
SC-900
Authored by Michael Nefzger
Computers
12th Grade
Used 8+ times

AI Actions
Add similar questions
Adjust reading levels
Convert to real-world scenario
Translate activity
More...
Content View
Student View
63 questions
Show all answers
1.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
An organization has deployed Microsoft 365 applications to all employees. Considering the shared responsibility model, who is responsible for the accounts and identities relating to these employees?
The Organization
Microsoft, the Saas provider
There's shared responsibility between an organization
Answer explanation
In the shared responsibility model, the customer organization always has responsibility for their data, including information and data relating to employees, devices, and accounts and identities.
2.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Which of the following measures might an organization implement as part of the defense in-depth security methodology?
Locating all its servers in a single physical location
Multifactor authentication for all users
Ensuring there's no segmentation of your corporate network
Answer explanation
Multifactor authentication is an example of defense in-depth at the identity and access layer.
3.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
The human resources organization wants to ensure that stored employee data is encrypted. Which security mechanism would they use?
Hashing
Encryption in transit
Encryption at rest
Answer explanation
Encryption at rest could be part of a security strategy to protect stored employee data.
4.
MULTIPLE CHOICE QUESTION
1 min • 1 pt
Which of the following best describes the concept of data sovereignty?
There are regulations that govern the physical locations where data can be stored and how and when it can be transferred, processed, or accessed internationally.
Data, particularly personal data, is subject to the laws and regulations of the country/region in which it's physically collected, held, or processed.
Trust no one, verify everything.
Answer explanation
Data sovereignty is the concept that data, particularly personal data, is subject to the laws and regulations of the country/region in which it's physically collected, held, or processed.
5.
MULTIPLE SELECT QUESTION
1 min • 1 pt
What are the six foundational pillars?
Identities
and
Devices
Applications
and
Data
Infrastructure
and
Networks
Saas
and
Paas
6.
MULTIPLE SELECT QUESTION
1 min • 1 pt
What is the zero trust guiding principles?
Verify explicitly
Least privileged access
Assume breach
Do not verify
7.
MULTIPLE SELECT QUESTION
45 sec • 1 pt
What are the two top-level types of encryption?
Symmetric encryption
uses the same key to encrypt and decrypt the data.
Asymmetric encryption
uses a public key and private key.
Either key can encrypt data, but a single key can not be used to decrypt encrypted data.
Access all questions and much more by creating a free account
Create resources
Host any resource
Get auto-graded reports

Continue with Google

Continue with Email

Continue with Classlink

Continue with Clever
or continue with

Microsoft
%20(1).png)
Apple
Others
Already have an account?