Microsoft SC-300 Exam Questions
Microsoft Identity and Access Administrator (Page 15 )

Updated On: 24-Mar-2026

HOTSPOT (Drag and Drop is not supported)
Your network contains an on-premises Active Directory Domain Services (AD DS) domain that syncs with Azure AD and contains the users shown in the following table.
In Azure AD Connect, Domain/OU Filtering is configured as shown in the following exhibit.
Azure AD Connect is configured as shown in the following exhibit.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.



  1. See Explanation section for answer.

Answer(s): A

Explanation:



You have 2,500 users who are assigned Microsoft Office 365 Enterprise E3 licenses. The licenses are assigned to individual users.
From the Groups blade in the Azure Active Directory admin center, you assign Microsoft Office 365 Enterprise E5 licenses to a group that includes all users.
You need to remove the Office 365 Enterprise E3 licenses from the users by using the least amount of administrative effort.
What should you use?

  1. the Update-MgGroup cmdlet
  2. the Licenses blade in the Azure Active Directory admin center
  3. the Set-WindowsProductKey cmdlet
  4. the Administrative units blade in the Azure Active Directory admin center

Answer(s): B



You have an Azure AD tenant that contains the users shown in the following table.
You need to compare the role permissions of each user. The solution must minimize administrative effort.
What should you use?

  1. the Microsoft 365 Defender portal
  2. the Microsoft 365 admin center
  3. the Microsoft Entra admin center
  4. the Microsoft Purview compliance portal

Answer(s): B



You have a Microsoft Exchange organization that uses an SMTP address space of contoso.com.
Several users use their contoso.com email address for self-service sign-up to Azure AD.
You gain global administrator privileges to the Azure AD tenant that contains the self-signed users.
You need to prevent the users from creating user accounts in the contoso.com Azure AD tenant for self-service sign-up to Microsoft 365 services.
Which PowerShell cmdlet should you run?

  1. Update-MgOrganization
  2. Update-MgPolicyPermissionGrantPolicyExclude
  3. Update-MgDomain
  4. Update-MgDomainFederationConfiguration

Answer(s): B



HOTSPOT (Drag and Drop is not supported)
You have an Azure AD tenant.
You need to configure the following External Identities features:
• B2B collaboration
• Monthly active users (MAU)-based pricing
Which two settings should you configure? To answer, select the settings in the answer area.
NOTE: Each correct selection is worth one point.

  1. See Explanation section for answer.

Answer(s): A

Explanation:



Viewing page 15 of 83
Viewing questions 71 - 75 out of 439 questions



Post your Comments and Discuss Microsoft SC-300 exam dumps with other Community members:

SC-300 Exam Discussions & Posts

AI Tutor 👋 I’m here to help!