exam questions

Exam MS-500 All Questions

View all questions & answers for the MS-500 exam

Exam MS-500 topic 1 question 76 discussion

Actual exam question from Microsoft's MS-500
Question #: 76
Topic #: 1
[All MS-500 Questions]

You have a Microsoft 365 E5 subscription that contains a user named User1.
You need to ensure that User1 can use the Microsoft 365 compliance center to search audit logs and identify which users were added to Microsoft 365 role groups. The solution must use the principle of least privilege.
To which role group should you add User1?

  • A. View-Only Organization Management
  • B. Security Reader
  • C. Organization Management
  • D. Compliance Management
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Tanasi
Highly Voted 2 years, 4 months ago
I hate this type of questions. Do I really have to remember them?! You will probably never use it anyway.
upvoted 9 times
nsss
2 years, 2 months ago
Agreed, totally pointless to memorize this bs.
upvoted 3 times
...
...
ysm
Most Recent 2 years, 2 months ago
Selected Answer: D
Compliance Management You have to be assigned the View-Only Audit Logs or Audit Logs role in Exchange Online to search the audit log. By default, these roles are assigned to the Compliance Management and Organization Management role groups on the Permissions page in the Exchange admin center. Global administrators in Office 365 and Microsoft 365 are automatically added as members of the Organization Management role group in Exchange Online. To give a user the ability to search the audit log with the minimum level of privileges, you can create a custom role group in Exchange Online, add the View-Only Audit Logs or Audit Logs role, and then add the user as a member of the new role group. For more information, see Manage role groups in Exchange Online.
upvoted 1 times
...
Stig_88
2 years, 2 months ago
Selected Answer: D
View-Only Org Management got 2 permissions: View-Only Config View-Only Recipients Security Reader got 1 permission Answer is D: Got 11 permissions including what is required on the requirement.
upvoted 1 times
...
smiff
2 years, 2 months ago
Selected Answer: D
https://learn.microsoft.com/en-us/exchange/permissions-exo/permissions-exo
upvoted 1 times
...
RomanV
2 years, 2 months ago
To ensure that User1 can use the Microsoft 365 compliance center to search audit logs and identify which users were added to Microsoft 365 role groups, while adhering to the principle of least privilege, you should add User1 to the Security Reader role group. Correct answer should be B. Security Reader
upvoted 2 times
...
Aleyah
2 years, 2 months ago
Selected Answer: D
D is correct
upvoted 1 times
...
abrub
2 years, 2 months ago
Selected Answer: B
If the only requirement is for User1 to identify which users were added to Microsoft 365 role groups, then the "View-Only Organization Management" role group could be considered as a valid option. This role group provides read-only access to most features in the Microsoft 365 admin center, including the ability to view role group membership. However, if the requirement is specifically to use the Microsoft 365 Compliance Center to search audit logs and identify which users were added to Microsoft 365 role groups, then the "Security Reader" role group would be a more appropriate choice, as it provides access to the Compliance Center and associated workloads, including the ability to search audit logs.
upvoted 1 times
...
chickenroaster
2 years, 3 months ago
Answer is correct. https://learn.microsoft.com/en-us/exchange/view-only-organization-management-exchange-2013-help
upvoted 2 times
chickenroaster
2 years, 3 months ago
Correction: View-Only Organization Management role has no View-Only Audit Logs permissions. So answer is wrong.
upvoted 1 times
...
...
kkkk369
2 years, 4 months ago
The "Security Reader" role provides the least privilege necessary to search audit logs and view information about role groups, which meets the requirement of using the principle of least privilege. The "View-Only Organization Management" role provides similar permissions, but also allows for viewing other details such as service health, message trace, and reports. Adding User1 to the "Organization Management" role would give them more permissions than necessary and would not follow the principle of least privilege. The "Compliance Management" role is focused on compliance-related tasks such as creating retention policies and doesn't provide the necessary permissions to search audit logs.
upvoted 2 times
...
shouro88
2 years, 4 months ago
Selected Answer: D
Compliance Management. Assigned Roles Audit Logs Compliance Admin Data Loss Prevention Information Rights Management Journaling Message Tracking Retention Management Transport Rules View-Only Audit Logs View-Only Configuration View-Only Recipients View-Only Organization Management Assigned Roles View-Only Configuration View-Only Recipients correct Answer- D
upvoted 2 times
shouro88
2 years, 4 months ago
My bad, please ignore Correct answer is A following least priviledged access
upvoted 1 times
msysadmin
2 years, 3 months ago
Actually your first decision is correct. Correct answer is D. View-Only Organization Management: Members can view the properties of any object in the Exchange Online organization. #View-Only Configuration, View-Only Recipients Compliance Management is correct Organization Management is incorrect - Have a many of admin privileges
upvoted 1 times
...
...
...
brotown22
2 years, 5 months ago
Selected Answer: A
Principle of least privilege means View Only Org Mgmt with View-Only Audit Logs added achieves 'read-only' requirement. All other options have more permissions by default than required. Given answer is correct.
upvoted 3 times
...
mcclane654
2 years, 5 months ago
Selected Answer: D
https://admin.exchange.microsoft.com/#/adminRoles click the roles and check permissions. compliance management and org management have access. but compliance management is least priveliged. not to be confused with ordinary audit logs those require reports reader.
upvoted 2 times
EM1234
2 years, 3 months ago
The answer is d. Mcclane654 tells you all how to see it. If you go into exchange admin and look at the roles, once you select it you can click on permissions tab. view-only org management does not have the audit logs permission ticked so it does not have the requirements from the question. Please go and look for yourself, you will see.
upvoted 1 times
...
...
Zimb
2 years, 6 months ago
https://learn.microsoft.com/en-us/exchange/view-only-audit-logs-role-exchange-2013-help given answer is correct. https://learn.microsoft.com/en-us/exchange/security-and-compliance/exchange-auditing-reports/search-role-group-changes You need to be assigned permissions before you can perform this procedure or procedures. To see what permissions you need, see the "View-only administrator audit logging
upvoted 2 times
...
Snoopy70
2 years, 6 months ago
The answer is correct. I checked in my lab and the permissions for the view only organisation management have the least permissions in comparison with the compliance management.
upvoted 2 times
...
Lomak
2 years, 7 months ago
Selected Answer: D
https://learn.microsoft.com/en-us/exchange/permissions-exo/permissions-exo#role-based-permissions
upvoted 1 times
...
pete26
2 years, 8 months ago
Valid on exam October 14, 2022
upvoted 4 times
...
wuzime
2 years, 8 months ago
I think the given answer is correct. Refer to: https://learn.microsoft.com/en-us/exchange/view-only-organization-management-exchange-2013-help
upvoted 2 times
yoton
2 years, 8 months ago
REEEE damn you Exchange Server 2013
upvoted 1 times
...
RJ06
2 years, 8 months ago
View-Only Organization Management only gives access to following sub-roles. View-Only Configuration View-Only Recipients For audit logs, you require "view-only audit logs" which will be accomplished by going further to "Compliance Management" role. Security Reader wont fulfill all requirements and Organisation Management will be an overkill.
upvoted 3 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...