[Oct 21, 2021] Free Microsoft 365 MS-500 Exam Question
MS-500 dumps & Microsoft 365 sure practice dumps
NEW QUESTION 29
You have an Azure Active Directory (Azure AD) tenant named contoso.com that contains the users shown in the following table.
You register devices in contoso.com as shown in the following table.
You create app protection policies in Intune as shown in the following table.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Explanation
References:
https://docs.microsoft.com/en-us/intune/apps/app-protection-policy
NEW QUESTION 30
You have a hybrid Microsoft 365 deployment that contains the Windows 10 devices shown in the following table.
You assign a Microsoft Endpoint Manager disk encryption policy that automatically and silently enables BitLocker Drive Encryption (BitLocker) on all the devices.
Which devices will have BitLocker enabled?
- A. Device1 and Device2 only
- B. Device2 only
- C. Device 1, Device2, and Device3
- D. Device2 and Device3 only
Answer: B
Explanation:
Explanation
To silently enable BitLocker, the device must be Azure AD Joined or Hybrid Azure AD Joined and the device must contain TPM (Trusted Platform Module) 2.0.
Reference:
https://docs.microsoft.com/en-us/mem/intune/protect/encrypt-devices
NEW QUESTION 31
You have an Azure Active Directory (Azure AD) tenant named contoso.com that contains the users shown in the following table.
You register devices in contoso.com as shown in the following table.
You create app protection policies in Intune as shown in the following table.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Explanation
References:
https://docs.microsoft.com/en-us/intune/apps/app-protection-policy
NEW QUESTION 32
Your company plans to merge with another company.
A user named Debra Berger is an executive at your company.
You need to provide Debra Berger with all the email content of a user named Alex Wilber that contains the word merger.
To complete this task, sign in to the Microsoft 365 portal.
Answer:
Explanation:
See explanation below.
Explanation
You need to run a content search then export the results of the search.
* Go to the Microsoft 365 Compliance admin center.
* Navigate to Content Search under the Solutions section in the left navigation pane.
* Click on + New Search to create a new search.
* In the Keywords box, type in 'merger'.
* In the Locations section, select link.
* Click on the Choose users, groups or teams
* Type Alex Wilber in the search field the select his account from the search results.
* Click the Choose button to add the user then click
* Click Save to close the locations pane.
* Click Save & run to run the search.
* The next step is to export the results. Select the search then under Export results to a computer, click Start export.
* On the Export the search results All items.
* Under Export Exchange content as, One PST file for each mailbox.
* Click on Start export. When the export has finished, there will be an option to download the exported PST file.
Reference:
https://docs.microsoft.com/en-us/microsoft-365/compliance/content-search?view=o365-worldwide
https://docs.microsoft.com/en-us/microsoft-365/compliance/export-search-results?view=o365-worldwide
NEW QUESTION 33
You view Compliance Manager as shown in the following exhibit.
Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Reference:
https://docs.microsoft.com/en-us/office365/securitycompliance/meet-data-protection-and-regulatory-reqs-using-m
NEW QUESTION 34
Your network contains an on-premises Active Directory domain. The domain contains servers that run Windows Server and have advanced auditing enabled.
The security logs of the servers are collected by using a third-party SIEM solution.
You purchase a Microsoft 365 subscription and plan to deploy Azure Advanced Threat Protection (ATP) by using standalone sensors.
You need to ensure that you can detect when sensitive groups are modified and when malicious services are created.
What should you do?
- A. Turn on Delayed updates for the Azure ATP sensors.
- B. Integrate SIEM and Azure ATP.
- C. Configure auditing in the Office 365 Security & Compliance center.
- D. Turn off Delayed updates for the Azure ATP sensors.
Answer: B
Explanation:
Note:
There are several versions of this question in the exam. The questions in the exam have two different correct answers:
1. Integrate SIEM and Azure ATP.
2. Configure Event Forwarding on the domain controllers
Other incorrect answer options you may see on the exam include the following:
1. Configure Azure ATP notifications
2. Modify the Domain synchronizer candidate settings on the Azure ATP sensors
3. Enable the Audit account management Group Policy setting for the servers.
Reference:
https://docs.microsoft.com/en-us/azure-advanced-threat-protection/configure-event-forwarding
NEW QUESTION 35
You have a Microsoft 365 subscription.
Some users access Microsoft SharePoint Online from unmanaged devices.
You need to prevent the users from downloading, printing, and synching files.
What should you do?
- A. From the SharePoint admin center, configure the Access control settings
- B. From the Microsoft Azure portal, create an Azure Active Directory (Azure AD) conditional access policy
- C. Run the Set-SPODataConnectionSetting cmdlet and specify the AssignmentCollection parameter
- D. From the Microsoft Azure portal, create an Azure Active Directory (Azure AD) Identity Protection sign-in risk policy
Answer: A
NEW QUESTION 36
You configure several Advanced Threat Protection (ATP) policies in a Microsoft 365 subscription.
You need to allow a user named User1 to view ATP reports in the Threat management dashboard.
Which role provides User1with the required role permissions?
- A. Information Protection administrator
- B. Service administrator
- C. Compliance administrator
- D. Security reader
- E. Message center reader
Answer: D
Explanation:
Explanation/Reference:
Reference:
https://docs.microsoft.com/en-us/office365/securitycompliance/view-reports-for-atp#what-permissions-are- needed-to-view-the-atp-reports
NEW QUESTION 37
You have a Microsoft 365 subscription that contains a Microsoft SharePoint Online site named Site1. Site1 contains the folders shown in the following table.
At 09:00, you create a Microsoft Cloud App Security policy named Policy1 as shown in the following exhibit.
After you create Policy1, you upload files to Site1 as shown in the following table.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Explanation
Reference:
https://docs.microsoft.com/en-us/cloud-app-security/data-protection-policies
NEW QUESTION 38
You configure several Advanced Threat Protection (ATP) policies in a Microsoft 365 subscription.
You need to allow a user named User1 to view ATP reports from the Threat management dashboard.
Which role provides User1 with the required role permissions?
- A. Compliance administrator
- B. Security reader
- C. Message center reader
- D. Reports reader
Answer: B
Explanation:
Explanation/Reference:
https://docs.microsoft.com/en-us/microsoft-365/security/office-365-security/view-reports-for-atp?view=o365- worldwide#what-permissions-are-needed-to-view-the-atp-reports Implement and manage threat protection Testlet 1 This is a case study. Case studies are not timed separately. You can use as much exam time as you would like to complete each case. However, there may be additional case studies and sections on this exam. You must manage your time to ensure that you are able to complete all questions included on this exam in the time provided.
To answer the questions included in a case study, you will need to reference information that is provided in the case study. Case studies might contain exhibits and other resources that provide more information about the scenario that is described in the case study. Each question is independent of the other questions in this case study.
At the end of this case study, a review screen will appear. This screen allows you to review your answers and to make changes before you move to the next section of the exam. After you begin a new section, you cannot return to this section.
To start the case study
To display the first question in this case study, click the Next button. Use the buttons in the left pane to explore the content of the case study before you answer the questions. Clicking these buttons displays information such as business requirements, existing environment, and problem statements. If the case study has an All Information tab, note that the information displayed is identical to the information displayed on the subsequent tabs. When you are ready to answer a question, click the Question button to return to the question.
Overview
Litware, Inc. is a financial company that has 1,000 users in its main office in Chicago and 100 users in a branch office in San Francisco.
Existing Environment
Internal Network Infrastructure
The network contains a single domain forest. The forest functional level is Windows Server 2016.
Users are subject to sign-in hour restrictions as defined in Active Directory.
The network has the IP address ranges shown in the following table.
The offices connect by using Multiprotocol Label Switching (MPLS).
The following operating systems are used on the network:
* Windows Server 2016
* Windows 10 Enterprise
* Windows 8.1 Enterprise
The internal network contains the systems shown in the following table.
Litware uses a third-party email system.
Cloud Infrastructure
Litware recently purchased Microsoft 365 subscription licenses for all users.
Microsoft Azure Active Directory (Azure AD) Connect is installed and uses the default authentication settings.
User accounts are not yet synced to Azure AD.
You have the Microsoft 365 users and groups shown in the following table.
Requirements
Planned Changes
Litware plans to implement the following changes:
* Migrate the email system to Microsoft Exchange Online
* Implement Azure AD Privileged Identity Management
Security Requirements
Litware identifies the following security requirements:
* Create a group named Group3 that will be used for publishing sensitivity labels to pilot users. Group3 must only contain user accounts
* Use Azure Advanced Threat Protection (ATP) to detect any security threats that target the forest
* Prevent users locked out of Active Directory from signing in to Azure AD and Active Directory
* Implement a permanent eligible assignment of the Compliance administrator role for User1
* Configure domain-joined servers to ensure that they report sensor data to Microsoft Defender ATP
* Prevent access to Azure resources for the guest user accounts by default
* Ensure that all domain-joined computers are registered to Azure AD
Multi-factor authentication (MFA) Requirements
Security features of Microsoft Office 365 and Azure will be tested by using pilot Azure user accounts.
You identify the following requirements for testing MFA:
* Pilot users must use MFA unless they are signing in from the internal network of the Chicago office. MFA must NOT be used on the Chicago office internal network.
* If an authentication attempt is suspicious, MFA must be used, regardless of the user location.
* Any disruption of legitimate authentication attempts must be minimized.
General Requirements
Litware wants to minimize the deployment of additional servers and services in the Active Directory forest.
NEW QUESTION 39
You have a Microsoft 365 E5 subscription that contains an Azure Active Directory (Azure AD) tenant named contoso.com.
Azure AD Identity Protection alerts for contoso.com are configured as shown in the following exhibit.
A user named User1 is configured to receive alerts from Azure AD Identity Protection.
You create users in contoso.com as shown in the following table.
The users perform the sign-ins shown in the following table.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Explanation
Box 1: No
User1 will receive the two alerts classified as medium or higher.
Sign-ins from infected device is classified as low. This risk detection identifies IP addresses, not user devices.
If several devices are behind a single IP address, and only some are controlled by a bot network, sign-ins from other devices my trigger this event unnecessarily, which is why this risk detection is classified as Low.
Box 2: No
User2 will receive the two alerts classified as medium or higher.
Email alerts are sent to all global admins, security admins and security readers Sign-ins from infected device is classified as low. This risk detection identifies IP addresses, not user devices.
If several devices are behind a single IP address, and only some are controlled by a bot network, sign-ins from other devices my trigger this event unnecessarily, which is why this risk detection is classified as Low.
Box 3: No
User3 will not receive alters.
Email alerts are sent to all global admins, security admins and security readers.
Reference:
https://docs.microsoft.com/en-us/azure/active-directory/identity-protection/overview-identity-protection
https://docs.microsoft.com/en-us/azure/active-directory/identity-protection/howto-identity-protection-configure-r
NEW QUESTION 40
You have a Microsoft 365 subscription that include three users named User1, User2, and User3.
A file named File1.docx is stored in Microsoft OneDrive. An automated process updates File1.docx every minute.
You create an alert policy named Policy1 as shown in the following exhibit.
Use thedrop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.
NOTE:Each correct selection is worth one point.
Answer:
Explanation:
Explanation
References:
https://docs.microsoft.com/en-us/office365/securitycompliance/alert-policies
NEW QUESTION 41
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have a Microsoft 365 subscription.
You have a user named User1. Several users have full access to the mailbox of User1.
Some email messages sent to User1 appear to have been read and deleted before the user viewed them.
When you search the audit log in Security & Compliance to identify who signed in to the mailbox of User1, the results are blank.
You need to ensure that you can view future sign-ins to the mailbox of User1.
You run the Set-MailboxFolderPermission -Identity "User1"
-User [email protected] -AccessRights Owner command.
Does that meet the goal?
- A. No
- B. Yes
Answer: A
Explanation:
Explanation/Reference:
References:
https://docs.microsoft.com/en-us/powershell/module/exchange/mailboxes/set-mailbox?view=exchange-ps
NEW QUESTION 42
You have an Azure Active Directory (Azure AD) tenant named Contoso.com that contains the users shown in the following table.
The User Administrator role is configured in Azure AD Privileged Identity Management (PIM) as shown in the following exhibit.
You make User4 eligible for the User Administrator role.
For each of the following statements, Select Yes if the Statement is true. Otherwise, select No./ NOTE: Each correct selection is worth one point.
Answer:
Explanation:
NEW QUESTION 43
Please wait while the virtual machine loads. Once loaded, you may proceed to the lab section. This may take a few minutes, and the wait time will not be deducted from your overall test time.
When the Next button is available, click it to access the lab section. In this section, you will perform a set of tasks in a live environment. While most functionality will be available to you as it would be in a live environment, some functionality (e.g., copy and paste, ability to navigate to external websites) will not be possible by design.
Scoring is based on the outcome of performing the tasks stated in the lab. In other words, it doesn't matter how you accomplish the task, if you successfully perform it, you will earn credit for that task.
Labs are not timed separately, and this exam may more than one lab that you must complete. You can use as much time as you would like to complete each lab. But, you should manage your time appropriately to ensure that you are able to complete the lab(s) and all other sections of the exam in the time provided.
Please note that once you submit your work by clicking the Next button within a lab, you will NOT be able to return to the lab.
Username and password
Use the following login credentials as needed:
To enter your username, place your cursor in the Sign in box and click on the username below.
To enter your password, place your cursor in the Enter password box and click on the password below.
Microsoft 365 Username:
admin@[email protected]
Microsoft 365 Password: &=Q8v@2qGzYz
If the Microsoft 365 portal does not load successfully in the browser, press CTRL-K to reload the portal in a new browser tab.
The following information is for technical support only:
Lab instance: 11032396
You need to ensure that a global administrator is notified when a document that contains U.S. Health Insurance Portability and Accountability Act (HIPAA) data is identified in your Microsoft 365 tenant.
To complete this task, sign in to the Microsoft Office 365 admin center.
Answer:
Explanation:
See explanation below.
Explanation
1. In the Security & Compliance Center > left navigation > Data loss prevention > Policy > + Create a policy.
2. Choose the U.S. Health Insurance Portability and Accountability Act (HIPAA) template > Next.
3. Name the policy > Next.
4. Choose All locations in Office 365
5. At the first Policy Settings step just accept the defaults,
6. After clicking Next, you'll be presented with an additional page
* Deselect the Show policy tips to users and send them an email notification option.
* Select the Detect when content that's being shared contains option, and decrease the number of instances to 1.
* Select the Send incident reports in email option.
7. > Next
8. Select the option to turn on the policy right away > Next.
9. Click Create to finish creating the policy.
References:
https://docs.microsoft.com/en-us/microsoft-365/compliance/create-test-tune-dlp-policy?view=o365-worldwide
https://docs.microsoft.com/en-us/microsoft-365/compliance/data-loss-prevention-policies?view=o365-worldwide
https://docs.microsoft.com/en-us/microsoft-365/compliance/what-the-dlp-policy-templates-include?view=o365-w
NEW QUESTION 44
You have a Microsoft 365 subscription. All users use Microsoft Exchange Online.
Microsoft 365 is configured to use the default policy settings without any custom rules.
You manage message hygiene.
Where are suspicious email messages placed by default? To answer, drag the appropriate location to the correct message types. Each location may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.
Answer:
Explanation:
Explanation
NEW QUESTION 45
You need to ensure that administrators can publish a label that adds a footer to email messages and documents.
To complete this task, sign in to the Microsoft Office 365 portal.
Answer:
Explanation:
You need to configure a Sensitivity label.
Go to the Security & Compliance Admin Center.
Navigate to Classification > Sensitivity labels.
Click on + Create a label to create a new label.
Give the label a name and description then click Next.
Leave the Encryption option as None and click Next.
On the Content Marking page, tick the checkbox Add a footer.
Click the Customize Text link and add the footer text and click Save (for the question, it doesn't matter what text you add).
Click Next.
Leave the Auto-labeling for Office apps off and click Next.
Click the Submit button to save your changes.
The label is now ready to be published. Click the Done button to exit the page and create the label.
NEW QUESTION 46
You need to implement Windows Defender ATP to meet the security requirements. What should you do?
- A. Run WindowsDefenderATPOnboardingScript.cmd
- B. Configure port mirroring
- C. Create the ForceDefenderPassiveMode registry setting
- D. Download and install the Microsoft Monitoring Agent
Answer: D
Explanation:
Explanation/Reference:
Testlet 3
Overview
Contoso, Ltd. is a consulting company that has a main office in Montreal and three branch offices in
Seattle, and New York.
The company has the offices shown in the following table.
Contoso has IT, human resources (HR), legal, marketing, and finance departments. Contoso uses
Microsoft 365.
Existing Environment
Infrastructure
The network contains an Active Directory domain named contoso.com that is synced to a Microsoft Azure
Active Directory (Azure AD) tenant. Password writeback is enabled.
The domain contains servers that run Windows Server 2016. The domain contains laptops and desktop
computers that run Windows 10 Enterprise.
Each client computer has a single volume.
Each office connects to the Internet by using a NAT device. The offices have the IP addresses shown in
the following table.
Named locations are defined in Azure AD as shown in the following table.
From the Multi-Factor Authentication page, an address space of 198.35.3.0/24 is defined in the trusted IPs
list.
Azure Multi-Factor Authentication (MFA) is enabled for the users in the finance department.
The tenant contains the users shown in the following table.
The tenant contains the groups shown in the following table.
Customer Lockbox is enabled in Microsoft 365.
Microsoft Intune Configuration
The devices enrolled in Intune are configured as shown in the following table.
The device compliance policies in Intune are configured as shown in the following table.
The device compliance policies have the assignments shown in the following table.
The Mark devices with no compliance policy assigned as setting is set to Compliant.
Requirements
Technical Requirements
Contoso identifies the following technical requirements:
Use the principle of least privilege
Enable User1 to assign the Reports reader role to users
Ensure that User6 approves Customer Lockbox requests as quickly as possible
Ensure that User9 can implement Azure AD Privileged Identity Management
Question Set 4
NEW QUESTION 47
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some questions sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have a Microsoft 365 subscription.
You have a user named User1. Several users have full access to the mailbox of User1.
Some email messages sent to User1 appear to have been read and deleted before the user viewed them.
When you search the audit log in Security & Compliance to identify who signed in to the mailbox of User1, the results are blank.
You need to ensure that you can view future sign-ins to the mailbox of User1.
You run the Set-AuditConfig -Workload Exchange command.
Does that meet the goal?
- A. No
- B. Yes
Answer: A
Explanation:
Explanation
References:
https://docs.microsoft.com/en-us/powershell/module/exchange/policy-and-compliance-audit/set-auditconfig?view
NEW QUESTION 48
You have a Microsoft 365 subscription that uses a default domain name of contoso.com.
Microsoft Azure Active Directory (Azure AD) contains the users shown in the following table.
Microsoft Intune has two devices enrolled as shown in the following table:
Both devices have three apps named App1, App2, and App3 installed.
You create an app protection policy named ProtectionPolicy1 that has the following settings:
* Protected apps: App1
* Exempt apps: App2
* Windows Information Protection mode: Block
You apply ProtectionPolicy1 to Group1 and Group3. You exclude Group2 from ProtectionPolicy1.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
Answer:
Explanation:
NEW QUESTION 49
You have a Microsoft 365 subscription.
You need to create data loss prevention (DLP) queries in Microsoft SharePoint Online to find sensitive data stored in sites.
Which type of site collection should you create first?
- A. eDiscovery Center
- B. Records Center
- C. Document Center
- D. Enterprise Search Center
Answer: A
Explanation:
Explanation/Reference:
https://support.office.com/en-us/article/overview-of-data-loss-prevention-in-sharepoint-server-2016-80f907bb- b944-448d-b83d-8fec4abcc24c
NEW QUESTION 50
You have an Azure Active Directory (Azure AD) tenant named contoso.com that contains the users shown in the following table.
You register devices in contoso.com as shown in the following table.
You create app protection policies in Intune as shown in the following table.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Explanation
References:
https://docs.microsoft.com/en-us/intune/apps/app-protection-policy
NEW QUESTION 51
......
Microsoft MS-500 Exam Syllabus Topics:
| Topic | Details |
|---|---|
Implement and manage identity and access (30-35%) | |
| Secure Microsoft 365 hybrid environments | -plan Azure AD authentication options -plan Azure AD synchronization options -monitor and troubleshoot Azure AD Connect events |
| Secure Identities | -implement Azure AD group membership -implement password management -configure and manage identity governance |
| Implement authentication methods | -plan sign-on security -implement multi-factor authentication (MFA) by using conditional access policy -manage and monitor MFA -plan and implement device authentication methods like Windows Hello -configure and Manage Azure AD user authentication options and self-service password management |
| Implement conditional access | -plan for compliance and conditional access policies -configure and manage device compliance for endpoint security -Implement and manage conditional access |
| Implement role-based access control (RBAC) | -plan for roles -configure roles -Audit roles |
| Implement Azure AD Privileged Identity Management (PIM) | -plan for Azure PIM -assign eligibility and activate admin roles -manage Azure PIM role requests and assignments - monitor PIM history and alerts |
| Implement Azure AD Identity Protection | -implement user risk policy -implement sign-in risk policy -configure Identity Protection alerts -review and respond to risk events |
Implement and manage threat protection (20-25%) | |
| Implement an enterprise hybrid threat protection solution | -plan a Microsoft Defender for Identity solution -install and configure Microsoft Defender for Identity -monitor and manage Microsoft Defender for Identity |
| Implement device threat protection | -plan a Microsoft Defender for Endpoint solution -implement Microsoft Defender for Endpoint -manage and monitor Microsoft Defender for Endpoint |
| Implement and manage device and application protection | -plan for device and application protection -configure and manage Microsoft Defender Application Guard -configure and manage Microsoft Defender Application Control -configure and manage exploit protection -configure Secure Boot -configure and manage Windows device encryption -configure and manage non-Windows device encryption -plan for securing applications data on devices -implement application protection policies |
| Implement and manage Microsoft Defender for Office 365 | -configure Microsoft Defender for Office 365 - monitor Microsoft Defender for Office 365 -conduct simulated attacks using Attack Simulator |
| Monitor Microsoft 365 Security with Azure Sentinel | -Plan and implement Azure Sentinel -Configure playbooks in Azure Sentinel - Manage and monitor Azure Sentinel - Respond to threats in Azure Sentinel |
Implement and manage information protection (15-20%) | |
| Secure data access within Office 365 | -implement and manage Customer Lockbox -configure data access in Office 365 collaboration workloads -configure B2B sharing for external users |
| Manage sensitivity labels | -plan a sensitivity label solution -configure Sensitivity labels and policies -configure and use label analytics - use sensitivity labels with Teams, Sharepoint, OneDrive and Office apps |
| Manage Data Loss Prevention (DLP) | -plan a DLP solution -create and manage DLP policies -create and manage sensitive information types -monitor DLP reports -manage DLP notifications |
| Implement and manage Microsoft Cloud App Security | -plan Cloud App Security implementation -configure Microsoft Cloud App Security -manage cloud app discovery -manage entries in the Cloud app catalog -manage apps in Cloud App Security -manage Microsoft Cloud App Security -configure Cloud App Security connectors and Oauth apps -configure Cloud App Security policies and templates -review, interpret and respond to Cloud App Security alerts, reports, dashboards and logs |
Manage governance and compliance features in Microsoft 365 (25-30%) | |
| Configure and analyze security reporting | -monitor and manage device security status using Microsoft Endpoint Manager AdminCenter -manage and monitor security and dashboards using Microsoft 365 SecurityCenter -plan for custom security reporting with Graph Security API -use secure score dashboards to review actions and recommendations -configure alert policies |
| Manage and analyze audit logs and reports | -plan for auditing and reporting -perform audit log search -review and interpret compliance reports and dashboards -configure audit alert policy |
| Manage data governance and retention | -plan for data governance and retention -review and interpret data governance reports and dashboards -configure retention labels and policies -define data governance event types -define and manage communication compliance policies -configure Information holds -find and recover deleted Office 365 data -configure data archiving -manage inactive mailboxes |
| Manage search and investigation | -plan for content search and eDiscovery -delegate permissions to use search and discovery tools -use search and investigation tools to perform content searches -export content search results -manage eDiscovery cases |
| Manage data privacy regulation compliance | -plan for regulatory compliance in Microsoft 365 -review and interpret GDPR dashboards and reports -manage Data Subject Requests (DSRs) -Administer Compliance Manager in Microsoft 365 compliance center -review Compliance Manager reports -create and perform Compliance Manager assessments and action items |
MS-500 Exam topics
Candidates must know the exam topics before they start of preparation. Because it will really help them in hitting the core. Our MS-500 dumps will include the following topics:
- Implement and manage information protection 15-20%
- Implement and manage identity and access 30-35%
- Implement and manage threat protection 20-25%
- Manage governance and compliance features in Microsoft 365 25-30%
Microsoft MS-500 Actual Questions and Braindumps: https://www.actualtorrent.com/MS-500-questions-answers.html
Pass MS-500 Exam with Updated MS-500 Exam Dumps PDF 2021: https://drive.google.com/open?id=1W-oQo270eUb5I0QcGTXo98PVh44kH8qq