Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam SC-900 All Questions

View all questions & answers for the SC-900 exam

Exam SC-900 topic 1 question 28 discussion

Actual exam question from Microsoft's SC-900
Question #: 28
Topic #: 1
[All SC-900 Questions]

What can you use to provide a user with a two-hour window to complete an administrative task in Azure?

  • A. Azure Active Directory (Azure AD) Privileged Identity Management (PIM)
  • B. Azure Multi-Factor Authentication (MFA)
  • C. Azure Active Directory (Azure AD) Identity Protection
  • D. conditional access policies
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
extrankie
Highly Voted 3 years, 3 months ago
PIM is the correct answer A
upvoted 202 times
...
gills
Highly Voted 3 years, 3 months ago
Provided answer is wrong. Should be A. https://docs.microsoft.com/en-us/azure/active-directory/privileged-identity-management/pim-configure Privileged Identity Management provides time-based and approval-based role activation to mitigate the risks of excessive, unnecessary, or misused access permissions on resources that you care about. Here are some of the key features of Privileged Identity Management: Provide just-in-time privileged access to Azure AD and Azure resources Assign time-bound access to resources using start and end dates Require approval to activate privileged roles Enforce multi-factor authentication to activate any role Use justification to understand why users activate Get notifications when privileged roles are activated Conduct access reviews to ensure users still need roles Download audit history for internal or external audit Prevents removal of the last active Global Administrator role assignment
upvoted 99 times
...
tnttech
Most Recent 2 months ago
Azure PIM is correct
upvoted 1 times
...
Maqsoof
5 months, 4 weeks ago
D (Azure AD) Privileged Identity Management (PIM)
upvoted 1 times
...
cifofs
6 months ago
The correct answer is D because to use PIM you must have Premium P2.
upvoted 1 times
...
AaronMedrano
8 months, 1 week ago
Selected Answer: A
Should be A. https://docs.microsoft.com/en-us/azure/active-directory/privileged-identity-management/pim-configure Privileged Identity Management provides time-based and approval-based role activation to mitigate the risks of excessive, unnecessary, or misused access permissions on resources that you care about.
upvoted 1 times
...
mohamed.ali.elmasry
8 months, 2 weeks ago
PIM is the correct answer A
upvoted 1 times
...
frych
9 months, 3 weeks ago
Selected Answer: A
PIM is correct for short time access
upvoted 1 times
...
Jeroenexams
10 months, 1 week ago
Answer A, PIM relates to the Azure tasks C seemsINcorrect becasue it saids POLICY, not control https://learn.microsoft.com/en-us/entra/identity/conditional-access/concept-conditional-access-session Conditional Access App Control enables user app access and sessions to be monitored and controlled in real time based on access and session policies. Access and session policies are used within the Defender for Cloud Apps portal to refine filters and set actions to take.
upvoted 1 times
...
chanc2023
10 months, 3 weeks ago
Most people vote for A and the answer provided by this site is D. So which one is the correct?
upvoted 1 times
...
geggio
11 months, 1 week ago
Selected Answer: A
A right
upvoted 1 times
...
BrkyUlukn
11 months, 2 weeks ago
Correct answer is A: https://docs.microsoft.com/en-us/azure/active-directory/privileged-identity-management/pim-configure Privileged Identity Management provides time-based and approval-based role activation to mitigate the risks of excessive, unnecessary, or misused access permissions on resources that you care about. Here are some of the key features of Privileged Identity Management: Provide just-in-time privileged access to Azure AD and Azure resources Assign time-bound access to resources using start and end dates Require approval to activate privileged roles Enforce multi-factor authentication to activate any role Use justification to understand why users activate Get notifications when privileged roles are activated Conduct access reviews to ensure users still need roles Download audit history for internal or external audit Prevents removal of the last active Global Administrator role assignment
upvoted 1 times
...
stewbiee
1 year ago
Selected Answer: A
PIM is the correct answer A
upvoted 2 times
...
xRiot007
1 year ago
A - PIM because you give timed access
upvoted 3 times
...
Tahamaffia
1 year ago
Got this question on my exam 05/09/2023
upvoted 3 times
...
Tomix
1 year, 1 month ago
A: Azure Active Directory (Azure AD) Privileged Identity Management (PIM) allows you to grant temporary administrative roles to users for a specified duration, which can be set for two hours or any desired time frame. This ensures that users have elevated privileges only when needed and for a limited period.
upvoted 1 times
...
RahulX
1 year, 1 month ago
A. Azure Active Directory (Azure AD) Privileged Identity Management (PIM)
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...