Microsoft MS-101 Microsoft 365 Mobility and Security Online Training
Microsoft MS-101 Online Training
The questions for MS-101 were last updated at Jan 23,2025.
- Exam Code: MS-101
- Exam Name: Microsoft 365 Mobility and Security
- Certification Provider: Microsoft
- Latest update: Jan 23,2025
HOTSPOT
Your company has a Microsoft 365 subscription that uses an Azure Directory (Azure AD0 tenant named Contoso.com.
The tenant contains the users shown in the following table.
You create a relation label named Label1 that has the following configurations:
Retains content for five years.
Automatically deletes all content that is older than five years.
You turn on Auto labeling for Label1 b using a policy named Policy1.
Policy1 has the following configurations:
• Retains content for five years
• Automatically deletes all content that is older than five years
You turn on Auto labeling for Label 1 by using a policy named Policy1.
Policy has the following configurations:
• Applies to content that contains the word Merger
• Specifies the OneDrive accounts and SharePoint sites locations
You run the following command
Set RetentionConpliancePolicy Policy1 RestrictiveRelention $true Force
For each of the following statements select Yes if the statement is true Otherwise, select No NOTE: Each correct selection is worth one point.
Your company has a Microsoft 365 subscription that uses an Azure Active Directory (Azure AD) tenant named contoso.com. The tenant contains computers that run Windows 10 Enterprise and are managed by using Microsoft Intune.
The computers are configured as shown in the following table.
You plan to implement Windows Defender Application Guard for contoso.com.
You need to identify on which two Windows 10 computers Windows Defender Application Guard can be installed.
Which two computers should you identify? Each correct answer presents part of the solution. NOTE: Each correct selection is worth one point.
- A . Computer1
- B . Computer3
- C . Computer2
- D . Computer4
HOTSPOT
You have a Microsoft 365 subscription that contains three groups named
All users, Sales team, and Office users, and two users shown in the following table.
In Microsoft Endpoint Manager, you have the Policies for Office apps settings shown in the following exhibit.
The policies use the settings shown in the following table.
What is the default share folder location for User1 and the default Office theme for User2? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.
Your company has a Microsoft 365 subscription.
You need to identify which users performed the following privileged administration tasks:
• Deleted a folder from the second-stage Recycle Bin of Microsoft SharePoint
• Opened a mailbox of which the user was not the owner
• Reset a user password
What should you use?
- A . Microsoft Azure Active Directory (Azure AD) audit logs
- B . Security & Compliance content search
- C . Microsoft Azure Active Directory (Azure AD) sign-ins
- D . Security & Compliance audit log search
HOTSPOT
Your company uses Windows Defender Advanced Threat Protection (ATP).
Windows Defender ATP contains the device groups shown in the following table.
You onboard computers to Windows Defender ATP as shown in the following table.
Of which groups are Computer1 and Computer2 members? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.
You have a Microsoft Azure Active Directory (Azure AD) tenant named contoso.com.
You need to provide a user with the ability to sign up for Microsoft Store for Business for contoso.com. The solution must use the principle of least privilege.
Which role should you assign to the user?
- A . Cloud application administrator
- B . Application administrator
- C . Global administrator
- D . Service administrator
You have a Microsoft 365 subscription that contains the alerts shown in the following table.
Which properties of the alerts can you modify?
- A . Status only
- B . Status and Comment only
- C . Status and Severity only
- D . Status, Severity, and Comment only
- E . Status, Severity, Comment and Category
You have a Microsoft Azure Active Directory (Azure AD) tenant named Contoso.com.
You create a Microsoft Defender for identity instance Contoso.
The tenant contains the users shown in the following table.
You need to modify the configuration of the Defender for identify sensors.
Solutions: You instruct User1 to modify the Defender for identity sensor configuration.
Does this meet the goal?
- A . Yes
- B . No
HOTSPOT
You have several devices enrolled in Microsoft Endpoint Manager.
You have a Microsoft Azure Active Directory (Azure AD) tenant that includes the users shown in the following table.
The device type restrictions in Endpoint Manager are configured as shown in the following table.
You have a Microsoft 365 E5 tenant.
You need to evaluate compliance with European Union privacy regulations for customer data.
What should you do in the Microsoft 365 compliance center?
- A . Create a Data Subject Request (DSR)
- B . Create a data loss prevention (DLP) policy for General Data Protection Regulation (GDPR) data
- C . Create an assessment based on the EU GDPR assessment template
- D . Create an assessment based on the Data Protection Baseline assessment template