Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
Microsoft logo

Microsoft Certified:Cybersecurity Architect Expert

Domain 2Objective 3

Design Solutions for Securing Privileged Access SC-100 Practice Questions (Page 6)

Part of the Design security operations, identity, and compliance capabilities domain, which accounts for 25–30% of the SC-100 exam. Microsoft does not publish an official question count, but from its 120-minute exam (~50–80 total, ~13–24 in this domain), expect 3–6 from this objective — we provide 31 practice questions to prepare you well beyond it. (estimate)

31questions here
7free pages
7concepts
25–30%of the exam

Questions 26–30

  1. 26expert · hard

    Your organization uses Microsoft Entra ID Privileged Identity Management (PIM) to manage privileged roles. You have a requirement to ensure that all privileged role assignments are reviewed quarterly. However, the compliance team has expressed concern that the current review process is too time-consuming and that reviewers are not providing accurate decisions. You need to improve the review process without compromising security. What should you do?

    Select an answer first
  2. 27expert · hard

    A company has a hybrid identity environment and uses Microsoft Entra ID. The security team wants to implement a privileged access strategy that reduces the risk of credential theft. They have a limited budget and cannot deploy new hardware. They also want to ensure that all privileged actions are audited. Which combination of controls should you recommend?

    Select an answer first
  3. 28application · medium

    A company uses Microsoft 365 and has a team of IT administrators who need to manage user accounts and licenses. The security team wants to apply the principle of least privilege and ensure that the administrators can only perform these tasks. They also want to require multi-factor authentication for all administrative actions. What should you do?

    Select an answer first
  4. 29foundation · easy

    Which Microsoft Entra ID feature provides time-bound and approval-based role activation for privileged roles?

    Select an answer first
  5. 30application · medium

    Your organization is implementing the enterprise access model. You need to design a role assignment strategy for the tier 0 identity administrators. The strategy must ensure that only the most critical roles are eligible for activation, and that activation requires approval from a separate security team. You also need to ensure that the workstations used for these activations are hardened. What should you include in the design?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Microsoft. “SC-100” is a trademark of its owner, used for identification only.