live chatMcAfee Secure sites help keep you safe from identity theft, credit card fraud, spyware, spam, viruses and online scams
Pass4Test 10%OFF Discount Code

Microsoft 365 Administrator (MS-102日本語版) - MS-102日本語 Exam Questions

QUESTION NO: 1
Microsoft Defender for Endpoint を使用する Microsoft 365 E5 サブスクリプションがあります。
ユーザーがパートナー企業のポータルにアクセスしようとすると、次のようなメッセージが表示されます。

パートナー企業のポータルへのユーザー アクセスを有効にする必要があります。
どの Microsoft Defender for Endpoint 設定を変更する必要がありますか?
Correct Answer: A
Explanation: Only visible for Pass4Test members. You can sign-up / login (it's free).
QUESTION NO: 2
Microsoft 365 E5 サブスクリプションをお持ちです。このサブスクリプションには、Windows 11 デバイスを所有するユーザーが含まれています。
デバイスをMicrosoft Defender for Endpointにオンボードする予定です。デバイスはプロキシサービスを介してDefender for Endpointに接続します。
Defender for Endpoint に接続する際に、デバイスが統合された URL と静的 IP 範囲を使用していることを確認する必要があります。どうすればよいでしょうか?
Correct Answer: B
QUESTION NO: 3
あなたのネットワークには、オンプレミスの Active Directory ドメイン サービス (AD DS) ドメインが含まれています。このドメインには、User1 という名前のユーザー ID が含まれています。
User2 という名前のユーザーを含む Microsoft Entra テナントがあります。
Microsoft Entra Cloud Sync を使用して、AD DS ドメインと Microsoft Entra テナントを同期する予定です。
ユーザー1がドメインにMicrosoft Entra Cloud Syncをインストールでき、ユーザー2がテナントでMicrosoft Entra Cloud Syncを構成できることを確認する必要があります。このソリューションは、最小権限の原則に従う必要があります。
User1 をどのグループに追加し、User2 にどのロールを割り当てる必要がありますか? 回答するには、回答領域で適切なオプションを選択してください。
Correct Answer:

Explanation:
QUESTION NO: 4
Microsoft Defender for Office 365 を使用し、Mailbox1 という名前のメールボックスを含む Microsoft 365 サブスクリプションがあります。
Mailbox1 を使用して、フィルターされていない電子メール メッセージを収集および分析する予定です。
Mailbox1 に配信された受信メールに対して Defender for Office 365 が何もアクションを起こさないようにする必要があります。
あなたは何をするべきか?
Correct Answer: B
QUESTION NO: 5
ホットスポット
Microsoft 365 E5 サブスクリプションをお持ちです。
会社所有のすべての Windows 11 デバイスは、Microsoft Defender for Endpoint にオンボードされます。
次の要件を満たすように Defender for Endpoint を構成する必要があります。
* 脆弱なアプリが更新されるまでブロックします。
* ファイル ハッシュに基づいてアプリケーション実行ファイルをブロックします。
ソリューションでは管理上の労力を最小限に抑える必要があります。
各要件に対して何を構成する必要がありますか? 回答するには、回答領域で適切なオプションを選択してください。
注意: 正しい選択ごとに 1 ポイントが付与されます。
Correct Answer:

Explanation:

Box 1: A remediation request
Block a vulnerable app until the app is updated.
Block vulnerable applications
How to block vulnerable applications
Go to Vulnerability management > Recommendations in the Microsoft Defender XDR portal.
Select a security recommendation to see a flyout with more information.
Select Request remediation.
Select whether you want to apply the remediation and mitigation to all device groups or only a few.
Select the remediation options on the Remediation request page. The remediation options are software update, software uninstall, and attention required.
Pick a Remediation due date and select Next.
Under Mitigation action, select Block or Warn. Once you submit a mitigation action, it is immediately applied.
Review the selections you made and Submit request. On the final page you can choose to go directly to the remediation page to view the progress of remediation activities and see the list of blocked applications.
Box 2: A file indicator
Block an application executable based on a file hash.
While taking the remediation steps suggested by a security recommendation, security admins with the proper permissions can perform a mitigation action and block vulnerable versions of an application. File indicators of compromise (IOC)s are created for each of the executable files that belong to vulnerable versions of that application. Microsoft Defender Antivirus then enforces blocks on the devices that are in the specified scope.
The option to View details of blocked versions in the Indicator page brings you to the Settings > Endpoints > Indicators page where you can view the file hashes and response actions.
Reference:
https://learn.microsoft.com/en-us/microsoft-365/security/defender-vulnerability-management/tvm-block-vuln-apps
QUESTION NO: 6
ホットスポット
新しい Microsoft 365 E5 テナントがあります。
セキュリティのデフォルトの有効化が「はい」に設定されています。
ユーザーが初めてテナントにサインインします。
ユーザーはどの多要素認証 (MFA) 方法を使用できますか? また、MFA に登録するには何日間必要ですか? 回答するには、回答領域で適切なオプションを選択します。
注意: 正しい選択ごとに 1 ポイントが付与されます。
Correct Answer:

Explanation:

Box 1: Notification to Microsoft Authenticator app
Do users have 14 days to register for Microsoft Entra ID Multi-Factor Authentication?
Users have 14 days to register for MFA with the Microsoft Authenticator app from their smart phones, which begins from the first time they sign in after security defaults has been enabled. After 14 days have passed, the user won ' t be able to sign in until MFA registration is completed.
Box 2: 14
Microsoft Entra ID Protection will prompt your users to register the next time they sign in interactively and they ' ll have 14 days to complete registration. During this 14-day period, they can bypass registration if MFA isn ' t required as a condition, but at the end of the period they ' ll be required to register before they can complete the sign-in process.
Reference:
https://learn.microsoft.com/en-us/microsoft-365/solutions/empower-people-to-work-remotely-secure-sign-in
https://learn.microsoft.com/en-us/azure/active-directory/identity-protection/howto-identity-protection-configure-mfa-policy
QUESTION NO: 7
Windows 11 デバイスを含む Microsoft 365 E5 サブスクリプションがあります。すべてのデバイスは、Microsoft Defender for Endpoint にオンボードされています。
デバイスの構成を業界標準のベンチマークと比較する必要があります。何を使用すればよいでしょうか?
Correct Answer: A
QUESTION NO: 8
サポート技術者がモントリオール オフィスのモバイル デバイスの技術要件を満たしていることを確認する必要があります。
専任のサポート技術者は最低どれくらい必要ですか?
Correct Answer: D
Explanation: Only visible for Pass4Test members. You can sign-up / login (it's free).
QUESTION NO: 9
Microsoft 365 E5 サブスクリプションをお持ちです。
サブスクリプションには、Microsoft Defender for Endpoint にデバイスがオンボードされているユーザーが含まれています。Defender for Endpoint は、Microsoft Defender for Cloud Apps に信号を転送するように構成されています。
Cloud Discovery は、App1 という名前の危険な Web アプリを識別します。
ユーザーがMicrosoft EdgeからApp1に接続することをブロックする必要があります。ユーザーが制限を回避できるようにする必要があります。
Defender for Endpoint と Defender for Cloud を統合するには、どのタイプのアプリタグを使用し、何を構成すればよいですか。

Correct Answer:

Explanation:
QUESTION NO: 10
お客様のオンプレミスネットワークには、Active Directoryドメインが含まれています。
あなたはMicrosoft 365のサブスクリプションをお持ちです。
ドメインとサブスクリプションを同期させる必要があります。ソリューションは以下の要件を満たす必要があります。
オンプレミスのActive Directoryにおけるパスワードの複雑性に関するポリシーは、必ず適用されなければなりません。
ユーザーは、Microsoft Entra ID のセルフサービスパスワードリセット (SSPR) を使用できる必要があります。
何を使うべきでしょうか?
Correct Answer: D
Explanation: Only visible for Pass4Test members. You can sign-up / login (it's free).
QUESTION NO: 11
100 台の Windows 10 デバイスを含む Microsoft 365 E5 テナントがあります。
Windows 10 デバイスの攻撃対象表面削減 (ASR) ルールを計画しているとします。
ASR ルールを監査モードで構成し、Log Analytics ワークスペースで監査データを収集します。
デバイス上のアクティビティに一致する ASR ルールを見つける必要があります。
Kusto クエリをどのように完了する必要がありますか?回答するには、回答領域で適切なオプションを選択してください。
注: 正しく選択するたびに 1 ポイントの価値があります。
Correct Answer:

Explanation:

Reference:
https://techcommunity.microsoft.com/t5/microsoft-defender-for-endpoint/demystifying-attack-surface-reduction-rules-part-3/ba-p/1360968
QUESTION NO: 12
Microsoft 365 テナントがあります。
会社のポリシーでは、すべての Windows 10 デバイスが次の最小要件を満たすことが求められています。
複雑なパスワードを要求します。
データストレージデバイスの暗号化を要求します。
Microsoft Defender ウイルス対策のリアルタイム保護を有効にします。
要件を満たさないデバイスがテナント内のリソースにアクセスできないようにする必要があります。
どの 2 つのコンポーネントを作成する必要がありますか?それぞれの正解は、解決策の一部を示しています。
注: 正しく選択するたびに 1 ポイントの価値があります。
Correct Answer: D,E
Explanation: Only visible for Pass4Test members. You can sign-up / login (it's free).