Entra ID
Even More Entra ID
User and Group Accounts
Governance
RBAC
100

This Microsoft-managed directory service operates as a PaaS offering in the cloud, providing features like multi-factor authentication and self-service password reset.

What is Microsoft Entra ID?

100

A feature that provides operational insights into Microsoft Entra ID with alerts, performance counters, and usage patterns

What is Microsoft Entra Connect Health?

100

A user account that is defined only in Microsoft Entra ID and includes administrator accounts

What is a cloud identity?

100

A level of scope and control above subscriptions in Azure

What are Azure management groups?

100

A system that allows you to control access to Azure resources by specifying roles and access privileges.  

What is Azure Role-Based Access Control (RBAC)?

200

This represents a company or organization that signed up for a Microsoft cloud-based service and is associated with an Azure subscription to grant permissions via RBAC

What is a Microsoft Entra tenant?

200

This functionality allows configuring additional security levels for privileged users such as administrators

What is Microsoft Entra Privileged Identity Management?

200

This type of user account is defined in an on-premises Active Directory and synchronized to Azure

What is a Directory-synchronized identity?

200

The maximum number of levels a management group tree can support.

What is six levels of depth?


200

The security concept that states that a user should have the permissions they need to do their job, nothing more. 

What is Least Privilege? 

300

A flat structure for users and groups, no OUs or GPOs, and the use of REST API over HTTP and HTTPS for queries.

What distinguishes Microsoft Entra ID from AD DS?

300

This license level provides Privileged Identity Management for the most secure accounts in the Azure environment

What is Entra ID P2?

300

These user accounts are useful for external vendors or contractors needing access to Azure resources

What are guest user accounts?

300

A service in Azure that allows you to create, assign, and manage enforced rules on your resources

What is Azure Policy?

300

This is the level at which access applies in Azure, and can be specified at multiple levels such as management group, subscription, resource group, or resource

What is scope in Azure RBAC?

400

A hierarchical X.500-based structure and the use of DNS for locating resources such as domain controllers.

What are characteristics of AD DS (Active Directory Domain Services)?

400

A feature that provides enhanced functionalities for monitoring and protecting user accounts in Microsoft Entra ID P2

What is Microsoft Entra ID Protection?

400

This type of group in Microsoft Entra ID is used for managing member and computer access to shared resources

What are security groups?

400

A collection of policies, sometimes used for regulatory compliance.

What are initiatives?

400

This pane in the Azure portal shows who has access to a particular area and their role, and allows you to grant or remove access

What is the Access control (IAM) pane?

500

This feature allows the user to access resources both on-premises and in the cloud without requiring the user to authenticate multiple times. 

What is an SSO experience?

500

Administrators don't need to manage, update, and monitor domain controllers.  There’s no need to have Domain Admins or Enterprise Admins groups for domains that Microsoft Entra ID manages.

What is Microsoft Entra Domain Services?

500

This security group feature applies dynamic rules to automatically manage devices based on their attributes.

What is dynamic device access?

500

This tab on Azure Policy provides insight on where policies have been successfully applied, and where there might be a potential problem.

What is Compliance?

500

These are the four fundamental built-in roles in Azure, including Owner, Contributor, Reader, and User Access Administrator

What are the basic Azure RBAC roles?

M
e
n
u