{"id":16823,"date":"2026-09-19T11:23:52","date_gmt":"2026-09-19T11:23:52","guid":{"rendered":"https:\/\/www.examlabs.com\/certification\/?p=16823"},"modified":"2026-09-19T11:23:52","modified_gmt":"2026-09-19T11:23:52","slug":"microsoft-ms-102-practice-test-questions-and-exam-dumps-part14-q261-280","status":"publish","type":"post","link":"https:\/\/www.examlabs.com\/certification\/microsoft-ms-102-practice-test-questions-and-exam-dumps-part14-q261-280\/","title":{"rendered":"Microsoft MS-102 Practice Test Questions and Exam Dumps Part14 Q261-280"},"content":{"rendered":"<h1><\/h1>\n<h2><b>View Full <\/b><a href=\"https:\/\/www.examlabs.com\/ms-102-exam-dumps\"><b>Microsoft MS-102 Exam Dumps<\/b><\/a><b> and Practice Test Dumps.<\/b><\/h2>\n<p>&nbsp;<\/p>\n<h3><b>Question 261<\/b><\/h3>\n<p><b>Which Microsoft 365 feature is used to manage organizational email authentication policies through Exchange Online?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Exchange Online Protection<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Intune<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Purview eDiscovery<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Entra ID Protection<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Exchange Online Protection provides foundational email security capabilities for Microsoft 365 organizations. It helps protect inbound and outbound email from spam, malware, phishing, and other common threats. Administrators can configure relevant anti-spam, anti-malware, and mail-flow protections according to organizational requirements. Intune manages devices and applications, Purview eDiscovery supports investigations, and Entra ID Protection focuses on identity risks. EOP is therefore the Microsoft 365 service most directly associated with protecting organizational email and supporting secure email-processing policies.<\/span><\/p>\n<h3><b>Question 262<\/b><\/h3>\n<p><b>An administrator needs to determine which users are members of a particular Microsoft 365 group. Which administrative resource can provide this information?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Defender portal<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft 365 admin center<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Purview portal<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Secure Score<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The Microsoft 365 admin center provides administrative capabilities for managing users and groups. Administrators with the appropriate permissions can review group properties, membership, ownership, and other relevant information. This makes the admin center useful for routine Microsoft 365 group-management tasks. Defender is focused on security operations, Purview handles compliance and governance, and Secure Score provides security recommendations. Therefore, when an administrator needs to inspect membership of a Microsoft 365 group as part of routine tenant administration, the Microsoft 365 admin center is an appropriate resource.<\/span><\/p>\n<h3><b>Question 263<\/b><\/h3>\n<p><b>Which Microsoft Entra feature can provide information about failed authentication attempts?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Entra sign-in logs<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Purview Audit<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft 365 Service Health<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Exchange Online Protection<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft Entra sign-in logs provide information about authentication attempts, including successful and failed sign-ins. Administrators can use these records to troubleshoot authentication problems and investigate suspicious sign-in activity. Depending on the available data, administrators can examine information such as the user, application, time, location, and result of the sign-in. Purview Audit records broader Microsoft 365 activities, Service Health reports service issues, and Exchange Online Protection protects email. Sign-in logs are therefore the most directly relevant resource for investigating failed authentication attempts.<\/span><\/p>\n<h3><b>Question 264<\/b><\/h3>\n<p><b>A company wants to prevent users from permanently retaining access to an application after their business need ends. Which approach is appropriate?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Safe Attachments<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Exchange message trace<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Entra access reviews<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Secure Score<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft Entra access reviews can help organizations periodically evaluate whether users should continue to have access to applications and other supported resources. Regular reviews are particularly useful when access is granted to temporary workers, guests, project teams, or other users whose requirements may change over time. Reviewers can evaluate current access and take action according to organizational policies. Safe Attachments protects against malicious files, message trace investigates email processing, and Secure Score provides security recommendations. Access reviews therefore support recurring validation of application access.<\/span><\/p>\n<h3><b>Question 265<\/b><\/h3>\n<p><b>Which Microsoft 365 feature can automatically apply a retention requirement to content based on defined organizational rules?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Defender XDR<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Purview retention policy<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Entra Cloud Sync<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Exchange Online Protection<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft Purview retention policies allow organizations to define how long supported content should be retained and how it should be managed throughout its lifecycle. Policies can apply to selected Microsoft 365 locations and can help organizations meet business, legal, and regulatory requirements. Defender XDR provides security investigation capabilities, Entra Cloud Sync synchronizes identities, and Exchange Online Protection protects email. A Purview retention policy is therefore the appropriate capability when an organization needs to apply systematic retention requirements across supported Microsoft 365 content.<\/span><\/p>\n<h3><b>Question 266<\/b><\/h3>\n<p><b>Which Microsoft 365 feature provides protection against potentially malicious files attached to messages?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Entra Conditional Access<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Purview Audit<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Safe Attachments<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft 365 Service Health<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Safe Attachments is a Microsoft Defender for Office 365 capability designed to help protect users from malicious attachments. It can analyze supported attachments and apply configured protection actions before users interact with potentially harmful content. Conditional Access controls access decisions, Purview Audit records supported activities, and Service Health provides information about Microsoft service incidents. Safe Attachments is therefore the feature specifically associated with analyzing and protecting users from potentially dangerous files delivered through email and supported collaboration workloads.<\/span><\/p>\n<h3><b>Question 267<\/b><\/h3>\n<p><b>An organization wants administrators to manage only Exchange Online settings without receiving tenant-wide permissions. Which role should be assigned?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Exchange Administrator<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Global Administrator<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">User Administrator<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Global Reader<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The Exchange Administrator role provides administrative permissions focused on Exchange Online. Assigning this role instead of Global Administrator helps implement least privilege because the administrator receives permissions appropriate to email-management responsibilities without automatically receiving the broadest tenant-wide privileges. User Administrator focuses on user and group management, while Global Reader provides read-only visibility. Therefore, an administrator whose responsibilities are limited to Exchange Online should generally be assigned the Exchange Administrator role rather than a broader administrative role.<\/span><\/p>\n<h3><b>Question 268<\/b><\/h3>\n<p><b>What does Microsoft Purview Audit primarily provide?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Email encryption<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Recorded information about supported user and administrative activities<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Device compliance management<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">DNS domain verification<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft Purview Audit provides searchable records of supported activities performed across Microsoft 365 services. These records can assist with compliance reviews, security investigations, troubleshooting, and accountability. Depending on the workload, audit information can include activities involving files, users, administrators, sharing, and configuration changes. Email encryption, device compliance, and domain verification are separate functions handled by other Microsoft technologies. Purview Audit is therefore primarily used to review historical records of supported actions performed within the Microsoft 365 environment.<\/span><\/p>\n<h3><b>Question 269<\/b><\/h3>\n<p><b>Which Microsoft Entra capability can use device compliance as a condition for granting access?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Purview eDiscovery<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Entra Conditional Access<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Exchange Online Protection<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Secure Score<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft Entra Conditional Access can evaluate device compliance when integrated with Microsoft Intune and then apply access controls according to the organization&#8217;s policies. For example, a company can require users to access sensitive Microsoft 365 applications only from devices that satisfy defined compliance requirements. Purview eDiscovery supports investigations, Exchange Online Protection secures email, and Secure Score evaluates security posture. Conditional Access is therefore the Microsoft Entra capability used to incorporate device compliance into access decisions.<\/span><\/p>\n<h3><b>Question 270<\/b><\/h3>\n<p><b>Which Microsoft 365 feature helps administrators monitor adoption of Microsoft 365 services?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Purview Audit<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Entra ID Protection<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft 365 usage reports<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Exchange mail flow rules<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft 365 usage reports provide administrators with information about service usage and user activity across supported workloads. These reports can help organizations understand adoption patterns, identify inactive users, and determine how actively different Microsoft 365 services are being used. Purview Audit provides more detailed records of supported activities, Entra ID Protection focuses on identity risks, and mail flow rules control message processing. Usage reports are therefore the appropriate resource when administrators need broader information about Microsoft 365 service adoption and utilization.<\/span><\/p>\n<h3><b>Question 271<\/b><\/h3>\n<p><b>An administrator wants to create a rule that automatically adds a disclaimer to outgoing emails. Which Exchange feature should be used?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Purview DLP<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Exchange mail flow rule<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Entra access review<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Secure Score<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Exchange Online mail flow rules can inspect messages as they pass through the service and perform configured actions. One common use is adding disclaimers to messages that meet specified conditions. Administrators can create conditions based on factors such as sender, recipient, message characteristics, or other supported criteria and then apply an action such as adding a disclaimer. Purview DLP focuses on sensitive-information protection, access reviews evaluate permissions, and Secure Score evaluates security posture. Mail flow rules are therefore appropriate for automatically adding email disclaimers.<\/span><\/p>\n<h3><b>Question 272<\/b><\/h3>\n<p><b>Which Microsoft Purview capability can identify predefined patterns such as passport numbers or financial information?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Purview sensitive information types<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft 365 Service Health<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Intune<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Defender XDR<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft Purview sensitive information types use predefined or custom detection patterns to identify specific categories of sensitive information. Examples can include financial information, government identifiers, or other regulated data depending on the available built-in definitions and organizational configuration. These detections can support DLP, classification, and other compliance controls. Service Health monitors Microsoft services, Intune manages devices, and Defender XDR focuses on security incidents. Sensitive information types are therefore the appropriate Purview capability for recognizing specific patterns of sensitive organizational data.<\/span><\/p>\n<h3><b>Question 273<\/b><\/h3>\n<p><b>Which Microsoft 365 capability can help investigate an email that was quarantined?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Intune<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Purview retention<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Defender portal<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Entra Cloud Sync<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The Microsoft Defender portal provides security-focused investigation and management capabilities for email threats and quarantine-related activities, depending on the organization&#8217;s licensing and configuration. Administrators can review security alerts, messages, threats, and other relevant information to investigate why a message was treated as suspicious or malicious. Intune manages endpoints, Purview retention manages information lifecycle, and Cloud Sync synchronizes identities. The Defender portal is therefore the appropriate security-focused interface for investigating email threats and quarantine events.<\/span><\/p>\n<h3><b>Question 274<\/b><\/h3>\n<p><b>What is the main benefit of assigning Microsoft Entra roles according to job responsibilities?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">It increases mailbox storage automatically<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">It supports least-privilege administration<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">It disables audit logging<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">It removes the need for authentication<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Assigning Microsoft Entra roles according to actual job responsibilities supports the principle of least privilege. Administrators receive the permissions necessary to perform their duties without automatically receiving unrelated or excessive administrative capabilities. This reduces the potential impact of compromised accounts and limits accidental configuration changes. Role-based administration also improves accountability because permissions can be associated with defined responsibilities. Increased mailbox storage, disabling audit logs, and removing authentication requirements are unrelated and potentially harmful outcomes. Role assignment based on responsibility therefore supports more controlled and secure administration.<\/span><\/p>\n<h3><b>Question 275<\/b><\/h3>\n<p><b>An organization needs to investigate who shared a sensitive document with an external user. Which capability should be examined?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Purview Audit<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Secure Score<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft 365 Service Health<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Exchange Online Protection<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft Purview Audit can record supported sharing and file-related activities across Microsoft 365 workloads. Administrators can search relevant audit events to investigate actions involving documents, including supported sharing activities, and identify the account associated with a recorded event. This information can help determine what happened during a potential data-exposure incident. Secure Score provides security recommendations, Service Health reports service incidents, and Exchange Online Protection protects email. Purview Audit is therefore the most appropriate capability for investigating historical document-sharing activity.<\/span><\/p>\n<h3><b>Question 276<\/b><\/h3>\n<p><b>Which Microsoft 365 service is responsible for cloud-based device and application management?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Defender XDR<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Purview<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Intune<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Exchange Online<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft Intune provides cloud-based management capabilities for organizational devices and applications. Administrators can configure device policies, establish compliance requirements, deploy supported applications, and manage endpoint settings through Intune. Defender XDR focuses on security operations, Purview provides compliance and information-governance capabilities, and Exchange Online provides cloud email services. Intune is therefore the Microsoft 365 service most directly responsible for centralized device and application management.<\/span><\/p>\n<h3><b>Question 277<\/b><\/h3>\n<p><b>Which feature can help an organization require administrators to provide justification when activating a privileged role?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft 365 usage reports<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Entra Privileged Identity Management<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Exchange message trace<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Safe Links<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft Entra Privileged Identity Management can be configured with controls such as justification requirements when administrators activate eligible privileged roles. This creates an additional governance step around elevated access and can provide useful context for why a privileged action was necessary. PIM can also support other controls, including approval, multifactor authentication, and time-limited activation. Usage reports provide service activity information, message trace investigates email, and Safe Links protects against malicious URLs. PIM is therefore the appropriate capability for requiring justification during privileged-role activation.<\/span><\/p>\n<h3><b>Question 278<\/b><\/h3>\n<p><b>An administrator wants to prevent a user from accessing Microsoft 365 when the account is considered high risk. Which combination is most appropriate?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Entra ID Protection with Conditional Access<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Exchange Online Protection with Safe Attachments<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Purview Audit with retention labels<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Intune with Exchange message trace<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft Entra ID Protection can identify risk associated with users and sign-ins, while Conditional Access can use supported risk conditions to enforce access controls. Together, these capabilities can support policies that require additional authentication or block access when an account reaches a configured risk level. EOP and Safe Attachments protect email, Purview Audit and retention labels address activity recording and information lifecycle, and Intune with message trace combines unrelated endpoint and email functions. Entra ID Protection and Conditional Access are therefore the appropriate combination for risk-based identity access control.<\/span><\/p>\n<h3><b>Question 279<\/b><\/h3>\n<p><b>Which Microsoft 365 feature helps organizations control how long specific content should remain available?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Defender XDR<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Entra ID Protection<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Microsoft Purview retention labels<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Exchange Online Protection<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft Purview retention labels allow organizations to apply specific retention requirements to supported content. A label can be associated with a defined retention period and other lifecycle settings according to organizational policies and applicable compliance requirements. This provides more targeted control over individual items or categories of information than relying only on broad service settings. Defender XDR handles security operations, Entra ID Protection manages identity risk, and Exchange Online Protection protects email. Retention labels are therefore appropriate when specific content requires defined lifecycle management.<\/span><\/p>\n<h3><b>Question 280<\/b><\/h3>\n<p><b>A Microsoft 365 administrator wants to reduce the number of users with permanent high-level privileges. Which action is most appropriate?<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Assign Global Administrator to every helpdesk employee<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Use Microsoft Entra Privileged Identity Management for eligible privileged roles<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Create one shared administrator account<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Disable administrative audit logging<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2<\/b><\/p>\n<p><b>Explanation<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft Entra Privileged Identity Management can reduce permanent privileged access by allowing administrators to remain eligible for roles and activate them only when elevated permissions are needed. Organizations can apply additional safeguards such as multifactor authentication, approval, justification, and limited activation duration. Assigning Global Administrator broadly or sharing administrator credentials increases security and accountability risks, while disabling audit logging removes valuable investigation information. PIM therefore provides a structured method for reducing standing administrative privileges while preserving the ability to perform necessary privileged tasks.<\/span><\/p>\n<p>&nbsp;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>View Full Microsoft MS-102 Exam Dumps and Practice Test Dumps. &nbsp; Question 261 Which Microsoft 365 feature is used to manage organizational email authentication policies through Exchange Online? Exchange Online Protection Microsoft Intune Microsoft Purview eDiscovery Microsoft Entra ID Protection Correct Answer: 1 Explanation Exchange Online Protection provides foundational email security capabilities for Microsoft 365 [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":[],"categories":[1648,1647],"tags":[],"_links":{"self":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts\/16823"}],"collection":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/comments?post=16823"}],"version-history":[{"count":1,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts\/16823\/revisions"}],"predecessor-version":[{"id":16836,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts\/16823\/revisions\/16836"}],"wp:attachment":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/media?parent=16823"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/categories?post=16823"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/tags?post=16823"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}