Question 76

Your company implements Microsoft Azure Active Directory (Azure AD), Microsoft 365, Microsoft Intune, and Azure Information Protection.
The company's security policy states the following:
Personal devices do not need to be enrolled in Intune.
Users must authenticate by using a PIN before they can access corporate email data.
Users can use their personal iOS and Android devices to access corporate cloud services.
Users must be prevented from copying corporate email data to a cloud storage service other than Microsoft OneDrive for Business.
You need to configure a solution to enforce the security policy.
What should you create?
  • Question 77

    Your network contains an Active Directory domain. Active Directory is synced with Microsoft Azure Active Directory (Azure AD).
    There are 500 domain-joined computers that run Windows 10. The computers are joined to Azure AD and enrolled in Microsoft Intune.
    You plan to implement Windows Defender Exploit Guard.
    You need to create a custom Windows Defender Exploit Guard policy, and then distribute the policy to all the computers.
    What should you do? To answer, select the appropriate options in the answer area.
    NOTE: Each correct selection is worth one point.

    Question 78

    You have a Microsoft 365 subscription.
    You need to configure access to Microsoft Office 365 for unmanaged devices. The solution must meet the following requirements:
    * Allow only the Microsoft Intune Managed Browser to access Office 365 web interfaces.
    * Ensure that when users use the Intune Managed Browser to access Office 365 web interfaces, they can only copy data to applications that are managed by the company.
    Which two settings should you configure from the Microsoft Intune blade? To answer, select the appropriate settings in the answer area.
    NOTE: Each correct selection is worth one point.

    Question 79

    You need to meet the OOBE requirements for Windows AutoPilot.
    Which two settings should you configure from the Azure Active Directory blade? To answer, select the appropriate settings in the answer area.
    NOTE: Each correct selection is worth one point.

    Question 80

    You have an Azure Active Directory (Azure AD) tenant and 100 Windows 10 devices that are Azure AD joined and managed by using Microsoft Intune.
    You need to configure Microsoft Defender Firewall and Microsoft Defender Antivirus on the devices. The solution must minimize administrative effort.
    Which two actions should you perform? Each correct answer presents part of the solution.
    NOTE: Each correct selection is worth one point.