrative controls for managing subscriptions, licenses, users, and other tenant-level resources. Administrators can review available subscriptions, assign licenses to users, and monitor licensing-related information according to their permissions. Defender XDR focuses on security operations, Purview Audit records activities, and Intune manages devices and applications. License administration is therefore primarily performed through the Microsoft 365 admin center. Proper license management also helps organizations ensure that users receive the service capabilities required for their assigned responsibilities without unnecessarily assigning additional licenses.
Question 242
A company wants to synchronize only selected organizational units from its on-premises directory with Microsoft Entra ID. Which identity synchronization approach can support this requirement?
- Microsoft Purview DLP
- Microsoft Entra Cloud Sync
- Microsoft Defender XDR
- Exchange Online Protection
Correct Answer: 2
Explanation
Microsoft Entra Cloud Sync supports hybrid identity synchronization and can be configured to synchronize selected users and groups according to the organization’s directory requirements. Its agent-based architecture provides a cloud-managed approach for connecting an on-premises Active Directory environment with Microsoft Entra ID. Purview DLP protects sensitive information, Defender XDR handles security investigations, and Exchange Online Protection protects email. Cloud Sync is therefore the relevant identity-management technology when an organization needs controlled synchronization between its on-premises directory and Microsoft Entra ID.
Question 243
Which Microsoft 365 feature can help protect email links when users click them?
- Safe Attachments
- Microsoft Secure Score
- Safe Links
- Microsoft Purview Audit
Correct Answer: 3
Explanation
Safe Links is designed to help protect users from malicious URLs delivered through supported Microsoft 365 services. It can evaluate links when users interact with them and apply protection according to configured organizational policies. This is particularly useful against phishing campaigns and messages containing links to malicious websites. Safe Attachments focuses on potentially harmful files, Secure Score provides security recommendations, and Purview Audit records activities. Safe Links is therefore the appropriate Microsoft 365 security capability when the primary concern is protection against malicious URLs.
Question 244
Which Microsoft Entra role provides broad administrative control over the Microsoft 365 tenant?
- Global Reader
- Exchange Administrator
- User Administrator
- Global Administrator
Correct Answer: 4
Explanation
The Global Administrator role provides extensive administrative permissions across Microsoft 365 and Microsoft Entra environments. It can manage many tenant-wide settings and services and therefore represents a highly privileged administrative role. Global Reader provides broad read-only visibility, Exchange Administrator focuses on Exchange Online, and User Administrator concentrates on user-related management. Because Global Administrator has significant authority, organizations should carefully control assignments to this role and use more specialized roles whenever administrators only require limited workload-specific permissions.
Question 245
An administrator needs to investigate whether a user downloaded a document from OneDrive. Which capability is most relevant?
- Microsoft Purview Audit
- Microsoft Secure Score
- Exchange Online Protection
- Microsoft Entra Cloud Sync
Correct Answer: 1
Explanation
Microsoft Purview Audit can record supported activities involving OneDrive and other Microsoft 365 workloads. Audit searches can help administrators investigate events such as file access, sharing, downloading, modification, and other recorded actions. This makes Purview Audit useful when an organization needs to establish whether a particular file-related activity occurred and identify the associated account. Secure Score evaluates security posture, Exchange Online Protection protects email, and Cloud Sync synchronizes identities. Purview Audit is therefore the most relevant capability for investigating a recorded OneDrive download event.
Question 246
Which feature can be used to control whether users are allowed to register or join devices with Microsoft Entra ID?
- Microsoft Purview retention
- Microsoft Entra device settings
- Exchange message trace
- Safe Attachments
Correct Answer: 2
Explanation
Microsoft Entra device settings provide administrative controls related to device registration and joining scenarios. Organizations can configure settings that determine who is allowed to join devices to Microsoft Entra ID and manage related device behavior. These controls are useful when an organization wants to limit which users can associate devices with its cloud identity environment. Purview retention governs information lifecycle, message trace investigates email processing, and Safe Attachments protects against malicious files. Device settings are therefore the relevant Microsoft Entra capability for controlling device registration and joining.
Question 247
What is the main purpose of Microsoft Entra administrative units?
- To provide email malware filtering
- To create DNS authentication records
- To scope administrative permissions to a specific subset of users or groups
- To retain SharePoint documents
Correct Answer: 3
Explanation
Microsoft Entra administrative units allow organizations to scope certain administrative responsibilities to a defined subset of directory objects. For example, an organization with multiple departments or geographic divisions can delegate administration over particular users or groups without granting the administrator control over the entire directory. This can support decentralized administration and least-privilege principles. Email filtering, DNS authentication, and SharePoint retention are separate functions. Administrative units are therefore useful when administrators need controlled management boundaries within a larger Microsoft Entra directory.
Question 248
A company wants to protect Microsoft 365 accounts against password-spray attacks. Which capability can help detect risky authentication activity?
- Microsoft Entra ID Protection
- Microsoft 365 group expiration
- Microsoft Purview eDiscovery
- Exchange Online Archive
Correct Answer: 1
Explanation
Microsoft Entra ID Protection provides risk detection capabilities that can identify suspicious authentication activity and other identity-related signals. Password-spray attacks can generate unusual or risky sign-in patterns that may contribute to identity risk detections. Administrators can use these risk signals with appropriate Microsoft Entra security controls to investigate and respond to potentially compromised accounts. Group expiration manages collaboration lifecycle, eDiscovery supports investigations, and Exchange Online Archive handles mailbox storage. Entra ID Protection is therefore the relevant capability for detecting identity-related risks associated with suspicious authentication behavior.
Question 249
Which Microsoft Purview capability allows an organization to apply a classification to content and retain it according to defined requirements?
- Microsoft Defender XDR
- Sensitivity and retention labels
- Exchange Online Protection
- Microsoft Entra Cloud Sync
Correct Answer: 2
Explanation
Microsoft Purview labels can help organizations classify and govern information according to its business and compliance requirements. Sensitivity labels focus on information sensitivity and protection, while retention labels can apply data-lifecycle requirements to supported content. Depending on configuration, these capabilities can help organizations apply consistent classification, protection, and retention practices. Defender XDR handles security operations, Exchange Online Protection protects email, and Cloud Sync manages identities. Purview labeling capabilities are therefore appropriate when an organization needs to classify content and apply governance requirements.
Question 250
Which feature can help administrators delegate management of a specific set of users without giving an administrator control over the entire directory?
- Global Administrator
- Microsoft Secure Score
- Microsoft Entra administrative units
- Exchange Online Protection
Correct Answer: 3
Explanation
Microsoft Entra administrative units can create administrative boundaries within the directory. Administrators can be assigned appropriate roles scoped to an administrative unit so that their management permissions apply only to objects within that unit, subject to role and workload support. This can help organizations delegate administration to regional, departmental, or other organizational teams while limiting unnecessary directory-wide access. Global Administrator provides broad tenant control, Secure Score evaluates security posture, and Exchange Online Protection protects email. Administrative units are therefore suited to scoped administrative delegation.
Question 251
Which Microsoft 365 feature can provide users with a warning when they attempt to share sensitive information inappropriately?
- Microsoft Purview DLP
- Microsoft 365 Service Health
- Microsoft Entra Cloud Sync
- Exchange Online Archive
Correct Answer: 1
Explanation
Microsoft Purview Data Loss Prevention policies can detect sensitive information and provide policy tips, alerts, or other configured controls when users perform potentially risky actions. Depending on the workload and policy configuration, users may receive warnings when they attempt to share or handle protected information in a way that conflicts with organizational requirements. Service Health reports service issues, Cloud Sync synchronizes identities, and Exchange Online Archive manages mailbox storage. Purview DLP is therefore the appropriate capability for providing user-facing controls around sensitive-information handling.
Question 252
An administrator needs to review all currently active Microsoft 365 service advisories before making a tenant-wide change. Which resource should be consulted?
- Microsoft Purview Audit
- Microsoft 365 Service Health
- Microsoft Entra access reviews
- Microsoft Intune
Correct Answer: 2
Explanation
Microsoft 365 Service Health provides administrators with information about service incidents and advisories affecting Microsoft 365 services. Reviewing this information before making significant tenant changes can help administrators understand whether an existing Microsoft service issue could affect their operations or troubleshooting efforts. Purview Audit focuses on historical activities, access reviews evaluate permissions, and Intune manages endpoints. Service Health is therefore the appropriate resource for checking current Microsoft 365 service advisories and incidents before proceeding with administrative work.
Question 253
Which Microsoft 365 capability can automatically assign applications to users based on their group membership?
- Microsoft Purview Audit
- Exchange Online Protection
- Microsoft Entra application assignment
- Microsoft Secure Score
Correct Answer: 3
Explanation
Microsoft Entra application assignment allows administrators to control which users or groups have access to enterprise applications. When applications support the relevant assignment model, administrators can assign access to groups so that users receive application access based on group membership. This simplifies administration when access requirements correspond to departments, job functions, or other organizational structures. Purview Audit records activity, Exchange Online Protection protects email, and Secure Score evaluates security posture. Application assignment is therefore the relevant capability for managing application access through group-based assignments.
Question 254
What does a Conditional Access session control help an organization manage?
- How users interact with an application session after authentication
- How DNS records are replicated
- How Exchange mailboxes are archived
- How audit logs are deleted
Correct Answer: 1
Explanation
Conditional Access session controls can influence how users interact with supported cloud applications after authentication. Depending on the application and configuration, session controls can provide additional restrictions or monitoring for activities performed during an authenticated session. These controls complement other Conditional Access conditions and grant controls. DNS replication, mailbox archiving, and audit-record lifecycle are separate administrative functions. Session controls are therefore useful when an organization needs to apply additional security requirements to an application session rather than only deciding whether authentication should be permitted.
Question 255
Which Microsoft 365 feature can help administrators identify accounts that have not signed in recently?
- Microsoft 365 usage reports
- Safe Links
- Exchange mail flow rules
- Microsoft Purview sensitivity labels
Correct Answer: 1
Explanation
Microsoft 365 usage reports can provide information about user activity across supported services, including indicators that help administrators understand whether accounts are actively using Microsoft 365. This information can assist with identifying inactive accounts, reviewing adoption, and supporting administrative decisions. Safe Links protects against malicious URLs, mail flow rules control message processing, and sensitivity labels classify and protect information. Usage reports are therefore the most relevant option when administrators need broader visibility into user activity and account usage patterns.
Question 256
Which Microsoft 365 capability can help identify whether an email was redirected by an Exchange mail flow rule?
- Microsoft Secure Score
- Exchange Online message trace
- Microsoft Intune
- Microsoft Purview retention
Correct Answer: 2
Explanation
Exchange Online message trace provides information about how messages were processed and can help administrators investigate actions that affected message delivery. When troubleshooting a message that may have been redirected, trace information can be combined with the organization’s mail flow rule configuration to determine how the message was handled. Secure Score evaluates security posture, Intune manages devices, and Purview retention manages information lifecycle. Message trace is therefore the appropriate starting point for investigating unexpected email routing or redirection within Exchange Online.
Question 257
Which Microsoft Entra feature allows administrators to review sign-in activity for troubleshooting authentication problems?
- Microsoft Entra sign-in logs
- Microsoft 365 group expiration
- Microsoft Purview DLP
- Exchange Online Archive
Correct Answer: 1
Explanation
Microsoft Entra sign-in logs provide information about authentication attempts and related sign-in details. Administrators can use these logs to investigate successful and failed sign-ins, review authentication conditions, and troubleshoot access problems. Depending on available information and configuration, the logs can provide details such as the user, application, time, location, and authentication status. Group expiration manages collaboration resources, DLP protects sensitive information, and Exchange archiving manages mailbox storage. Sign-in logs are therefore the appropriate resource for investigating authentication activity.
Question 258
An organization wants to require users to register for multifactor authentication before accessing sensitive applications. Which Microsoft Entra capability can support this requirement?
- Exchange Online Protection
- Microsoft Entra Conditional Access
- Microsoft Purview Audit
- Microsoft 365 Service Health
Correct Answer: 2
Explanation
Microsoft Entra Conditional Access can be configured to require multifactor authentication for selected users, groups, applications, or access conditions. Depending on the organization’s configuration, Conditional Access policies can also support scenarios in which users are required to register authentication methods before completing access to protected resources. Exchange Online Protection secures email, Purview Audit records activity, and Service Health reports service incidents. Conditional Access is therefore the relevant Microsoft Entra capability for enforcing stronger authentication requirements around sensitive application access.
Question 259
Which Microsoft Purview capability helps an organization discover and classify sensitive information across supported Microsoft 365 content?
- Microsoft Purview Data Loss Prevention
- Microsoft Purview data classification
- Exchange Online Protection
- Microsoft Entra Cloud Sync
Correct Answer: 2
Explanation
Microsoft Purview data classification capabilities help organizations discover, understand, and classify information across supported data sources. Classification can use mechanisms such as sensitive information types and trainable classifiers to identify different categories of content. These capabilities can then support broader compliance and information-protection strategies. DLP uses detection and policy controls to help prevent inappropriate handling, Exchange Online Protection protects email, and Cloud Sync manages identity synchronization. Data classification is therefore the most directly relevant capability when the goal is discovering and classifying sensitive organizational information.
Question 260
An administrator wants to ensure that privileged accounts receive stronger protection than ordinary user accounts. Which combination is most appropriate?
- Shared administrator credentials and unrestricted roles
- Permanent Global Administrator assignments and no auditing
- Individual privileged accounts, least-privilege roles, MFA, and privileged access controls
- One administrator account used by the entire IT department
Correct Answer: 3
Explanation
Privileged accounts should receive stronger protection because they can make sensitive tenant-wide changes. Using individual administrative identities preserves accountability, while least-privilege roles limit unnecessary permissions. Multifactor authentication adds protection against credential compromise, and privileged access controls such as Microsoft Entra Privileged Identity Management can reduce persistent elevated access. Shared accounts and unrestricted permanent privileges weaken accountability and increase exposure. A combination of individual identities, scoped roles, strong authentication, auditing, and privileged-access controls provides a structured approach to protecting high-impact administrative accounts.