HOTSPOT - You have a Microsoft 365 tenant. A conditional access policy is configured for the tenant as shown in the Policy exhibit. (Click the Policy tab.)The User Administrator role is configured as shown in the Role setting exhibit. (Click the Role setting tab.)
The User Administrator role has the assignments shown in the Assignments exhibit. (Click the Assignments tab.)
For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point. Hot Area:
 Suggested Answer:
Box 1: Yes - In this scenario the User Administrator role is require justification on active assignment. Require justification - You can require that users enter a business justification when they activate. To require justification, check the Require justification on active assignment box or the Require justification on activation box. Box 2: Yes - Activation maximum duration is 8 hours. Box 3: Yes - Require multifactor authentication Privileged Identity Management provides enforcement of Azure AD Multi-Factor Authentication on activation and on active assignment. Reference: https://docs.microsoft.com/en-us/azure/active-directory/privileged-identity-management/pim-how-to-change-default-settings This question is in MS-500 Microsoft 365 Security Administration Exam For getting Microsoft Certified: Security, Compliance, and Identity Fundamentals Certificate Disclaimers: The website is not related to, affiliated with, endorsed or authorized by Microsoft. The website does not contain actual questions and answers from Microsoft's Certification Exams. Trademarks, certification & product names are used for reference only and belong to Microsoft.
Please login or Register to submit your answer