exam questions

Exam SC-900 All Questions

View all questions & answers for the SC-900 exam

Exam SC-900 topic 1 question 28 discussion

Actual exam question from Microsoft's SC-900
Question #: 28
Topic #: 1
[All SC-900 Questions]

What can you use to provide a user with a two-hour window to complete an administrative task in Azure?

  • A. Azure Active Directory (Azure AD) Privileged Identity Management (PIM)
  • B. Azure Multi-Factor Authentication (MFA)
  • C. Azure Active Directory (Azure AD) Identity Protection
  • D. conditional access policies
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
extrankie
Highly Voted 3 years, 8 months ago
PIM is the correct answer A
upvoted 202 times
...
gills
Highly Voted 3 years, 8 months ago
Provided answer is wrong. Should be A. https://docs.microsoft.com/en-us/azure/active-directory/privileged-identity-management/pim-configure Privileged Identity Management provides time-based and approval-based role activation to mitigate the risks of excessive, unnecessary, or misused access permissions on resources that you care about. Here are some of the key features of Privileged Identity Management: Provide just-in-time privileged access to Azure AD and Azure resources Assign time-bound access to resources using start and end dates Require approval to activate privileged roles Enforce multi-factor authentication to activate any role Use justification to understand why users activate Get notifications when privileged roles are activated Conduct access reviews to ensure users still need roles Download audit history for internal or external audit Prevents removal of the last active Global Administrator role assignment
upvoted 99 times
...
LegendaryZA
Most Recent 4 months, 4 weeks ago
Selected Answer: A
The answer is: Azure Active Directory (Azure AD) Privileged Identity Management (PIM) https://learn.microsoft.com/en-us/entra/id-governance/privileged-identity-management/pim-configure
upvoted 2 times
...
tnttech
7 months ago
Azure PIM is correct
upvoted 1 times
...
Maqsoof
10 months, 4 weeks ago
D (Azure AD) Privileged Identity Management (PIM)
upvoted 1 times
...
cifofs
11 months ago
The correct answer is D because to use PIM you must have Premium P2.
upvoted 1 times
...
AaronMedrano
1 year, 1 month ago
Selected Answer: A
Should be A. https://docs.microsoft.com/en-us/azure/active-directory/privileged-identity-management/pim-configure Privileged Identity Management provides time-based and approval-based role activation to mitigate the risks of excessive, unnecessary, or misused access permissions on resources that you care about.
upvoted 1 times
...
mohamed.ali.elmasry
1 year, 1 month ago
PIM is the correct answer A
upvoted 1 times
...
frych
1 year, 2 months ago
Selected Answer: A
PIM is correct for short time access
upvoted 1 times
...
Jeroenexams
1 year, 3 months ago
Answer A, PIM relates to the Azure tasks C seemsINcorrect becasue it saids POLICY, not control https://learn.microsoft.com/en-us/entra/identity/conditional-access/concept-conditional-access-session Conditional Access App Control enables user app access and sessions to be monitored and controlled in real time based on access and session policies. Access and session policies are used within the Defender for Cloud Apps portal to refine filters and set actions to take.
upvoted 1 times
...
chanc2023
1 year, 3 months ago
Most people vote for A and the answer provided by this site is D. So which one is the correct?
upvoted 1 times
...
geggio
1 year, 4 months ago
Selected Answer: A
A right
upvoted 1 times
...
BrkyUlukn
1 year, 4 months ago
Correct answer is A: https://docs.microsoft.com/en-us/azure/active-directory/privileged-identity-management/pim-configure Privileged Identity Management provides time-based and approval-based role activation to mitigate the risks of excessive, unnecessary, or misused access permissions on resources that you care about. Here are some of the key features of Privileged Identity Management: Provide just-in-time privileged access to Azure AD and Azure resources Assign time-bound access to resources using start and end dates Require approval to activate privileged roles Enforce multi-factor authentication to activate any role Use justification to understand why users activate Get notifications when privileged roles are activated Conduct access reviews to ensure users still need roles Download audit history for internal or external audit Prevents removal of the last active Global Administrator role assignment
upvoted 1 times
...
stewbiee
1 year, 5 months ago
Selected Answer: A
PIM is the correct answer A
upvoted 2 times
...
xRiot007
1 year, 5 months ago
A - PIM because you give timed access
upvoted 3 times
...
Tahamaffia
1 year, 5 months ago
Got this question on my exam 05/09/2023
upvoted 4 times
...
Tomix
1 year, 5 months ago
A: Azure Active Directory (Azure AD) Privileged Identity Management (PIM) allows you to grant temporary administrative roles to users for a specified duration, which can be set for two hours or any desired time frame. This ensures that users have elevated privileges only when needed and for a limited period.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago