Downloadable MS-101 Testing Material 2021

Pass4sure offers free demo for MS-101 exam. "Microsoft 365 Mobility and Security (beta)", also known as MS-101 exam, is a Microsoft Certification. This set of posts, Passing the Microsoft MS-101 exam, will help you answer those questions. The MS-101 Questions & Answers covers all the knowledge points of the real exam. 100% real Microsoft MS-101 exams and revised by experts!

Check MS-101 free dumps before getting the full version:

NEW QUESTION 1
HOTSPOT
You have the Microsoft Azure Active Directory (Azure AD) users shown in the following table.
MS-101 dumps exhibit
Your company uses Microsoft Intune.
Several devices are enrolled in Intune as shown in the following table.
MS-101 dumps exhibit
You create a conditional access policy that has the following settings: The Assignments settings are configured as follows:
Users and groups: Group1
Cloud apps: Microsoft Office 365 Exchange Online
Conditions: Include All device state, exclude Device marked as compliant Access controls is set to Block access.
For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.
MS-101 dumps exhibit

  • A. Mastered
  • B. Not Mastered

Answer: A

Explanation:
MS-101 dumps exhibit

NEW QUESTION 2
A user receives the following message when attempting to sign in to https://myapps.microsoft.com: "Your sign-in was blocked. We've detected something unusual about this sign-in. For example, you might be signing in from a new location device, or app. Before you can continue, we need to verity your identity. Please contact your admin.”
Which configuration prevents the users from signing in?

  • A. Microsoft Azure Active Directory (Azure AD) Identity Protection policies
  • B. Microsoft Azure Active Directory (Azure AD) conditional access policies
  • C. Security & Compliance supervision policies
  • D. Security & Compliance data loss prevention (DIP) policies

Answer: B

Explanation:
References:
https://docs.microsoft.com/en-us/azure/active-directory/conditional-access/overview

NEW QUESTION 3
HOTSPOT
You have three devices enrolled in Microsoft Intune as shown in the following table.
MS-101 dumps exhibit
The device compliance policies in Intune are configured as shown in the following table.
MS-101 dumps exhibit
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
MS-101 dumps exhibit

  • A. Mastered
  • B. Not Mastered

Answer: A

Explanation:
MS-101 dumps exhibit

NEW QUESTION 4
HOTSPOT
You have the Microsoft Azure Active Director (Azure AD) users shown in the following table.
MS-101 dumps exhibit
You create a conditional access policy that has the following settings:
• The Assignments settings are configured as follows:
• Users and groups: Group1
• Cloud apps: Microsoft Office 365 Exchange Online
• Conditions: Include All device state, exclude Device marked as compliant
• Access controls is set to Block access.
For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.
MS-101 dumps exhibit

  • A. Mastered
  • B. Not Mastered

Answer: A

Explanation:
MS-101 dumps exhibit

NEW QUESTION 5
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it As a result these questions will not appear In the review screen.
You have a Microsoft Azure Active directory (Azure AD) tenant named contoso.com.
You create an Azure Advanced Threat Protection (ATP) workspace named Workspace1. The tenet contains the users shown in the following table .
MS-101 dumps exhibit
You need to modify the configuration of the Azure ATP sensors.
Solution: You instruct User 3 to modify the Azure ATP sensor configuration- Does this meet the goal?

  • A. Yes
  • B. No

Answer: B

NEW QUESTION 6
HOTSPOT
You have several devices enrolled in Microsoft Intune.
You have a Microsoft Azure Active Directory (Azure AD) tenant that includes the users shown in the following table.
MS-101 dumps exhibit
The device type restrictions in Intune are configured as shown in the following table.
MS-101 dumps exhibit
You add User3 as a device enrollment manager in Intune.
For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.
MS-101 dumps exhibit

  • A. Mastered
  • B. Not Mastered

Answer: A

Explanation:
MS-101 dumps exhibit

NEW QUESTION 7
You have a Microsoft 365 subscription.
You plan to enable Microsoft Azure Information Protection.
You need to ensure that only the members of a group named PilotUsers can protect content. What should you do?

  • A. Run the Add-AadrmRoleBasedAdministrator cmdlet.
  • B. Create an Azure Information Protection policy.
  • C. Configure the protection activation status for Azure Information Protection.
  • D. Run the Set-AadrmOnboardingControlPolicy cmdlet.

Answer: D

Explanation:
References:
https://docs.microsoft.com/en-us/azure/information-protection/activate-service

NEW QUESTION 8
You have computers that run Windows 10 Enterprise and are joined to the domain.
You plan to delay the installation of new Windows builds so that the IT department can test application
compatibility.
You need to prevent Windows from being updated for the next 30 days.
Which two Group Policy settings should you configure? Each correct answer presents part of the solution.
NOTE: Each correct selection is worth one point.

  • A. Select when Quality Updates are received
  • B. Select when Preview Builds and Feature Updates are received
  • C. Turn off auto-restart for updates during active hours
  • D. Manage preview builds
  • E. Automatic updates detection frequency

Answer: BD

NEW QUESTION 9
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals- Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have a Microsoft 365 subscription.
You discover that some external users accessed content on a Microsoft SharePoint site. You modify the SharePoint sharing policy to prevent sharing outside your organization.
You need to be notified if the SharePoint sharing policy is modified in the future.
Solution: From the Security & Compliance admin center, you create a threat management policy. Does this meet the goal?

  • A. Yes
  • B. No

Answer: A

NEW QUESTION 10
HOTSPOT
You configure an anti-phishing policy as shown in the following exhibit.
MS-101 dumps exhibit
Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.
NOTE: Each correct selection is worth one point.
MS-101 dumps exhibit

  • A. Mastered
  • B. Not Mastered

Answer: A

Explanation:
References:
https://docs.microsoft.com/en-us/office365/securitycompliance/set-up-anti-phishing-policies#learn-about-HYPERLINK "https://docs.microsoft.com/en-us/office365/securitycompliance/set-up-anti-phishing-policies#learn-about-atp-anti-phishing-policy-options"atp-anti-phishing-policy-options

NEW QUESTION 11
In Microsoft 365, you configure a data loss prevention (DLP) policy named Policy1. Policy1 detects the sharing of United States (US) bank account numbers in email messages and attachments.
Policy1 is configured as shown in the exhibit. (Click the Exhibit tab.)
MS-101 dumps exhibit
You need to ensure that internal users can email documents that contain US bank account numbers to external users who have an email suffix of contoso.com.
What should you configure?

  • A. an action
  • B. a group
  • C. an exception
  • D. a condition

Answer: A

Explanation:
References:
https://docs.microsoft.com/en-us/office365/securitycompliance/data-loss-prevention-policies#how-dlp-policies-work

NEW QUESTION 12
You need to meet the technical requirement for large-volume document retrieval. What should you create?

  • A. a data loss prevention (DLP) policy from the Security & Compliance admin center
  • B. an alert policy from the Security & Compliance admin center
  • C. a file policy from Microsoft Cloud App Security
  • D. an activity policy from Microsoft Cloud App Security

Answer: D

Explanation:
References:
https://docs.microsoft.com/en-us/office365/securitycompliance/activity-policies-and-alerts

NEW QUESTION 13
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals- Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
Your network contains an Active Directory domain named contoso.com that is synced to Microsoft Azure Active Directory (Azure AD).
You manage Windows 10 devices by using Microsoft System Center Configuration Manager (Current Branch).
You configure pilot co-management
You add a new device named Device 1 to the domain. You install the Configuration Manager client on Device1.
You need to ensure that you can manage Device1 by using Microsoft Intune and Configuration Manager.
Solution: You create a device configuration profile from the Intune admin center. Does this meet the goal?

  • A. Yes
  • B. No

Answer: B

NEW QUESTION 14
You deploy Microsoft Azure Information Protection.
You need to ensure that a security administrator named SecAdmin1 can always read and inspect data protected by Azure Rights Management (Azure RMS).
What should you do?

  • A. From the Security & Compliance admin center, add User1 to the eDiscovery Manager role group.
  • B. From the Azure Active Directory admin center, add User1 to the Security Reader role group.
  • C. From the Security & Compliance admin center, add User1 to the Compliance Administrator role group.
  • D. From Windows PowerShell, enable the super user feature and assign the role to SecAdmin1.

Answer: D

Explanation:
References:
https://docs.microsoft.com/en-us/azure/information-protection/configure-super-users

NEW QUESTION 15
You need to ensure that User1 can enroll the devices to meet the technical requirements. What should you do?

  • A. From the Azure Active Directory admin center, assign User1 the Cloud device administrator rote.
  • B. From the Azure Active Directory admin center, configure the Maximum number of devices per user setting.
  • C. From the Intune admin center, add User1 as a device enrollment manager.
  • D. From the Intune admin center, configure the Enrollment restrictions.

Answer: C

Explanation:
References:
https://docs.microsoft.com/en-us/sccm/mdm/deploy-use/enroll-devices-with-device-enrHYPERLINK "https://docs.microsoft.com/en-us/sccm/mdm/deploy-use/enroll-devices-with-device-enrollment-manager"ollment-manager

NEW QUESTION 16
HOTSPOT
You have a Microsoft Azure Active Directory (Azure AD) tenant named contoso.com.
A user named User1 has files on a Windows 10 device as shown in the following table.
MS-101 dumps exhibit
In Azure Information Protection, you create a label named Label1 that is configured to apply automatically. Label1 is configured as shown in the following exhibit.
MS-101 dumps exhibit
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
MS-101 dumps exhibit

  • A. Mastered
  • B. Not Mastered

Answer: A

Explanation:
References:
https://docs.microsoft.com/en-us/azure/information-protection/configure-policy-classification

NEW QUESTION 17
You need to recommend a solution for the security administrator. The solution must meet the technical
requirements.
What should you include in the recommendation?

  • A. Microsoft Azure Active Directory (Azure AD) Privileged Identity Management
  • B. Microsoft Azure Active Directory (Azure AD) Identity Protection
  • C. Microsoft Azure Active Directory (Azure AD) conditional access policies
  • D. Microsoft Azure Active Directory (Azure AD) authentication methods

Answer: C

Explanation:
References:
https://docs.microsoft.com/en-us/azure/active-directory/conditional-access/untrusted-networks

NEW QUESTION 18
From the Microsoft Azure Active Directory (Azure AD) Identity Protection dashboard, you view the risk events shown in the exhibit. (Click the Exhibit tab.)
MS-101 dumps exhibit
You need to reduce the likelihood that the sign-ins are identified at risky. What should you do?

  • A. From the Security & Compliance admin center, create a classification label.
  • B. From the Security & Compliance admin center, add the users to the Security Readers role group.
  • C. From the Azure Active Directory admin center, configure the trusted IPs for multi-factor authentication.
  • D. From the Conditional access blade in the Azure Active Directory admin center, create named locations.

Answer: D

Explanation:
References:
https://docs.microsoft.com/en-us/azure/active-directory/conditional-access/location-condition

NEW QUESTION 19
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have a Microsoft 365 subscription.
You need to prevent users from accessing your Microsoft SharePoint Online sites unless the users are connected to your on-premises network.
Solution: From the Azure Active Directory admin center, you create a trusted location and a conditional access policy.
Does this meet the goal?

  • A. Yes
  • B. No

Answer: B

Explanation:
References:
https://docs.microsoft.com/en-us/azure/active-directory/conditional-access/location-condition https://techcommunity.microsoft.com/t5/Microsoft-SharePoint-Blog/Conditional-Access-in-SharePoint-Onlineand-OneDrive-for/ba-p/46678

NEW QUESTION 20
Your company has five security information and event management (SIEM) appliances. The traffic logs from each appliance are saved to a file share named Logs.
You need to analyze the traffic logs.
What should you do from Microsoft Cloud App Security?

  • A. Click Investigate, and then click Activity log.
  • B. Click Control, and then click Policie
  • C. Create a file policy.
  • D. Click Discover, and then click Create snapshot report.
  • E. Click Investigate, and then click Files.

Answer: A

Explanation:
References:
https://docs.microsoft.com/en-us/office365/securitycompliance/investigate-an-activity-in-office- 365-cas

NEW QUESTION 21
HOTSPOT
You have a Microsoft Office 365 subscription.
You need to delegate eDiscovery tasks as shown in the following table.
MS-101 dumps exhibit
The solution must follow the principle of the least privilege.
To which role group should you assign each user? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
MS-101 dumps exhibit

  • A. Mastered
  • B. Not Mastered

Answer: A

Explanation:
References:
https://docs.microsoft.com/en-us/office3HYPERLINK "https://docs.microsoft.com/en-us/office365/securitycompliance/assign-ediscovery-permissions"65/securitycompliance/assign- ediscovery-permissions

NEW QUESTION 22
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have a Microsoft 365 subscription.
From the Security & Compliance admin center, you create a role group named US eDiscovery Managers by copying the eDiscovery Manager role group.
You need to ensure that the users in the new role group can only perform content searches of mailbox content for users in the United States.
Solution: From Windows PowerShell, you run the New-AzureRmRoleAssignment cmdlet with the appropriate parameters.
Does this meet the goal?

  • A. Yes
  • B. No

Answer: B

Explanation:
References:
https://docs.microsoft.com/en-us/powershell/module/azurerm.resources/new- azurermroleassignment?
view=azurermps-6.13.0

NEW QUESTION 23
Your network contains an Active Directory domain named contoso.com. The domain contains 100 Windows 8.1 devices. You plan to deploy a custom Windows 10 Enterprise image to the Windows 8.1 devices. You need to recommend a Windows 10 deployment method. What should you recommend?

  • A. a provisiong package
  • B. an in place upgrade
  • C. wipe and load refresh
  • D. Windows Autopilot

Answer: B

Explanation:
References:
https://docs.microsoft.com/en-us/microsoft-365/enterprise/windHYPERLINK "https://docs.microsoft.com/en-us/microsoft-365/enterprise/windows10-infrastructure"ows10- infrastructure

NEW QUESTION 24
You have a Microsoft 365 subscription.
You need to investigate user activity in Microsoft 365, including from where users signed in, which applications were used, and increases in activity during the past month. The solution must minimize administrative effort.
Which admin center should you use?

  • A. Azure ATP
  • B. Security & Compliance
  • C. Cloud App Security
  • D. Flow

Answer: B

Explanation:
References:
https://docs.microsoft.com/en-us/office365/securitycompliance/search-the-audit-log-in-security-and-compliance

NEW QUESTION 25
......

Recommend!! Get the Full MS-101 dumps in VCE and PDF From Dumpscollection, Welcome to Download: http://www.dumpscollection.net/dumps/MS-101/ (New 146 Q&As Version)