Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Microsoft SC-300 Exam - Topic 4 Question 103 Discussion

You have a Microsoft 365 tenant.The Azure Active Directory (Azure AD) tenant syncs to an on-premises Active Directory domain.You plan to create an emergency-access administrative account named Emergency1. Emergency1 will beassigned the Global administrator role in Azure AD. Emergency1 will be used in the event of Azure ADfunctionality failures and on-premises infrastructure failures.You need to reduce the likelihood that Emergency1 will be prevented from signing in during an emergency.What should you do?
A) Configure Azure Monitor to generate an alert if Emergency1 is modified or signs in.
B) Require Azure AD Privileged Identity Management (PIM) activation of the Global administrator role for Emergency1.
C) Configure a conditional access policy to restrict sign-in locations for Emergency1 to only the corporate network.
D) Configure a conditional access policy to require multi-factor authentication (MFA) for Emergency1.

Microsoft SC-300 Exam - Topic 4 Question 103 Discussion

Actual exam question for Microsoft's SC-300 exam
Question #: 103
Topic #: 4
[All SC-300 Questions]

You have a Microsoft 365 tenant.

The Azure Active Directory (Azure AD) tenant syncs to an on-premises Active Directory domain.

You plan to create an emergency-access administrative account named Emergency1. Emergency1 will be

assigned the Global administrator role in Azure AD. Emergency1 will be used in the event of Azure AD

functionality failures and on-premises infrastructure failures.

You need to reduce the likelihood that Emergency1 will be prevented from signing in during an emergency.

What should you do?

Show Suggested Answer Hide Answer
Suggested Answer: A

Contribute your Thoughts:

0/2000 characters
Carma
10 months ago
Restricting sign-in locations could cause issues during a real emergency.
upvoted 0 times
...
Beckie
10 months ago
A simple alert for changes to Emergency1 sounds smart.
upvoted 0 times
...
Penney
10 months ago
Surprised that people overlook the importance of PIM for emergencies!
upvoted 0 times
...
Gennie
11 months ago
I disagree, MFA is crucial too, so D might be better.
upvoted 0 times
...
Johnson
11 months ago
Option B is a must for emergency accounts!
upvoted 0 times
...
Rodolfo
11 months ago
I vaguely recall that alerts from Azure Monitor might help, but I'm not convinced that it would actually prevent sign-in issues for Emergency1.
upvoted 0 times
...
Samira
11 months ago
I feel like configuring MFA for Emergency1 could be a good idea, but what if there's an issue with the MFA system during an emergency?
upvoted 0 times
...
Ines
12 months ago
I think we practiced a similar question where restricting sign-in locations was a concern. It seems risky to limit Emergency1 to just the corporate network, though.
upvoted 0 times
...
Ena
12 months ago
I remember we discussed the importance of having a backup admin account, but I'm not sure if requiring PIM is the best option for Emergency1.
upvoted 0 times
...
Edison
12 months ago
Option D seems like a good choice too. Requiring MFA for the Emergency1 account will add an extra layer of security without overly complicating the sign-in process during an emergency.
upvoted 0 times
...
Hollis
12 months ago
I think option B is the way to go. Requiring PIM activation for the Global administrator role will help ensure the account is only used when absolutely necessary, which seems like the best way to protect it.
upvoted 0 times
...
Wilda
12 months ago
I'm a bit confused here. Wouldn't option A just generate alerts, but not actually prevent the account from being locked out? I'm not sure that's the best approach.
upvoted 0 times
...
Graciela
12 months ago
Okay, let's think this through. We need to reduce the likelihood of the Emergency1 account being prevented from signing in during an emergency, so I'm leaning towards option B or D.
upvoted 0 times
...
Mari
12 months ago
Hmm, this seems like a tricky one. I'll need to carefully consider the options to ensure I don't accidentally lock out the emergency account.
upvoted 0 times
...
Pete
1 year ago
I'd avoid C - restricting the sign-in locations could backfire if the emergency happens when someone's away from the office. Flexibility is key in an emergency, right?
upvoted 0 times
Sean
1 year ago
A) Configure Azure Monitor to generate an alert if Emergency1 is modified or signs in.
upvoted 0 times
...
Arlette
1 year ago
D) Configure a conditional access policy to require multi-factor authentication (MFA) for Emergency1.
upvoted 0 times
...
William
1 year ago
B) Require Azure AD Privileged Identity Management (PIM) activation of the Global administrator role for Emergency1.
upvoted 0 times
...
...
Frankie
1 year ago
D looks good too, requiring MFA for that account would be a smart move. Gotta keep those emergency logins locked down tight!
upvoted 0 times
...
Jacklyn
1 year ago
Funny how they're trying to make an 'emergency' account more secure than my regular accounts! I guess the admins are a bit paranoid.
upvoted 0 times
Corinne
1 year ago
D) Configure a conditional access policy to require multi-factor authentication (MFA) for Emergency1.
upvoted 0 times
...
Audra
1 year ago
C) Configure a conditional access policy to restrict sign-in locations for Emergency1 to only the corporate network.
upvoted 0 times
...
Diane
1 year ago
B) Require Azure AD Privileged Identity Management (PIM) activation of the Global administrator role for Emergency1.
upvoted 0 times
...
Shonda
1 year ago
A) Configure Azure Monitor to generate an alert if Emergency1 is modified or signs in.
upvoted 0 times
...
...
Charlesetta
1 year ago
Hmm, I think the answer here is B. Requiring PIM activation for the Emergency1 account makes the most sense to reduce the likelihood of it being prevented from signing in during an emergency.
upvoted 0 times
...
Katy
1 year ago
I'm not sure, maybe we should also consider option B for additional security measures.
upvoted 0 times
...
Herminia
1 year ago
I agree with Robt, MFA would definitely enhance security for Emergency1.
upvoted 0 times
...
Robt
2 years ago
I think we should go with option D, configure MFA for Emergency1.
upvoted 0 times
...

Save Cancel