Staff Aug: Scenario Based Questions

0.0(0)
studied byStudied by 0 people
0.0(0)
full-widthCall with Kai
learnLearn
examPractice Test
spaced repetitionSpaced Repetition
heart puzzleMatch
flashcardsFlashcards
GameKnowt Play
Card Sorting

1/24

flashcard set

Earn XP

Description and Tags

SP

Study Analytics
Name
Mastery
Learn
Test
Matching
Spaced
Call with Kai

No study sessions yet.

25 Terms

1
New cards

You discover Global Admins are using their accounts for daily email and Teams. What do you do?

Recommend separate admin-only accounts without productivity licensing and explain the phishing and blast-radius risk to leadership.

2
New cards

An IT Director wants MFA enforced everywhere immediately. How do you respond?

Explain the risks of disruption and recommend phased MFA rollout starting with admins and high-risk users.

3
New cards

Admins are signing in from multiple countries unexpectedly. What’s your approach?

Review sign-in logs

4
New cards

The internal team is resistant to changes you recommend. How do you handle it?

Listen to concerns

5
New cards

A Conditional Access policy locks out an admin. What should have prevented this?

Break-glass accounts excluded from Conditional Access with monitored usage.

6
New cards

Leadership asks why security improvements take time. How do you explain?

Security must be phased to reduce risk without causing outages or business disruption.

7
New cards

The client wants compliant-device enforcement for all users immediately. What do you recommend?

Start with admins first

8
New cards

You identify legacy authentication is enabled but rarely used. What’s your move?

Confirm dependencies

9
New cards

An IT Director asks how you prioritize remediation. How do you answer?

Based on risk severity

10
New cards

You’re asked to “lock everything down.” How do you respond?

Explain that over-restriction creates outages and propose balanced

11
New cards

Teams sprawl is out of control. What governance steps do you suggest?

Control team creation

12
New cards

The internal team fears automation will replace their roles. How do you address this?

Position automation as reducing noise and freeing them for higher-value work.

13
New cards

Leadership asks why admins shouldn’t have E3 licenses. What’s your explanation?

Productivity licenses expose admins to phishing and collaboration-based attacks.

14
New cards

You see inconsistent Conditional Access policies. What’s your recommendation?

Standardize policies using baseline + admin-specific models.

15
New cards

The client wants faster remediation but no downtime. What’s your strategy?

Prioritize low-impact changes first and schedule higher-risk changes during approved windows.

16
New cards

An IT Director asks how you measure success in this role. What do you say?

Reduced risk

17
New cards

You’re asked to justify a recommendation leadership doesn’t like. How do you respond?

Present risk

18
New cards

The internal team escalates everything to you. What do you do?

Resolve issues collaboratively and ensure knowledge transfer to avoid becoming a bottleneck.

19
New cards

You’re asked what you would not change immediately. How do you answer?

Business-critical systems without full dependency understanding.

20
New cards

The client wants proof security improvements worked. What do you show?

Before-and-after risk posture

21
New cards

You detect risky sign-ins but no incident yet. What’s your response?

Investigate

22
New cards

An admin complains about access restrictions. What do you do?

Explain security rationale and adjust policies only if business impact requires it.

23
New cards

The IT Director asks how you handle disagreements. What do you say?

By focusing on data

24
New cards

A security change causes user complaints. What’s your next step?

Assess impact

25
New cards

You’re asked how you ensure long-term sustainability. What’s your answer?

Documentation