You are configuring a Windows 10 device using Intune. What happens when you assign a device compliance policy but the device does not meet the requirements?
AUser access is revoked immediately
BDevice is marked as non-compliant
CIntune removes all data
DNothing happens until a reboot
Explanation
The device is marked as non-compliant; the other options misrepresent Intune's compliance handling.
Q82
Which Azure service provides disk encryption for VMs?
AAzure Disk Encryption
BAzure Backup
CAzure Security Center
DAzure Site Recovery
Explanation
Azure Disk Encryption specifically encrypts VM disks, while the others serve different purposes.
Q83
A company needs to manage endpoints with conditional access policies. Which Azure service should they use?
AMicrosoft Intune
BAzure AD Conditional Access
CAzure Information Protection
DAzure Security Center
Explanation
Azure AD Conditional Access manages policies, while Intune focuses on mobile device management.
Q84
What happens when you delete an Azure Policy definition?
AAll assignments are also deleted.
BThe policy definition is moved to trash.
CExisting assignments remain effective.
DNon-compliance starts to incur costs.
Explanation
Deleting a policy definition does not affect existing assignments, which remain effective.
Q85
Which service allows managing access to applications in Azure?
AAzure Active Directory
BAzure Blob Storage
CAzure Functions
DAzure Logic Apps
Explanation
Azure Active Directory manages user access, while others focus on storage or application processing.
Q86
A company needs to enforce Multi-Factor Authentication (MFA) on its web applications. What is the recommended approach?
ADisable all user accounts
BUse Azure AD Conditional Access
CImplement Network Security Groups
DRequire user password resets
Explanation
Azure AD Conditional Access allows MFA enforcement, while the others do not relate to MFA management.
Q87
What happens when a user attempts to access a resource without proper role assignment in Azure?
AAccess is allowed automatically
BAccess is denied
CAccess is throttled
DUser gains temporary access
Explanation
Access without proper role assignment is denied for security purposes.
Q88
A company needs to manage user access to Azure resources based on their job role. Which Azure service should they use?
AAzure Active Directory
BAzure Blob Storage
CAzure Functions
DAzure Virtual Machines
Explanation
Azure Active Directory provides role-based access control, unlike the other options which do not manage user access.
Q89
You are configuring a group policy for your Azure AD domain. What limitation should you be aware of?
ALimited to 200 policies
BCannot apply to external users
CRequires Azure Government subscription
DOnly applies during business hours
Explanation
Group policies do not apply to external users; other options presented are incorrect limitations.
Q90
What happens when you enroll a device in Microsoft Intune?
ADevice loses all local data
BUser gains full admin rights
CConfiguration profiles may be applied
DDevice automatically joins Azure AD
Explanation
Configuration profiles are applied to enrolled devices, while other options assume incorrect implications of enrollment.