Font size
WorksheetsMicrosoft 365 Unified Endpoint Management
Total questions: 28
Worksheet time: 16mins
Which of the following statements is correct?
Configuration Manager manages both on-premises infrastructure and cloud-based functions.
Intune manages both on-premises infrastructure and cloud-based functions.
Configuration Manager manages on-premises infrastructure and Intune manages cloud-based functions.
Microsoft Intune is a cloud and on-premise technology.
Which technology links users, devices, and applications across both cloud and on-premises environments, enabling Configuration Manager and Intune to work together?
Azure Multi-Factor Authentication (MFA)
Azure AD Premium
Azure Advanced Threat Protection (ATP)
Azure User-Device Management
Why using Mutlfactor Authentication?
MFA is more secure than passwords
Protect your identities
Very easy to use
Provide users secure, seamless access to all their apps with single sign-on
Which of the following is not what Microsoft 365 uses to identify who is accessing which resources
Microsoft Intune Checker
Identity Protection features
Conditional Access
Secure Authentication
Which statement is wrong? Remeber MFA is Multi Factor Authentication?
MFA works by requiring 2 or more authentication methods
MFA works by requiring any 2 authentications
Sign-in process may include enter a code cellphone, fingerprint, smartcard
delivers strong authentication through easy to use authentication methods
What Identity & Access Management security measures evaluates access requests against different criteria and compares this criteria to policies that you define
User Verification
Conditional Access
Threat Recognition
Microsoft Access Scanning
Which of the following operating systems are supported with Intune?
Windows 10
macOS Sierra (10.12)
iOS11
Android 7.0
Windows Server 2016
You have a Windows 10 laptop that is enrolled in Intune. You wish to factory reset the laptop but retain the user data. What two pre-requisites are needed in order to achieve this?
Retain enrollment state and user account status must be selected.
Bitlocker must be enabled on the C drive.
The version of Windows 10 must be 1709 or later.
The user must have Windows Hello setup on the device.
Microsoft Endpoint Manager unifies
Microsoft Intune
Microsoft Azure Manager
Endpoint Configuration Manager
Endpoint Defender
Other Endpoint Management Tools include:
Microsoft Defender Advanced Threat Protection (ATP)
Desktop Analytics
Endpoint Detection Remediation
Azure Active Directory (AD)
Windows Autopilot
What are the challenges faced by IT departments supporting different devices in today's workplace (Choose all that applies)
Mobile devices that connect to unsecured networks
Mobile devices that intermittently connect to organisational networks
User-owned mobile devices
Lost or stolen devices
Compromised devices that connect to the internal network.
Microsoft Endpoint Manager (MEM) helps you solve the challenge of device management in today’s mobile and remote work environment.
True
False
Integrating Endpoint configuration manager and Intune can happen in three ways
Client Attach
Tenant Attach
Cloud Attach
Cloud Hosting
Integrating Microsoft Intune with Azure Information Protection produces
Identity & Access Control
Data Protection
Azure Advanced Threat Protection
Azure Active Directory
Integrating Microsoft Intune with Azure Actiive Directory produces
Azure Active Directory
Azure Advanced Threat Protection
Identity and Access Control
Access Control Group Policy
Microsoft Endpoint Configuration Manager has a rich set of capabilities that allow you to customize the following areas (Choose all that applies):
Application management
Operating System deployment
Software update management
Device compliance
_____________________ delivers preventative protection, post-breach detection, automated investigation, and response
Microsoft Intune
Microsoft Threat Preventer
Microsoft Defender Advanced Threat Protection
Endpoint Configuration Protection
Self-service password reset is included in which Azure AD level(s)?
Basic Only
P1 Only
P2 Only
P1 & P2
All Levels
Microsoft InTune can be used to ___________________.
Enforce security policies
Deploy applications
Remotely wipe devices
All of the above
None of the above
As the administrator for your organization, you wish to customize the out of box experience for new Windows 10 machines and to deploy your organization's applications. Which solution below can help you achieve this?
Windows Update Services
Windows Autopilot
Windows Update for Business
None of the above
As the Microsoft 365 administrator for your organization, you need to leverage a tool that identifies and detects advanced threats and compromised identities. Which security tool should you leverage?
Azure Advanced Threat Protection
Azure Active Directory Identity Protection
Azure Information Protection
None of the above
Your organization has come to you and asked that you deploy a solution that protects documents and emails by automatically applying classifications and labels to them. You decide to implement Microsoft Azure Information Protection for Microsoft Office 365. Does this meet your needs?
True
False
Your manager has come to you and asked you to ensure that user logins are secure by forcing people to login with more than just a username and password. Which solution should you implement to accomplish this?
Microsoft Intune
Active Directory Federation Services
Azure MFA
Pass-through Authentication and Single Sign-On
Your organization uses Microsoft Intune to manage mobile devices. If an employee loses Windows 10 device that contains corporate data, what can you do to secure that lost data as quickly as possible?
Perform Device Tracking
Disable the Device
Wipe the Device
None of the above
It's a Monday afternoon and multiple users have come to you and indicated that they have received an email which included a PDF attachment that launches malicious code when clicked. Which feature or tool would help mitigate these threats?
Azure Information Protection
Sender Policy Framework
Advanced Threat Protection
Microsoft Intune
Your organization has just purchased Microsoft 365 Enterprise and Azure AD P2 licenses for all users. You've been asked to protect your organization against malicious login attempts. Which solution below should you deploy?
Azure AD Priviledged Identity Management
Azure Role-Based Access Control
Azure AD Identity Protection
Azure Identity and Access Management
You have been asked to ensure that when users sign in to Microsoft 365, they must use a two-step verification system. Which feature should you use?
Microsoft Intune
Advanced Threat Protection
Multi-Factor Authentication
Azure AD PIM
As the Microsoft 365 administrator for your organization, you've been tasked with ensuring that only trusted users can access corporate resources from trusted devices, using trusted applications. Which functionality should you leverage to accomplish this?
Role-Based Access Control
Conditional Access
Privileged Identity Management
None of the above
