โ† All SC-900 Flashcard Decks

Microsoft Identity & Access Management Flashcards

7 cards from real SC-900 practice questions. Tap to flip, then mark Knew It or Still Learning โ€” missed cards come back until you master them.

Read the first 7 Microsoft Identity & Access Management flashcards as text
  1. What is Azure AD Entitlement Management used for?

    Answer: Automating identity governance by managing access packages for users to request

    Entitlement Management lets organizations define access packages (bundles of resources) that users can request and managers can approve.

  2. Which statement about Azure AD B2B collaboration is correct?

    Answer: B2B allows external partners to use their own credentials to access your organization's resources

    Azure AD B2B lets external users authenticate with their own identity provider while accessing your organization's apps and data.

  3. What is the role of a 'Global Administrator' in Azure AD?

    Answer: Has full access to all Azure AD administrative features and can manage all aspects of the tenant

    Global Administrators have the highest-privilege role in Azure AD with full control over all tenant administrative functions.

  4. How does Azure AD Connect help organizations with hybrid identity?

    Answer: It synchronizes on-premises AD user accounts and groups to Azure AD

    Azure AD Connect syncs on-premises AD objects (users, groups, passwords) to Azure AD, enabling hybrid identity scenarios.

  5. What is 'Password Hash Synchronization' (PHS) in Azure AD Connect?

    Answer: Syncing a hashed representation of on-premises passwords to Azure AD for cloud authentication

    PHS syncs a hash of the on-premises password hash to Azure AD, enabling users to authenticate to cloud services with their on-premises credentials.

  6. Which Azure AD feature provides a risk score for each user based on their identity behavior over time?

    Answer: Identity Protection user risk

    User risk in Identity Protection is a cumulative score reflecting the likelihood that a user's account has been compromised based on detected anomalies.

  7. What is the purpose of 'Administrative Units' in Azure AD?

    Answer: Scoping admin permissions to a subset of users or groups within the tenant

    Administrative Units let you delegate admin roles (like Password Administrator) to manage only a specific set of users or groups.