You are configuring Azure AD Identity Protection. What happens when a user is marked as 'high risk'?
AUser access is immediately revoked.
BUser is prompted for MFA.
CUser is locked out for 24 hours.
DUser can continue as normal.
Explanation
Marking a user as 'high risk' triggers Multi-Factor Authentication prompts, enhancing security measures, while other options incorrectly imply more severe actions.
Q142
Which Azure service allows for automated scaling of virtual machines?
AAzure Autoscale
BAzure Firewall
CAzure Blob Storage
DAzure Virtual Network
Explanation
Azure Autoscale automatically adjusts resources based on demand; the others do not manage scaling.
Q143
A company needs to ensure only registered devices can access company resources. What should you configure?
AConditional Access
BAzure AD Connect
CEnterprise State Roaming
DIntune Network Policies
Explanation
Conditional Access policies enforce access based on device compliance; the others don't control access directly.
Q144
What happens when a device is marked as 'Retired' in Intune?
AIt is deleted immediately.
BDevice settings are wiped.
CUser access is revoked.
DIt will remain in the portal.
Explanation
Marking a device as 'Retired' revokes user access; the others do not accurately describe this action.
Q145
Which service provides real-time monitoring for Azure environments?
AAzure Monitor
BAzure VPN Gateway
CAzure Blob Storage
DAzure Data Lake
Explanation
Azure Monitor provides full-stack monitoring, while the others serve different purposes.
Q146
A company needs to restrict device access based on user group memberships. What should be configured?
AIntune Enrollment Profiles
BConditional Access Policies
CAzure AD Identity Protection
DMicrosoft Defender ATP
Explanation
Conditional Access Policies control access based on user conditions; others do not manage access restrictions.
Q147
You are configuring multi-factor authentication (MFA) for users in Azure AD. What happens if a user fails to complete MFA?
AAccess granted immediately.
BUser has to reset password.
CAccess is denied.
DAttempt retries are unlimited.
Explanation
Access is denied if MFA is not completed; the other options are incorrect outcomes.
Q148
Which service should you use for centralized monitoring of Azure resources?
AAzure Monitor
BAzure Storage
CAzure Functions
DAzure DevOps
Explanation
Azure Monitor provides centralized insights on resource performance, while others focus on different functionalities.
Q149
A company needs to ensure that its sensitive data is encrypted in transit and at rest. Which Azure service would best address this requirement?
AAzure Key Vault
BAzure Security Center
CAzure Storage Account
DAzure Firewall
Explanation
Azure Storage Account ensures encryption in transit and at rest, whereas the others focus on different aspects of security.
Q150
You are configuring Azure AD Conditional Access. What happens if you set a policy to require MFA for all users accessing a specific application?
AAll users bypass MFA for that app
BOnly admins need MFA for the app
CAll users must complete MFA verification
DMFA is only required for guest users
Explanation
All users will be prompted for MFA verification when accessing the specified application, while the other options misunderstand MFA requirements.