exam questions

Exam MS-100 All Questions

View all questions & answers for the MS-100 exam

Exam MS-100 topic 3 question 10 discussion

Actual exam question from Microsoft's MS-100
Question #: 10
Topic #: 3
[All MS-100 Questions]

HOTSPOT -
You have a Microsoft 365 subscription.
You are configuring permissions for Security & Compliance.
You need to ensure that the users can perform the tasks shown in the following table.

The solution must use the principle of least privilege.
To which role should you assign each user? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Hot Area:

Show Suggested Answer Hide Answer
Suggested Answer:
Security Reader: Members can manage security alerts (view only), and also view reports and settings of security features.
Security Administrator, Compliance Administrator and Organization Management can manage alerts. However, Security Administrator has the least privilege.
Reference:
https://docs.microsoft.com/en-us/office365/securitycompliance/permissions-in-the-security-and-compliance-center#mapping-of-role-groups-to-assigned-roles

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Rstilekar
Highly Voted 4 years, 6 months ago
User1 : This doc appears to say a Security Reader can download the reports. https://docs.microsoft.com/en-us/microsoft-365/compliance/download-existing-reports?view=o365-worldwide In general, global administrators, security administrators, and security readers can access and download reports in the Security & Compliance Center. Least privilege is for Security Reader. User2: Security Administrator, Compliance Administrator and Organization Management can manage alerts. However, Security Administrator has the least privilege.
upvoted 40 times
...
test123123
Highly Voted 5 years, 6 months ago
Both are Security Administrator.
upvoted 15 times
minajahan
5 years, 5 months ago
I agree. Since both (Security Administrator and Compliance Administrator) can do the things mentioned in the question. And keeping in mind the principle of least privilege, the list of "Assigned roles" for SA is limited as compared to CA.
upvoted 3 times
...
melatocaroca
4 years, 1 month ago
With my best respects your position about need to be revieved
upvoted 5 times
...
machinegf
3 years, 4 months ago
right, Global admin can also do that LOL.
upvoted 2 times
...
...
davem90
Most Recent 3 years, 8 months ago
Answer is correct! Security Reader & Security Administrator
upvoted 3 times
...
Rlcky
3 years, 10 months ago
Security Reader and Security Administrator. For Users 1 its Security Reader. To use the reports, you need to be a member of one of the following role groups in the Microsoft 365 Defender portal: Organization Management Security Administrator Security Reader Global Reader
upvoted 2 times
...
lengySK
3 years, 11 months ago
Both are Security Administrator.
upvoted 1 times
...
TimurKazan
3 years, 11 months ago
Following the principle of least privilege I would go with records management and security administrator.
upvoted 1 times
TimurKazan
3 years, 8 months ago
perhaps, security READER has less rights than records MANAGEMENT...
upvoted 5 times
...
...
Davidchercm
3 years, 11 months ago
security reader can download report :https://docs.microsoft.com/en-us/microsoft-365/compliance/download-existing-reports?view=o365-worldwide#:~:text=In%20general%2C%20global%20administrators%2C%20security,to%20Reports%20%3E%20Reports%20for%20download.
upvoted 3 times
...
Kepurikee
4 years ago
1. Security reader - In general, global administrators, security administrators, and security readers can access reports in the Security & Compliance Center 2. Security Administrator
upvoted 4 times
...
melatocaroca
4 years, 1 month ago
Global Reader Members have read-only access to reports, alerts, and can see all the configuration and settings. The primary difference between Global Reader and Security Reader is that a Global Reader can access configuration and settings. Security Reader Sensitivity Label Reader Security Administrator Organization Management Members can control permissions for accessing features in the Security & Compliance Center, and manage settings for device management, data loss prevention, reports, and preservation. Users who are not global administrators must be Exchange administrators to see and act on devices that are managed by Basic Mobility and Security for Microsoft 365 (formerly known as Mobile Device Management or MDM). Global admins are automatically added as members of this role group. Reference: https://docs.microsoft.com/en-us/office365/securitycompliance/permissions-in-the-security-and-compliance-center#mapping-of-role-groups-to-assigned-roles
upvoted 1 times
...
Mario007
4 years, 2 months ago
Security Reader can download the reports. "Make sure that you have the necessary permissions assigned in the Security & Compliance Center. In general, global administrators, security administrators, and security readers can access reports in the Security & Compliance Center." https://docs.microsoft.com/en-us/microsoft-365/compliance/download-existing-reports?view=o365-worldwide
upvoted 4 times
...
RNG60FR
4 years, 6 months ago
i think it's an MS-101 exam question
upvoted 4 times
Takloy
4 years, 6 months ago
true, can't recallthis in the exam which i failed.lol
upvoted 2 times
...
...
mkoprivnj
4 years, 7 months ago
3 & 3 for sure. Security Reader & Security Administrator!
upvoted 5 times
...
Prianishnikov
4 years, 7 months ago
what is the correct answer?
upvoted 3 times
...
scottims
4 years, 9 months ago
Pulled from descriptions in the Security -> Permissions of lab tenant Records management Description Members of this management role group have permissions to manage and dispose record content. Compliance Administrator Description Manage settings for device management, data loss prevention, reports, and preservation. Edit Assigned roles View-Only Retention Management Manage Alerts
upvoted 2 times
...
Annna
4 years, 10 months ago
for user1, can it be record management ? ( for Record Management :Members can manage and dispose record content.)
upvoted 1 times
...
[Removed]
5 years ago
Security Reader: Members can manage security alerts (view only), and also view reports and settings of security features. Security Administrator, Compliance Administrator and Organization Management can manage alerts. However, Security Administrator has the least privilege. Reference: https://docs.microsoft.com/en-us/office365/securitycompliance/permissions-in-the-security-and-compliance
upvoted 8 times
...
Myko
5 years ago
This doc appears to say a Security Reader can download the reports. https://docs.microsoft.com/en-us/microsoft-365/compliance/download-existing-reports?view=o365-worldwide
upvoted 6 times
kev001
4 years, 8 months ago
I just assigned the security reader role to a test user and successfully 'exported' a report.
upvoted 2 times
kev001
4 years, 8 months ago
Download existing reports Important Make sure that you have the necessary permissions assigned in the Security & Compliance Center. In general, global administrators, security administrators, and security readers can access reports in the Security & Compliance Center. In the Security & Compliance Center, go to Reports > Reports for download. Select one or more items in the list. Click Download report, and then click Close. https://docs.microsoft.com/en-us/microsoft-365/compliance/download-existing-reports?view=o365-worldwide#:~:text=Make%20sure%20that%20you%20have,to%20Reports%20%3E%20Reports%20for%20download.
upvoted 2 times
...
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...