microsoft ms-500 practice test

Exam Title: Microsoft 365 Security Administration

Last update: Dec 07 ,2025
Note: Test Case questions are at the end of the exam
Question 1 Topic 3, Case Study 3Case Study Question View Case

HOTSPOT
You are evaluating which finance department users will be prompted for Azure MFA credentials.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Hot Area:

Answer:


Comments
Question 2 Topic 3, Case Study 3Case Study Question View Case

Which user passwords will User2 be prevented from resetting?

  • A. User6 and User7
  • B. User4 and User6
  • C. User4 only
  • D. User7 and User8
  • E. User8 only
Answer:

E


Explanation:
Assign the Password admin role to a user who needs to reset passwords for non-administrators and Password
Administrators.
Reference: https://docs.microsoft.com/en-us/microsoft-365/admin/add-users/about-admin-roles?view=o365-worldwide

vote your answer:
A
B
C
D
E
A 0 B 0 C 0 D 0 E 0
Comments
Question 3 Topic 3, Case Study 3Case Study Question View Case

You need to meet the technical requirements for User9. What should you do?

  • A. Assign the Privileged administrator role to User9 and configure a mobile phone number for User9
  • B. Assign the Compliance administrator role to User9 and configure a mobile phone number for User9
  • C. Assign the Security administrator role to User9
  • D. Assign the Global administrator role to User9
Answer:

D


Explanation:
To implement PIM, you must be a global admin.
Reference: https://docs.microsoft.com/en-us/azure/active-directory/privileged-identity-management/pim-getting-
started#enable-pim

vote your answer:
A
B
C
D
A 0 B 0 C 0 D 0
Comments
Question 4 Topic 3, Case Study 3Case Study Question View Case

Which role should you assign to User1?

  • A. Global administrator
  • B. User administrator
  • C. Privileged role administrator
  • D. Security administrator
Answer:

C


Explanation:
Privileged Role Administrator can manage role assignments in Azure Active Directory, as well as within Azure AD Privileged
Identity Management.
Reference:
https://docs.microsoft.com/en-us/azure/active-directory/roles/permissions-reference#privileged-role-administrator

vote your answer:
A
B
C
D
A 0 B 0 C 0 D 0
Comments
Question 5 Topic 4, Case Study 4Case Study Question View Case

HOTSPOT
You need to recommend an email malware solution that meets the security requirements.
What should you include in the recommendation? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Hot Area:

Answer:


Comments
Question 6 Topic 4, Case Study 4Case Study Question View Case

HOTSPOT
You install Azure ATP sensors on domain controllers.
You add a member to the Domain Admins group. You view the timeline in Azure ATP and discover that information
regarding the membership change is missing.
You need to meet the security requirements for Azure ATP reporting.
What should you configure? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Hot Area:

Answer:


Explanation:
References: https://docs.microsoft.com/en-us/azure-advanced-threat-protection/atp-advanced-audit-policy
Implement and manage threat protection

Comments
Question 7 Topic 5, Case Study 5Case Study Question View Case

DRAG DROP
You need to configure threat detection for Active Directory. The solution must meet the security requirements.
Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the
answer area and arrange them in the correct order.
Select and Place:

Answer:


Comments
Question 8 Topic 5, Case Study 5Case Study Question View Case

You need to enable and configure Microsoft Defender for Endpoint to meet the security requirements. What should you do?

  • A. Configure port mirroring
  • B. Create the ForceDefenderPassiveMode registry setting
  • C. Download and install the Microsoft Monitoring Agent
  • D. Run WindowsDefenderATPOnboardingScript.cmd
Answer:

C

vote your answer:
A
B
C
D
A 0 B 0 C 0 D 0
Comments
Question 9 Topic 6, Case Study 6Case Study Question View Case

HOTSPOT
You are evaluating which devices are compliant in Endpoint Manager.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Hot Area:

Answer:


Comments
Question 10 Topic 6, Case Study 6Case Study Question View Case

HOTSPOT
Which policies apply to which devices? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Hot Area:

Answer:


Explanation:
Implement and manage threat protection

Comments
Page 1 out of 36
Viewing questions 1-10 out of 370
Go To
page 2