MS-102 Actual Exam Questions

Last updated on May 30, 2025.
Vendor:Microsoft
Exam Code:MS-102
Exam Name:Microsoft 365 Administrator
Exam Questions:383
Question #181 Topic 1

HOTSPOT
-

You have a Microsoft 365 E5 subscription.

You need to configure threat protection for Microsoft 365 to meet the following requirements:

• Limit a user named User1 from sending more than 30 email messages per day.
• Prevent the delivery of a specific file based on the file hash.

Which two threat policies should you configure in Microsoft Defender for Office 365? To answer, select the appropriate threat policies in the answer area.

NOTE: Each correct selection is worth one point.

Reveal Solution Hide Solution   Discussion   4

Correct Answer:

Question #182 Topic 1

You have a Microsoft 365 subscription that uses Microsoft Defender for Office 365.

A Built-in protection preset security policy is applied to the subscription.

Which two policy types will be applied by the Built-in protection policy? Each correct answer presents a complete solution.

NOTE: Each correct selection is worth one point.

  • A. Anti-malware
  • B. Safe Attachments
  • C. Safe Links
  • D. Anti-phishing
  • E. Anti-spam
Reveal Solution Hide Solution   Discussion   4

Correct Answer: BC 🗳️

Community vote distribution
BC (100%)

Question #183 Topic 1

HOTSPOT
-

You have a Microsoft 365 E5 subscription that contains the users shown in the following table.



The subscription has the following two anti-spam policies:

• Name: AntiSpam1
• Priority: 0
• Include these users, groups and domains
• Users: User3
• Groups: Group1
• Exclude these users, groups and domains
• Groups: Group2
• Message limits
• Set a daily message limit: 100

• Name: AntiSpam2
• Priority: 1
• Include these users, groups and domains
• Users: User1
• Groups: Group2
• Exclude these users, groups and domains
• Groups: Group3
• Message limits
• Set a daily message limit: 50

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

NOTE: Each correct selection is worth one point.

Reveal Solution Hide Solution   Discussion   18

Correct Answer:

Question #184 Topic 1

You have a Microsoft 365 E5 subscription that uses Microsoft Defender for Office 365.

You have the policies shown in the following table.



All the policies are configured to send malicious email messages to quarantine.

Which policies support a customized quarantine retention period?

  • A. Policy1 and Policy2 only
  • B. Policy1 and Policy3 only
  • C. Policy2 and Policy4 only
  • D. Policy3 and Policy4 only
Reveal Solution Hide Solution   Discussion   2

Correct Answer: A 🗳️

Community vote distribution
A (100%)

Question #185 Topic 1

You have a Microsoft 365 E5 subscription.

Your company’s Microsoft Secure Score recommends the actions shown in the following exhibit.



You select Create Safe Links policies for email messages and change Status to Risk accepted in the Status & action plan settings.

How does the change affect the Secure Score?

  • A. remains the same
  • B. increases by 1 point
  • C. increases by 9 points
  • D. decreases by 1 point
  • E. decreases by 9 points
Reveal Solution Hide Solution   Discussion   9

Correct Answer: A 🗳️

Community vote distribution
A (78%)
E (22%)

Question #186 Topic 1

DRAG DROP
-

You have a Microsoft 365 E5 subscription that contains the devices shown in the following table.



You need to onboard the devices to Microsoft Defender for Endpoint. The solution must minimize administrative effort.

What should you use to onboard each type of device? To answer, drag the appropriate onboarding methods to the correct device types. Each onboarding method may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.

NOTE: Each correct selection is worth one point.

Reveal Solution Hide Solution   Discussion   22

Correct Answer:

Question #187 Topic 1

You have a Microsoft 365 E5 subscription.

You onboard all devices to Microsoft Defender for Endpoint.

You need to use Defender for Endpoint to block access to a malicious website at www.contoso.com.

Which two actions should you perform? Each correct answer presents part of the solution.

NOTE: Each correct answer is worth one point.

  • A. Create a web content filtering policy.
  • B. Enable Custom network indicators.
  • C. Enable automated investigation.
  • D. Create an indicator.
  • E. Configure an enforcement scope.
Reveal Solution Hide Solution   Discussion   9

Correct Answer: BD 🗳️

Community vote distribution
BD (90%)
10%

Question #188 Topic 1

HOTSPOT
-

You have a Microsoft 365 E5 subscription that contains the devices shown in the following table.



At 08:00, you create an incident notification rule that has the following configurations:

• Name: Notification1
• Notification settings
• Notify on alert severity: Low
• Device group scope: All (3)
• Details: First notification per incident
• Recipients: User1@contoso.com, User2@contoso.com

At 08:02, you create an incident notification rule that has the following configurations:

• Name: Notification2
• Notification settings
• Notify on alert severity: Low, Medium
• Device group scope: DeviceGroup1, DeviceGroup2
• Recipients: User1@contoso.com

In Microsoft 365 Defender, alerts are logged as shown in the following table.



For each of the following statements, select Yes if the statement is true. Otherwise, select No.

NOTE: Each correct selection is worth one point.

Reveal Solution Hide Solution   Discussion   19

Correct Answer:

Question #189 Topic 1

HOTSPOT
-

You have Microsoft 365 subscription.

You create an alert policy as shown in the following exhibit.



Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.

NOTE: Each correct selection is worth one point.

Reveal Solution Hide Solution   Discussion   9

Correct Answer:

Question #190 Topic 1

You have a Microsoft 365 E5 tenant.

You need to create a policy that will trigger an alert when unusual Microsoft Office 365 usage patterns are detected.

What should you use to create the policy?

  • A. the Microsoft Apps admin center
  • B. the Microsoft Purview compliance portal
  • C. the Microsoft 365 admin center
  • D. the Microsoft 365 Defender portal
Reveal Solution Hide Solution   Discussion   19

Correct Answer: D 🗳️

Community vote distribution
D (72%)
B (28%)

Previous Questions
file Viewing page 19 out of 39 pages.
Viewing questions 181-190 out of 383 questions
Next Questions
Browse atleast 50% to increase passing rate cup
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Loading ...