Question 136

You have a Microsoft 365 subscription.
A user reports that changes were made to several files in Microsoft OneDrive.
You need to identify which files were modified by which users in the user's OneDrive.
What should you do?
  • Question 137

    You have an Azure Sentinel workspace that has an Azure Active Directory (Azure AD) connector and an Office 365 connector.
    From the workspace, you plan to create a scheduled query rule that will use a custom query. The rule will be used to generate alerts when inbound access to Office 365 from specific user accounts is detected.
    You need to ensure that when multiple alerts are generated by the rule, the alerts are consolidated as a single incident per user account.
    What should you do?
  • Question 138

    Please wait while the virtual machine loads. Once loaded, you may proceed to the lab section. This may take a few minutes, and the wait time will not be deducted from your overall test time.
    When the Next button is available, click it to access the lab section. In this section, you will perform a set of tasks in a live environment. While most functionality will be available to you as it would be in a live environment, some functionality (e.g., copy and paste, ability to navigate to external websites) will not be possible by design.
    Scoring is based on the outcome of performing the tasks stated in the lab. In other words, it doesn't matter how you accomplish the task, if you successfully perform it, you will earn credit for that task.
    Labs are not timed separately, and this exam may more than one lab that you must complete. You can use as much time as you would like to complete each lab. But, you should manage your time appropriately to ensure that you are able to complete the lab(s) and all other sections of the exam in the time provided.

    Question 139

    You have a Microsoft Azure Active Directory (Azure AD) tenant named contoso.com that contains the users shown in the following table.

    You create and enforce an Azure AD Identity Protection sign-in risk policy that has the following settings:
    Assignments: Include Group1, Exclude Group2
    Conditions: Sign in risk of Low and above
    Access: Allow access, Require password multi-factor authentication
    You need to identify how the policy affects User1 and User2.
    What occurs when each user signs in from an anonymous IP address? To answer, select the appropriate options in the answer area.
    NOTE: Each correct selection is worth one point.

    Question 140

    You have an Azure Active Directory (Azure AD) tenant named contoso.com that contains the users shown in the following table.

    You add internal as a blocked word in the group naming policy for contoso.com.
    You add Contoso- as prefix in the group naming policy for contoso.com.
    For each of the following statements, select Yes if the statement is true. Otherwise, select No.
    NOTE: Each correct selection is worth one point.