{"id":16821,"date":"2026-09-19T11:24:26","date_gmt":"2026-09-19T11:24:26","guid":{"rendered":"https:\/\/www.examlabs.com\/certification\/?p=16821"},"modified":"2026-09-19T11:24:26","modified_gmt":"2026-09-19T11:24:26","slug":"microsoft-ms-102-practice-test-questions-and-exam-dumps-part12-q221-240","status":"publish","type":"post","link":"https:\/\/www.examlabs.com\/certification\/microsoft-ms-102-practice-test-questions-and-exam-dumps-part12-q221-240\/","title":{"rendered":"Microsoft MS-102 Practice Test Questions and Exam Dumps Part12 Q221-240"},"content":{"rendered":"<h1><\/h1>\n<h2><b>View Full <\/b><a href=\"https:\/\/www.examlabs.com\/ms-102-exam-dumps\"><b>Microsoft MS-102 Exam Dumps<\/b><\/a><b> and Practice Test Dumps.<\/b><\/h2>\n<h3><b>Question 221<\/b><\/h3>\n<p><b>Which Microsoft 365 capability allows administrators to review recommendations for improving tenant security?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Purview eDiscovery<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Secure Score<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Exchange Online Archive<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Bookings<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft Secure Score provides organizations with an assessment of their security posture and recommended improvement actions. Administrators can review these recommendations and determine which changes are appropriate for their environment. The recommendations may cover identity, device, data, applications, and other security areas. Purview eDiscovery supports investigations, Exchange Online Archive manages mailbox storage, and Bookings handles appointment scheduling. Secure Score is therefore the Microsoft 365 capability specifically designed to provide security improvement guidance and help administrators monitor progress toward stronger security controls.<\/span><\/p>\n<h3><b>Question 222<\/b><\/h3>\n<p><b>An administrator needs to create a policy that blocks sign-ins from a specific country. Which feature should be configured?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Entra Conditional Access<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Purview Audit<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Exchange Online Protection<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft 365 group expiration<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft Entra Conditional Access can use location conditions to apply access controls to users based on the geographic origin of a sign-in. Administrators can define named locations and create policies that allow or block access according to organizational requirements. This can be useful when access from certain countries or regions should be restricted. Purview Audit records activities, Exchange Online Protection protects email, and group expiration manages collaborative resources. Conditional Access is therefore the appropriate feature for implementing a location-based sign-in restriction.<\/span><\/p>\n<h3><b>Question 223<\/b><\/h3>\n<p><b>What is the purpose of a Microsoft 365 group?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">To scan email attachments<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">To provide collaborative membership-based access to supported Microsoft 365 resources<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">To authenticate DNS records<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">To manage Windows updates<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">A Microsoft 365 group provides a membership-based collaboration model that can support shared resources such as conversations, calendars, files, and other connected Microsoft 365 services. Group membership can be managed centrally, and the associated resources are designed to facilitate collaboration among members. Attachment scanning is handled by security services, DNS authentication uses technologies such as SPF, DKIM, and DMARC, and Windows update management is associated with endpoint-management capabilities. Microsoft 365 groups are therefore primarily intended to support collaboration around shared organizational resources.<\/span><\/p>\n<h3><b>Question 224<\/b><\/h3>\n<p><b>Which Microsoft 365 feature can be used to investigate potentially malicious URLs delivered through email?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Safe Links<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Purview retention<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Entra Cloud Sync<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Exchange mailbox archive<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Safe Links is a Microsoft Defender for Office 365 capability designed to help protect users from malicious or suspicious URLs. It can evaluate links when users interact with them and apply organizationally configured protection policies. This helps reduce the risk associated with phishing and other attacks that rely on malicious web destinations. Purview retention manages information lifecycle, Entra Cloud Sync synchronizes identities, and mailbox archiving manages storage. Safe Links is therefore the Microsoft 365 security feature most directly associated with protecting users from malicious URLs.<\/span><\/p>\n<h3><b>Question 225<\/b><\/h3>\n<p><b>An organization wants administrators to receive notifications when Microsoft 365 service incidents change status. Which resource should they monitor?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft 365 Service Health<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Entra access reviews<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Purview eDiscovery<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Intune<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft 365 Service Health provides information about active service incidents and advisories, including status updates as Microsoft investigates and resolves issues. Administrators can use this information to understand whether an observed problem is related to a known Microsoft service event and monitor its progress. Access reviews evaluate permissions, eDiscovery supports investigations, and Intune manages devices and applications. Service Health is therefore the appropriate resource for monitoring Microsoft 365 service incidents and their updates.<\/span><\/p>\n<h3><b>Question 226<\/b><\/h3>\n<p><b>Which Microsoft Entra feature can help automatically remove inactive guest access after an organizational review?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Secure Score<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Access reviews<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Exchange Online Protection<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">DKIM<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft Entra access reviews can be configured to periodically evaluate guest access and, depending on the supported scenario and configuration, apply review decisions to access assignments. This helps organizations prevent external users from retaining access indefinitely after their business need has ended. Secure Score provides security recommendations, Exchange Online Protection protects email, and DKIM authenticates email using cryptographic signatures. Access reviews are therefore the appropriate governance mechanism for recurring evaluation and cleanup of guest access.<\/span><\/p>\n<h3><b>Question 227<\/b><\/h3>\n<p><b>Which Microsoft 365 administrative role is focused on managing user accounts and groups?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Exchange Administrator<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Global Reader<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">User Administrator<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Compliance Administrator<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The User Administrator role provides administrative permissions related to managing users and groups within Microsoft Entra and Microsoft 365, subject to the role&#8217;s defined scope and permissions. This role can be useful when helpdesk or identity administrators need broader user-management capabilities without receiving the extensive permissions of Global Administrator. Exchange Administrator focuses on Exchange Online, Global Reader provides read-only access, and compliance-focused roles handle governance tasks. User Administrator is therefore the most directly relevant role for routine user and group administration.<\/span><\/p>\n<h3><b>Question 228<\/b><\/h3>\n<p><b>Which Microsoft Purview capability supports searching and reviewing content collected for an investigation?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Purview eDiscovery<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Secure Score<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Safe Attachments<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Entra ID Protection<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft Purview eDiscovery provides tools for managing electronic information involved in investigations. Depending on the eDiscovery capabilities available to the organization, authorized users can create cases, identify relevant information, collect content, and review material associated with legal, regulatory, or internal investigations. Secure Score evaluates security posture, Safe Attachments protects against malicious files, and Entra ID Protection addresses identity risks. eDiscovery is therefore the Microsoft Purview capability most directly associated with searching and reviewing information relevant to an investigation.<\/span><\/p>\n<h3><b>Question 229<\/b><\/h3>\n<p><b>A company wants to identify whether a user&#8217;s sign-in has an elevated risk level before granting access. Which capability is relevant?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Entra ID Protection<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Exchange Online Archive<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Forms<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">SharePoint Version History<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft Entra ID Protection provides risk detection capabilities for users and sign-ins. It can evaluate available signals and identify authentication activity that may indicate increased identity risk. These risk signals can be used with other Microsoft Entra security controls, including Conditional Access, to determine appropriate access requirements. Exchange Online Archive manages mailbox storage, Microsoft Forms supports form creation, and SharePoint Version History tracks document changes. Entra ID Protection is therefore the capability most directly associated with identifying risky sign-in activity.<\/span><\/p>\n<h3><b>Question 230<\/b><\/h3>\n<p><b>Which technology allows an organization to publish a policy describing which servers may send email for its domain?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">DKIM<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">SPF<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">DMARC<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Purview DLP<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Sender Policy Framework (SPF) allows a domain owner to publish information identifying authorized email-sending sources. The SPF policy is normally published as a DNS TXT record, and receiving mail systems can evaluate the sending source against the published policy. DKIM provides cryptographic signatures, while DMARC builds on authentication results and allows domain owners to specify handling policies and receive reports. Purview DLP protects sensitive information. SPF is therefore the technology specifically used to publish authorized email-sending sources for a domain.<\/span><\/p>\n<h3><b>Question 231<\/b><\/h3>\n<p><b>Which feature can help an organization protect administrative accounts by requiring stronger authentication for privileged users?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft 365 group expiration<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Entra Conditional Access<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Exchange message trace<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Purview retention<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft Entra Conditional Access can apply stronger authentication requirements to selected users, groups, applications, and access scenarios. Organizations can create policies requiring multifactor authentication for privileged administrative accounts, helping protect highly sensitive identities against password-based compromise. Group expiration manages collaboration resources, message trace investigates email delivery, and Purview retention manages data lifecycle requirements. Conditional Access is therefore a key Microsoft Entra capability for enforcing stronger authentication requirements on privileged users.<\/span><\/p>\n<h3><b>Question 232<\/b><\/h3>\n<p><b>An organization wants to prevent users from accessing Microsoft 365 applications from devices that fail its compliance requirements. What should be integrated with Conditional Access?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Intune<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Forms<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Exchange Online Protection<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Purview Audit<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft Intune can evaluate device compliance according to organizational policies, while Microsoft Entra Conditional Access can use that compliance status when making access decisions. For example, an organization can require a device to meet defined security requirements before allowing access to selected Microsoft 365 applications. Forms is a productivity service, Exchange Online Protection protects email, and Purview Audit records activities. Integrating Intune compliance with Conditional Access therefore provides a mechanism for restricting access when devices do not meet organizational security requirements.<\/span><\/p>\n<h3><b>Question 233<\/b><\/h3>\n<p><b>Which feature is most appropriate for identifying who changed a Microsoft 365 configuration setting?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Purview Audit<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Secure Score<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft 365 Service Health<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Safe Links<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft Purview Audit records supported activities performed by users and administrators across Microsoft 365 services. When a configuration change is recorded, audit information can help administrators determine which account performed the action and when it occurred. This supports accountability, troubleshooting, compliance investigations, and security reviews. Secure Score provides security recommendations, Service Health reports service incidents, and Safe Links protects against malicious URLs. Purview Audit is therefore the most appropriate capability for investigating who made a recorded Microsoft 365 configuration change.<\/span><\/p>\n<h3><b>Question 234<\/b><\/h3>\n<p><b>What is the main purpose of DMARC?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">To synchronize passwords<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">To manage device compliance<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">To define how receiving systems should handle messages that fail domain authentication checks<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">To archive Exchange mailboxes<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Domain-based Message Authentication, Reporting, and Conformance (DMARC) allows a domain owner to publish a policy describing how receiving mail systems should handle messages that do not pass required authentication alignment checks. DMARC works with SPF and DKIM and can also provide reporting information. Password synchronization, device compliance, and mailbox archiving are unrelated functions. DMARC is therefore primarily used to establish domain-level email authentication policy and reporting, helping organizations manage messages that fail the configured authentication requirements.<\/span><\/p>\n<h3><b>Question 235<\/b><\/h3>\n<p><b>Which Microsoft 365 service can provide a centralized view of security incidents across supported Defender products?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Defender XDR<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft 365 admin center<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Purview portal<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Teams admin center<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft Defender XDR provides an integrated security experience that can correlate signals and incidents across supported Microsoft Defender products. This enables security teams to investigate related alerts in a broader context and coordinate response activities. The Microsoft 365 admin center provides general tenant administration, Purview focuses on compliance and governance, and Teams admin center manages Teams settings. Defender XDR is therefore the service designed to provide a consolidated security investigation and incident-response experience across supported Defender workloads.<\/span><\/p>\n<h3><b>Question 236<\/b><\/h3>\n<p><b>An organization needs to retain certain documents for seven years according to internal requirements. Which capability should be considered?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Purview retention<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Entra Cloud Sync<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Safe Links<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Exchange message trace<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft Purview retention capabilities allow organizations to establish rules for how long supported content should be retained and how it should be handled during its lifecycle. A retention requirement such as seven years can be implemented through appropriate retention policies or labels, depending on the content and organizational scenario. Entra Cloud Sync handles identity synchronization, Safe Links protects against malicious URLs, and message trace investigates email processing. Purview retention is therefore the appropriate capability for implementing defined document-retention requirements.<\/span><\/p>\n<h3><b>Question 237<\/b><\/h3>\n<p><b>Which role would normally be more appropriate than Global Administrator for someone responsible only for Microsoft 365 compliance administration?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Exchange Administrator<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Compliance Administrator<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Global Reader<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">User Administrator<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The Compliance Administrator role provides permissions focused on compliance-related administrative tasks without requiring the broad tenant-wide privileges associated with Global Administrator. Using a specialized role supports least privilege by aligning permissions with the administrator&#8217;s actual responsibilities. Exchange Administrator manages Exchange Online, Global Reader provides read-only visibility, and User Administrator focuses on users and groups. For an administrator whose responsibilities center on Microsoft 365 compliance functions, the Compliance Administrator role is therefore more appropriately scoped than granting unrestricted Global Administrator access.<\/span><\/p>\n<h3><b>Question 238<\/b><\/h3>\n<p><b>Which Microsoft 365 feature can help administrators determine whether users are actively using assigned services?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft 365 usage reports<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Purview Audit<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Safe Attachments<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Entra ID Protection<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft 365 usage reports provide information about service and user activity across supported workloads. Administrators can use these reports to understand adoption, identify inactive users, observe service utilization, and support decisions about Microsoft 365 administration. Purview Audit is focused on detailed activity records, Safe Attachments protects against malicious files, and Entra ID Protection identifies identity risks. Usage reports are therefore the appropriate resource when administrators need a broader view of whether users are actively using assigned Microsoft 365 services.<\/span><\/p>\n<h3><b>Question 239<\/b><\/h3>\n<p><b>An administrator wants to restrict access to a cloud application unless the user completes multifactor authentication. Which feature should be configured?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Purview Audit<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Entra Conditional Access<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Exchange Online Protection<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft 365 Service Health<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft Entra Conditional Access can require multifactor authentication for access to selected cloud applications. Administrators can define policies based on users, groups, applications, locations, devices, risk, and other supported conditions, then specify MFA as an access control. This allows authentication requirements to be applied selectively rather than universally. Purview Audit records activity, Exchange Online Protection protects email, and Service Health reports Microsoft service incidents. Conditional Access is therefore the appropriate feature for requiring MFA before users can access a specified cloud application.<\/span><\/p>\n<h3><b>Question 240<\/b><\/h3>\n<p><b>Which practice provides stronger accountability for privileged Microsoft 365 administration?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Sharing one Global Administrator account among the IT team<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Giving all support staff unrestricted administrative access<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Using individual administrator accounts with appropriate roles and auditing<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Disabling audit records for administrators<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Using individual administrative accounts with appropriately scoped roles and maintaining audit records provides stronger accountability for privileged Microsoft 365 administration. Individual accounts allow actions to be associated with specific administrators, while role-based permissions help limit unnecessary access. Audit records can then support investigation and review when changes occur. Shared privileged accounts reduce accountability, unrestricted permissions increase exposure, and disabling audit records removes valuable evidence. Individual identities, least-privilege role assignments, and auditing therefore form an important combination for accountable Microsoft 365 administration.<\/span><\/p>\n<p>&nbsp;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>View Full Microsoft MS-102 Exam Dumps and Practice Test Dumps. Question 221 Which Microsoft 365 capability allows administrators to review recommendations for improving tenant security? Microsoft Purview eDiscovery Microsoft Secure Score Exchange Online Archive Microsoft Bookings Correct Answer: 2 Explanation Microsoft Secure Score provides organizations with an assessment of their security posture and recommended improvement [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":[],"categories":[1648,1647],"tags":[],"_links":{"self":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts\/16821"}],"collection":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/comments?post=16821"}],"version-history":[{"count":1,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts\/16821\/revisions"}],"predecessor-version":[{"id":16838,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts\/16821\/revisions\/16838"}],"wp:attachment":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/media?parent=16821"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/categories?post=16821"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/tags?post=16821"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}