Microsoft Certified:Cybersecurity Architect Expert
Domain 2Objective 2
Design Solutions for Identity and Access Management SC-100 Practice Questions (Page 6)
Part of the Design security operations, identity, and compliance capabilities domain, which accounts for 25–30% of the SC-100 exam. Microsoft does not publish an official question count, but from its 120-minute exam (~50–80 total, ~13–24 in this domain), expect 3–6 from this objective — we provide 45 practice questions to prepare you well beyond it. (estimate)
45questions here
9free pages
12concepts
25–30%of the exam
Questions 26–30
- 26
Which Microsoft Entra feature is commonly used to enforce Conditional Access policies for access to software-as-a-service (SaaS) applications like Salesforce or ServiceNow?
Select an answer first - 27
Which Microsoft Entra feature is used to grant access to a PaaS resource, such as an Azure SQL database, from a specific virtual network while blocking public internet access?
Select an answer first - 28
Which Microsoft Entra capability is specifically designed to provide a workload identity for an application running on a virtual machine or on-premises server, allowing it to authenticate to Microsoft Entra ID without managing secrets?
Select an answer first - 29
In a Zero Trust strategy, what is the primary purpose of Conditional Access policies?
Select an answer first - 30
Which identity solution is recommended for an Azure App Service application to authenticate to Azure Key Vault without storing credentials in code or configuration?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Microsoft. “SC-100” is a trademark of its owner, used for identification only.