Question 59 of 88 from exam SC-300: Microsoft Identity and Access Administrator

Question 59 of 88 from exam SC-300: Microsoft Identity and Access Administrator

Question

HOTSPOT - You have an Azure Active Directory (Azure AD) tenant that contains Azure AD Privileged Identity Management (PIM) role settings for the User administrator role as shown in the following exhibit.

= ContosoAzureAD > Identity Governance > Privileged Identity Management

Role setting details - User Administrator
Privileged Identity Management | Azure AD roles

# Edit

Activation
seTmINe
Activation maximum duration (hours)
Require justification on activation
Requite ticket information on activation
On activation, require Azure MFA
Require approval to activate

Approvers

Assignment
SETTING

Allow permanent eligible assignment

Expire eligible assignments after

Allow permanent active assignment

Require Azure Multi-Factor Authentication on active assignment

Require justification on active assignment

ContosoAzureAD > User Administrator

stare

8 hour(s)

Yes

Yes

None

stare
No

15 day(s)
No

1 month(s)
No

No

Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.

NOTE: Each correct selection is worth one point.

Hot Area:

Answer Area

Auser who requires access to the User administration role must perform
multi-factor authentication (MFA) every [answer choice]

Before an eligible user can perform a task that requires the User
administrator role, the activation must be approved by a [answer choice]

hours
15 days
4 month

global administrator only

global administrator or privileged role administrator
permanently assigned user administrator
privileged role administrator only

Explanations