Azure Security-AD General Info 2 Flashcards

1
Q

What do I need to define when a risk is identified with identity protection?

A

I can define a risk policy to perform tasks when a risk is identified with id protection.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Why do I need to configure a risk policy with identity protection?

A

a risk policy helps me indicate what should happen when a risk is detected.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Name the two types of risk policies in ID protection?

A

there is the user and sign in risk policies in ID protection.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

How is sign-in risk policy measured in ID protection?

A

the sign-in risk policy measures if the risk is high,med or low and can request additional info like MFA to grant access etc.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

How is user risk policy measured in ID protection?

A

the user risk policy can measure any anomalies in user access as compared to normal baseline info saved from previous connectivity from this user.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What policy should I use for MFA with ID protection?

A

the MFA registration policy will allow me to register the users with MFA as a second method to provide authenticity of a user.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

With ID protection how can I remediate risks?

A

I can remediate risks with generating reports and investigating these risks and remediating them thereafter.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What are the remediation methods for ID protection risks that are detected?

A

We can use self remediation ie reset pwd, or an admin can reset a pwd, and dismiss risks.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Which report with ID protection indicates risk detected devices?

A

The risky sign in reports provides the details of the devices that are risky with ID Protection.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What is PIM-PRIVILEGE IDENTITY MANAGEMENT?

A

PIM allows us to control,manage and monitor the access rights of admins to my networks resources.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is ZERO TRUST?

A

zero trust allows me to never trust and always verify.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

name the four components of a zero trust model?

A

the device directory, identity provider, policy evaluation service and access proxy.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What should I do to limit the need to give more access than is really required?PIM

A

with PIM I can give only the access that’s actually required for the admins.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Can PIM provide the ability to give time based access to resources?

A

Yes PIM can give us the ability to provide time based access.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Why is PIM important?

A

PIM allows us to monitor the admins and there roles, the access given to people and why do they require a certain level of access.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

which admin role can assign a user permanently to a role?

A

the global admin can assign a role on a permanent basis to a user.

17
Q

what does the privilege role administrator manage?

A

privilege role admin manages PIM.

18
Q

which roles are not managed by PIM?

A

the exchange online, sharepoint online and resource groups and azure subscriptions are not managed by PIM.

19
Q

which license allows me to use PIM?

A

PIM is used with the premium license.

20
Q

how many users should we have as privilege role admins?

A

we should have at least two people in the privilege role admin roles.

21
Q

which admin role is inactive until activated?

A

the eligible admin role is inactive and only activated when it is required to be used and for a set amount of time.