Microsoft 365 Copilot and Agent Administration Fundamentals AB-900 Dumps in PDF

Free Microsoft AB-900 Real Questions (page: 13)

HOTSPOT (Drag and Drop is not supported)

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

Note: Each correct selection is worth one point.

Hot Area:

  1. See Explanation section for answer.

Answer(s): A

Explanation:



Box 1: Yes
Yes - Microsoft Defender for Office 365 provides protection from phishing and malware attacks.

Microsoft Defender for Office 365 (Plan 1 & 2) provides comprehensive, cloud-based protection against advanced, zero-day threats in emails, links, and collaboration tools like SharePoint and Teams. It uses AI- driven analysis to block phishing, ransomware, and malware, and includes features like Zero-hour Auto Purge (ZAP), attack simulation training, and detailed threat reporting.

Box 2: Yes
Yes - Microsoft Defender for Identity monitor identities in Active Directory domains.

Microsoft Defender for Identity (MDI) is a cloud-based security solution that monitors on-premises Active Directory (AD) environments using sensors installed directly on domain controllers. It detects advanced threats, compromised identities, and malicious insider actions by analyzing user behavior, network traffic, and AD queries.

Box 3: No
No - Microsoft Defender for Vulnerability Management provides protection for software as a service (SaaS) applications.

While Microsoft Defender for Vulnerability Management is a powerful tool, it does not directly provide protection for software as a service (SaaS) applications. Instead, its primary focus is on identifying and remediating vulnerabilities across endpoints (Windows, macOS, Linux, Android, iOS), network devices, and cloud workloads.

Protection specifically for SaaS applications is provided by a different solution, Microsoft Defender for Cloud Apps.


Reference:

https://learn.microsoft.com/en-us/defender-office-365/anti-malware-protection-about https://learn.microsoft.com/en-us/defender-for-identity/what-is https://learn.microsoft.com/en-us/defender-vulnerability-management/defender-vulnerability- management



HOTSPOT (Drag and Drop is not supported)

Your organization has a Microsoft 365 subscription that contains a Microsoft SharePoint site named Site1. The permissions for Site1 are configured as shown in the following exhibit.



You create a new user named User1 in the subscription.

Use the drop-down menus to select the answer choice that completes the statement based on the information presented in the graphic.

Hot Area:

  1. See Explanation section for answer.

Answer(s): A

Explanation:



Box: a site member of
User1 is ______________ Site1.

When a new user is added to the Microsoft 365 subscription, they will automatically have access to this SharePoint site with the specified permissions.

Because the site is configured with the built-in group "Everyone except external users" granted Edit permissions, the following occurs:
Automatic Group Membership: Every new internal user added to the tenant is automatically included in the "Everyone except external users" group.

Inherited Permissions: Since this group already has Edit permissions on the site, the new user inherits those rights immediately upon account creation without requiring manual intervention from a site owner.

Access Method: The user can access the site as soon as they have the URL; they do not need to be invited individually.


Reference:

https://andrewwarland.wordpress.com/2025/05/13/allowing-everyone-except-external-users-to-access- private-group-based-sites



Your organization has a Microsoft 365 subscription.

You create a security group named Group1 and assign a Microsoft 365 E3 license to the group.

You discover that a user named User1 does NOT have access to the Microsoft 365 E3 features.

You need to ensure that User1 can access all the Microsoft 365 E3 features.

Which two actions can you perform? Each correct answer presents a complete solution.

Note: Each correct selection is worth one point.

  1. Add User1 to Group1.
  2. Assign a Conditional Access policy to Group1.
  3. Assign a Conditional Access policy to User1.
  4. Assign a license to User1.

Answer(s): A,D

Explanation:

You can license a user with Microsoft 365 E3 either by adding them to a licensed security group or by direct assignment in the Microsoft 365 admin center. Group-based licensing automatically assigns licenses to members, which is ideal for automation, while direct assignment is better for individual, immediate, or one-off licensing needs.


Reference:

https://learn.microsoft.com/en-us/microsoft-365/enterprise/assign-licenses-to-user-accounts



HOTSPOT (Drag and Drop is not supported)

Select the answer that correctly completes the sentence.

Hot Area:

  1. See Explanation section for answer.

Answer(s): A

Explanation:



Box: site
From the SharePoint admin center, you can create a __________.

You can create a new SharePoint site directly from the SharePoint admin center by navigating to Active sites and selecting Create. Admins can choose to create either a Team site (for collaboration, connected to a Microsoft 365 group) or a Communication site (for broadcasting information).


Reference:

https://learn.microsoft.com/en-us/sharepoint/create-site-collection



HOTSPOT (Drag and Drop is not supported)

Select the answer that correctly completes the sentence.

Hot Area:

  1. See Explanation section for answer.

Answer(s): A

Explanation:



Box: manage a Teams Rooms device
From the Microsoft Teams admin center, you can ________________.

From the Microsoft Teams admin center, you can perform a variety of management and monitoring tasks for Teams Rooms devices.
While the Teams Rooms Pro Management portal offers more advanced analytics and remediation, the Teams admin center provides essential administrative controls for both Windows and Android-based systems.

Incorrect:
* can assign a Teams license to a user
You manage and assign Microsoft Teams product licenses primarily through the Microsoft 365 admin center or via PowerShell, rather than the Microsoft Teams admin center.

* deploy the Teams client
From the Microsoft Teams admin center, you cannot directly deploy the Teams desktop client itself. Instead, you use it to manage Teams apps and update policies.

* prevent users from creating teams
Preventing users from creating Microsoft Teams is primarily managed by restricting the ability to create underlying Microsoft 365 Groups via PowerShell in the Entra ID (Azure AD) admin center, not directly in the Teams admin center UI.


Reference:

https://techcommunity.microsoft.com/blog/microsoftteamsblog/one-place-to-manage-all-your-teams- devices/1527766



Your organization has a Microsoft 365 subscription.

You discover that some users cannot sign in to Microsoft 365.

You need to view the failed Microsoft 365 sign-in attempts.

What should you use?

  1. the Microsoft Defender portal
  2. the Microsoft Entra admin center
  3. the Microsoft Purview portal
  4. the Microsoft 365 admin center

Answer(s): B

Explanation:

To view failed sign-in attempts for your Microsoft 365 users, you should use the Microsoft Entra admin center.
While basic user information is available in the standard Microsoft 365 admin center, the Entra portal provides the detailed logs necessary for troubleshooting authentication failures.


Reference:

https://learn.microsoft.com/en-us/entra/identity/monitoring-health/howto-troubleshoot-sign-in-errors



HOTSPOT (Drag and Drop is not supported)

Select the answer that correctly completes the sentence.

Hot Area:

  1. See Explanation section for answer.

Answer(s): A

Explanation:



Box: active the role.
In Microsoft Entra Privileged Identity Management (PIM), an administrator has made you eligible for the User Administrator role. Before you can create a user account, you must _________ Once activated, the role remains active only for the duration set (e.g., 1 hour), after which it automatically deactivates. You can now proceed to create the user account in Microsoft Entra ID.

To activate the User Administrator role in Microsoft Entra Privileged Identity Management (PIM) and create a user account, follow these steps in the Microsoft Entra admin center:

Steps to Activate the Role
1. Sign in to the Microsoft Entra admin center.

2. Navigate to Identity Governance > Privileged Identity Management > My roles.

3. Select Microsoft Entra roles to view your eligible roles.

4. Find the User Administrator role and click Activate.

5. Complete Activation Steps:
Verify Identity: Click "Additional verification required" and complete the multifactor authentication (MFA) challenge, if prompted.
Select Scope (Optional): If you only need to create users within a specific administrative unit, select that scope. Reason/Duration: Enter a business justification in the "Reason" box and set the required duration for the role.

6. Click Activate.


Reference:

https://learn.microsoft.com/en-us/entra/id-governance/privileged-identity-management/pim-how-to-activate-role



Your organization has a Microsoft 365 subscription that contains a Microsoft SharePoint site named Site1.

You need to prevent users from sharing the content of Site1 to external users.

What should you use?

  1. the Site1 content
  2. the SharePoint admin center
  3. the Microsoft 365 admin center
  4. the Microsoft Entra admin center

Answer(s): B

Explanation:

To prevent users from sharing content with external users on a specific SharePoint site, you should use the SharePoint admin center.
Steps to Restrict Sharing for a Specific Site
If external sharing is enabled for your entire organization but you want to block it for one specific site, follow these steps:
1. Sign in to the SharePoint admin center using an account with admin permissions.
2. In the left-hand navigation pane, expand Sites and select Active sites.
3. Select the site name you want to restrict to open its details panel.
4. Navigate to the Settings tab and, under the External file sharing section, select More sharing settings.
5. Change the sharing level to Only people in your organization.
6. Select Save to apply the changes.


Reference:

https://support.microsoft.com/en-us/office/turn-external-sharing-on-or-off-for-individual-sites-site-collections- fee958e6-92f5-4d8f-9c32-d7c05c8cdb8c



Share your comments for Microsoft AB-900 exam with other users:

G
Gurgaon
9/28/2023 4:35:00 AM

great questions

W
wasif
10/11/2023 2:22:00 AM

its realy good

S
Shubhra Rathi
8/26/2023 1:12:00 PM

oracle 1z0-1059-22 dumps

L
Leo
7/29/2023 8:48:00 AM

please share me the pdf..

A
AbedRabbou Alaqabna
12/18/2023 3:10:00 AM

q50: which two functions can be used by an end user when pivoting an interactive report? the correct answer is a, c because we do not have rank in the function pivoting you can check in the apex app

R
Rohan Limaye
12/30/2023 8:52:00 AM

best to practice

A
Aparajeeta
10/13/2023 2:42:00 PM

so far it is good

V
Vgf
7/20/2023 3:59:00 PM

please provide me the dump

D
Deno
10/25/2023 1:14:00 AM

i failed the cisa exam today. but i have found all the questions that were on the exam to be on this site.

C
CiscoStudent
11/15/2023 5:29:00 AM

in question 272 the right answer states that an autonomous acces point is "configured and managed by the wlc" but this is not what i have learned in my ccna course. is this a mistake? i understand that lightweight aps are managed by wlc while autonomous work as standalones on the wlan.

P
pankaj
9/28/2023 4:36:00 AM

it was helpful

U
User123
10/8/2023 9:59:00 AM

good question

V
vinay
9/4/2023 10:23:00 AM

really nice

U
Usman
8/28/2023 10:07:00 AM

please i need dumps for isc2 cybersecuity

Q
Q44
7/30/2023 11:50:00 AM

ans is coldline i think

A
Anuj
12/21/2023 1:30:00 PM

very helpful

G
Giri
9/13/2023 10:31:00 PM

can you please provide dumps so that it helps me more

A
Aaron
2/8/2023 12:10:00 AM

thank you for providing me with the updated question and answers. this version has all the questions from the exam. i just saw them in my exam this morning. i passed my exam today.

S
Sarwar
12/21/2023 4:54:00 PM

how i can see exam questions?

C
Chengchaone
9/11/2023 10:22:00 AM

can you please upload please?

M
Mouli
9/2/2023 7:02:00 AM

question 75: option c is correct answer

J
JugHead
9/27/2023 2:40:00 PM

please add this exam

S
sushant
6/28/2023 4:38:00 AM

please upoad

J
John
8/7/2023 12:09:00 AM

has anyone recently attended safe 6.0 certification? is it the samq question from here.

B
Blessious Phiri
8/14/2023 3:49:00 PM

expository experience

C
concerned citizen
12/29/2023 11:31:00 AM

52 should be b&c. controller failure has nothing to do with this type of issue. degraded state tells us its a raid issue, and if the os is missing then the bootable device isnt found. the only other consideration could be data loss but thats somewhat broad whereas b&c show understanding of the specific issues the question is asking about.

D
deedee
12/23/2023 5:10:00 PM

great help!!!

S
Samir
8/1/2023 3:07:00 PM

very useful tools

S
Saeed
11/7/2023 3:14:00 AM

looks a good platform to prepare az-104

M
Matiullah
6/24/2023 7:37:00 AM

want to pass the exam

S
SN
9/5/2023 2:25:00 PM

good resource

Z
Zoubeyr
9/8/2023 5:56:00 AM

question 11 : d

U
User
8/29/2023 3:24:00 AM

only the free dumps will be enough for pass, or have to purchase the premium one. please suggest.

C
CW
7/6/2023 7:37:00 PM

good questions. thanks.

AI Tutor 👋 I’m here to help!