exam questions

Exam MS-101 All Questions

View all questions & answers for the MS-101 exam

Exam MS-101 topic 3 question 7 discussion

Actual exam question from Microsoft's MS-101
Question #: 7
Topic #: 3
[All MS-101 Questions]

HOTSPOT -
You have a Microsoft 365 subscription.
You are configuring permissions for Security & Compliance.
You need to ensure that the users can perform the tasks shown in the following table.

The solution must use the principle of least privilege.
To which role should you assign each user? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Hot Area:

Show Suggested Answer Hide Answer
Suggested Answer:
References:
https://docs.microsoft.com/en-us/office365/securitycompliance/permissions-in-the-security-and-compliance-center#mapping-of-role-groups-to-assigned-roles

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Jake1
Highly Voted 3 years, 11 months ago
Answers should be Security Reader (Can download reports) and Security Administrator. Compliance admin can set policies. The requirements is just to set alerts.
upvoted 52 times
allesglar
3 years, 4 months ago
This is wrong. Security Reader cannot download ALL reports, because he does not have the " View-Only Audit Logs" role. Correct answer is Security Admin for both users.
upvoted 14 times
RenegadeOrange
2 years, 7 months ago
Reader can download reports as well as global reader. See the "necessary permissions" link in this article. https://learn.microsoft.com/en-us/microsoft-365/security/office-365-security/view-reports-for-mdo?view=o365-worldwide
upvoted 4 times
...
NitishKarmakar
1 year, 6 months ago
"Security Reader" can be used to view security reports. This role has read-only access to security reports and doesn't have the ability to make changes to configurations. Security Admin can also create, manage, and access security and compliance reports but have a more focused role.
upvoted 1 times
...
...
...
Prianishnikov
Highly Voted 4 years ago
User1: Security Administrator - security reader can view but can't take actions (download). User2: Security Administrator - Organization Management & Compliance Administrator also can, but we have to use the least privileged role. You can view this details in SCC -> Permissions.
upvoted 28 times
...
nitts182003
Most Recent 2 years, 2 months ago
I have read through all the MS articles about SCC permissions however nowhere it states that Security reader can download the report. All documents says that it can only view. According to me For both it will be Security Administrator.
upvoted 1 times
...
EsamiTopici
2 years, 2 months ago
So, security reader and security administrator?
upvoted 1 times
...
TimNov
2 years, 10 months ago
1. Security Reader 2. Security Administrator
upvoted 8 times
...
adkind
2 years, 11 months ago
Sec Reader / Sec Admin https://www.examtopics.com/discussions/microsoft/view/11610-exam-ms-100-topic-3-question-10-discussion/
upvoted 1 times
...
JamesM9
3 years, 1 month ago
According to the link below, Security Readers CAN view/download reports. As this is using the principle of least privilege, the answers will be: Security Reader/Security Administrator https://docs.microsoft.com/en-us/microsoft-365/security/office-365-security/view-reports-for-mdo?view=o365-worldwide
upvoted 2 times
...
jkklim
3 years, 5 months ago
user1 : security administrator (ability to export or download) user2 : security adminstrator (can manage alerts - no need compliance admin as requires least privileges)
upvoted 4 times
...
Velda
3 years, 5 months ago
This is the same question as in MS-100 (Question #7 Topic 2). Correct answer is Security Administrator for both.
upvoted 4 times
...
lucidgreen
3 years, 8 months ago
As I read through the roles, I see there is a Security Administrator role inside what used to be SaC and there is an Azure role. These are not the same. However, the SA role for Azure is also a member of this group. So Security Reader for User1. Security Administrator for User2. https://docs.microsoft.com/en-us/microsoft-365/security/office-365-security/permissions-in-the-security-and-compliance-center?view=o365-worldwide#role-groups-in-the-security--compliance-center
upvoted 5 times
...
encxorblood
3 years, 9 months ago
The solution must use the principle of least privilege. User 2: Compliance Administrator
upvoted 2 times
harburn422
3 years, 1 month ago
Compliance Administrator had more access to other things in Compliance that the Security Administrator does not have. So this would be the opposite of least privilege.
upvoted 1 times
...
...
encxorblood
3 years, 9 months ago
User1 : Security Reader - In general, global administrators, security administrators, and security readers can access reports in the Security & Compliance Center.
upvoted 1 times
...
Fr3ddy
3 years, 11 months ago
User 1 - Security reader https://docs.microsoft.com/en-us/microsoft-365/compliance/download-existing-reports?view=o365-worldwide#download-existing-reportsMake sure that you have the necessary permissions assigned in the Security & Compliance Center. In general, global administrators, security administrators, and security readers can access reports in the Security & Compliance Center. User 2 - Security Administrator https://docs.microsoft.com/en-us/microsoft-365/security/office-365-security/permissions-in-the-security-and-compliance-center?view=o365-worldwide
upvoted 8 times
donathon
3 years, 10 months ago
I also did a compare, Organizational Management and Compliance Administrator have the exact same permissions! So Security Administrator is sufficient since the requirements is talking about alerts only.
upvoted 1 times
...
...
Goena
3 years, 12 months ago
User1: Security Reader can download. User2: Security Administrator can manage alerts. In SC portal he has less roles than Compliance Admin.
upvoted 7 times
Ceuse
3 years, 11 months ago
I Would go Compliance Administrator on User 2 since that is not a Global Role like Security Administrator.
upvoted 3 times
...
...
365admin
3 years, 12 months ago
Security reader can download reports https://docs.microsoft.com/en-us/microsoft-365/compliance/download-existing-reports?view=o365-worldwide Least privilege to mange alerts in S&C admin center- Security Administrator
upvoted 2 times
...
MSGrady
4 years ago
User 1 with least privileges to download all S&C reports is actually the security reader. https://docs.microsoft.com/en-us/microsoft-365/compliance/download-existing-reports?view=o365-worldwide
upvoted 1 times
...
MSGrady
4 years ago
Least privleged for User 2 is Security Admin: Manage security policies View, investigate, and respond to security threats View reports
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago