Download Microsoft Identity and Access Administrator.SC-300.ExamTopics.2026-05-01.212q.tqb

Vendor: Microsoft
Exam Code: SC-300
Exam Name: Microsoft Identity and Access Administrator
Date: May 01, 2026
File Size: 12 MB

How to open TQB files?

Files with TQB (Taurus Question Bank) extension can be opened by Taurus Exam Studio.

Demo Questions

Question 1
You have an Azure AD tenant.
You discover that a large number of new apps were added to the tenant.
You need to implement an approval process for new enterprise applications.
What should you do?
  1. From the Microsoft Defender for Cloud Apps portal, create a Cloud Discovery anomaly detection policy.
  2. From the Microsoft Entra admin center, configure the Admin consent settings.
  3. From the Microsoft Defender for Cloud Apps portal, configure an app connector.
  4. From the Microsoft Entra admin center, configure an access review.
Correct answer: B
Question 2
You have an Azure AD tenant that contains the users shown in the following table.
You need to compare the role permissions of each user. The solution must minimize administrative effort.
What should you use?
  1. the Microsoft 365 Defender portal
  2. the Microsoft 365 admin center
  3. the Microsoft Entra admin center
  4. the Microsoft Purview compliance portal
Correct answer: B
Question 3
You have an Azure AD tenant named contoso.com that contains the resources shown in the following table.
You create a user named Admin1.
You need to ensure that Admin1 can enable Security defaults for contoso.com.
What should you do first?
  1. Delete Package1.
  2. Delete CAPolicy1.
  3. Assign Admin1 the Authentication Administrator role for Au1.
  4. Configure Identity Governance.
Correct answer: B
Question 4
You have a hybrid Microsoft 365 subscription that contains the users shown in the following table.
You plan to deploy an on-premises app named App1. App1 will be registered in Azure AD and will use Azure AD Application Proxy.
You need to delegate the installation of the Application Proxy connector and ensure that User1 can register App1 in Azure AD. The solution must use the principle of least privilege.
Which user should perform the installation, and which role should you assign to User1? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Correct answer: To work with this question, an Exam Simulator is required.
Question 5
Your company has an Azure AD tenant that contains a user named User1.
The company has two departments named marketing and finance.
You need to grant permissions to User1 to manage only the users in the marketing department. 
The solution must ensure that User1 does NOT have permissions to manage the users in the finance department.
What should you create first?
  1. a management group
  2. an administrative unit
  3. a resource group
  4. a Microsoft 365 group
Correct answer: B
Question 6
You have 2,500 users who are assigned Microsoft Office 365 Enterprise E3 licenses. The licenses are assigned to individual users.
From the Groups blade in the Azure Active Directory admin center, you assign Microsoft Office 365 Enterprise E5 licenses to a group that includes all users.
You needed to remove the Office 365 Enterprise E3 licenses from the users by using the least amount of administrative effort.
What should you use?
  1. the Groups blade in the Azure Active Directory admin center
  2. the Set-AzureAdUser cmdlet
  3. the Identity Governance blade in the Azure Active Directory admin center
  4. the Licenses blade in the Azure Active Directory admin center
Correct answer: D
Question 7
You have a Microsoft 365 tenant that uses the domain named fabrikam.com. The Guest invite settings for Azure Active Directory (Azure AD) are configured as shown in the exhibit. (Click the Exhibit tab.)
A user named [email protected]shares a Microsoft SharePoint Online document library to the users shown in the following table.
Which users will be emailed a passcode?
  1. User2 only
  2. User1 only
  3. User1 and User2 only
  4. User1, User2, and User3
Correct answer: A
Question 8
You have the Azure resources shown in the following table.
To which identities can you assign the Contributor role for RG1?
  1. User1 only
  2. User1 and Group1 only
  3. User1 and VM1 only
  4. User1, VM1, and App1 only
  5. User1, Group1, VM1, and App1
Correct answer: E
Question 9
Your network contains an on-premises Active Directory Domain Services (AD DS) domain that syncs with an Azure AD tenant.
You need to ensure that user authentication always occurs by validating passwords against the AD DS domain.
What should you configure, and what should you use? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Correct answer: To work with this question, an Exam Simulator is required.
Question 10
You have a Microsoft 365 E5 subscription.
You need to create a dynamic user group that will include all the users that do NOT have a department defined in their user profile.
How should you complete the membership rule? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Correct answer: To work with this question, an Exam Simulator is required.
HOW TO OPEN VCE FILES

Use VCE Exam Simulator to open VCE files
Avanaset

HOW TO OPEN VCEX FILES

Use ProfExam Simulator to open VCEX files
ProfExam Screen

ProfExam
ProfExam at a 20% markdown

You have the opportunity to purchase ProfExam at a 20% reduced price

Get Now!