Microsoft MS-102 Service Health Network Connectivity Software Updates And Adoption Practice Test

 

MS-102 skills 1.1 | 27 original questions

This MS-102 practice set focuses on service health network connectivity software updates and adoption through original scenario-based questions aligned to Microsoft skills measured as of April 28, 2026. Use the full ExamSnap MS-102 collection for practice across all four current skill areas. For broader exam preparation, review the Microsoft MS-102 Exam Dumps page.

Instructions: Select the best answer for each question. Review the rationale after answering. Each distractor includes a brief explanation of why it is not the strongest fit for the stated scenario.

Question 1

The operations team at Consolidated Messenger needs to resolve an issue without granting broader permissions than necessary. Before the tenant expands to another business unit, the administrator must determine whether a current Microsoft cloud issue is a known service incident affecting the tenant. The initial rollout covers 11 locations and approximately 430 managed identities or devices. The architecture board will reject a choice that solves a different problem from the one stated. Which option best satisfies the requirement?

  1. Review license assignment errors for the affected users or groups
  2. Create an administrative unit and assign a scoped role over it
  3. Use Microsoft 365 admin center update management to configure the update approach
  4. Open Health > Service health in the Microsoft 365 admin center
  5. Make the verified custom domain the default domain

Correct answer: D

Why: Service health provides tenant-relevant advisories and incidents and should be checked before treating a widespread cloud problem as a local fault. It directly addresses the stated requirement.

Option review:

A: License monitoring should include assignment state and errors, such as conflicting service plans or insufficient available licenses. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

B: Administrative units provide a boundary for scoped Entra role assignments so a delegated admin does not automatically administer the whole tenant. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

C: The exam objective specifically targets configuring software update management through the Microsoft 365 admin center rather than updating clients one by one. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

D: Service health provides tenant-relevant advisories and incidents and should be checked before treating a widespread cloud problem as a local fault. It directly addresses the stated requirement.

E: After a custom domain is verified, setting it as the default causes new identities to use that domain suffix by default. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

Learning point: MS102-T02-Q001: Open Health > Service health in the Microsoft 365 admin center – Service health provides tenant-relevant advisories and incidents and should be checked before treating a widespread cloud problem as a local fault.

Question 2

Blue Yonder Airlines is preparing a change requested by the governance lead. The next migration wave is blocked until the team can notify administrators when selected Microsoft 365 service incidents or advisories occur. The administrator must avoid granting unrelated tenant-wide privilege. The team will validate the change with 24 pilot groups before expanding it to 60 users. Which Microsoft 365 or Microsoft Entra capability is the best fit?

  1. Use a tenant administrator account for initial setup
  2. Use Microsoft 365 Backup granular restore for Exchange mailbox items when appropriate
  3. Create a Microsoft 365 Group for shared collaboration resources
  4. Use the workload-specific Microsoft 365 admin role when tenant-wide privilege is unnecessary
  5. Configure Service health notifications

Correct answer: E

Why: Service health notification settings allow admins to receive updates for selected services and issue types instead of relying only on manual dashboard checks. It directly addresses the stated requirement.

Option review:

A: Initial tenant configuration requires an appropriately privileged tenant administrator rather than an ordinary workload user. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

B: Microsoft 365 Backup supports mailbox-item recovery scenarios, allowing targeted recovery rather than an unnecessarily broad rollback. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

C: Microsoft 365 Groups provide a membership service that integrates with Microsoft 365 collaboration resources. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

D: Workload-specific admin roles provide narrower permissions than highly privileged tenant roles and better support least privilege. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

E: Service health notification settings allow admins to receive updates for selected services and issue types instead of relying only on manual dashboard checks. It directly addresses the stated requirement.

Learning point: MS102-T02-Q002: Configure Service health notifications – Service health notification settings allow admins to receive updates for selected services and issue types instead of relying only on manual dashboard checks.

Question 3

Tailspin Toys is migrating a business process to Microsoft 365 and wants the narrowest supported solution. Security and operations teams agree on the target state: determine whether a current Microsoft cloud issue is a known service incident affecting the tenant. The design should minimize manual per-user administration where a scoped central control exists. The service desk has 77 related tickets from 14 business units, so the team wants a targeted fix. Which action should the administrator take?

  1. Open Health > Service health in the Microsoft 365 admin center
  2. Use Microsoft Entra PowerShell or Microsoft Graph PowerShell with a validated input set
  3. Make the privileged role eligible in Microsoft Entra PIM
  4. Use Microsoft 365 usage reports
  5. Review Security & privacy organization settings

Correct answer: A

Why: Service health provides tenant-relevant advisories and incidents and should be checked before treating a widespread cloud problem as a local fault. It directly addresses the stated requirement.

Option review:

A: Service health provides tenant-relevant advisories and incidents and should be checked before treating a widespread cloud problem as a local fault. It directly addresses the stated requirement.

B: PowerShell-based bulk administration is appropriate when the input set can be validated, logged, and processed consistently. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

C: PIM eligibility supports just-in-time role activation and reduces the time that privileged permissions are continuously active. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

D: Usage reports provide service-specific adoption and activity metrics rather than security incidents or licensing inventory alone. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

E: Security & privacy settings in the Microsoft 365 admin center are designed for organization-wide configuration, not individual mailbox preferences. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

Learning point: MS102-T02-Q003: Open Health > Service health in the Microsoft 365 admin center – Service health provides tenant-relevant advisories and incidents and should be checked before treating a widespread cloud problem as a local fault.

Question 4

Contoso Retail has completed a pilot and must now choose the production administration approach. A production change is approved only if it can notify administrators when selected Microsoft 365 service incidents or advisories occur. The design should minimize manual per-user administration where a scoped central control exists. The team will validate the change with 4 pilot groups before expanding it to 94 users. Which administrative choice should be recommended?

  1. Make the verified custom domain the default domain
  2. Configure Service health notifications
  3. Select the restore point that predates the damaging event
  4. Use group-based licensing
  5. Use Microsoft Purview role groups for Purview responsibilities

Correct answer: B

Why: Service health notification settings allow admins to receive updates for selected services and issue types instead of relying only on manual dashboard checks. It directly addresses the stated requirement.

Option review:

A: After a custom domain is verified, setting it as the default causes new identities to use that domain suffix by default. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

B: Service health notification settings allow admins to receive updates for selected services and issue types instead of relying only on manual dashboard checks. It directly addresses the stated requirement.

C: Restore-point selection should align to when the unwanted deletion, encryption, or overwrite occurred so the recovered state is actually healthy. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

D: Group-based licensing applies product licenses to group members and adjusts assignments as membership changes, reducing per-user manual work. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

E: Purview uses role groups to bundle compliance permissions, allowing administrators to receive only the capabilities needed for their duties. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

Learning point: MS102-T02-Q004: Configure Service health notifications – Service health notification settings allow admins to receive updates for selected services and issue types instead of relying only on manual dashboard checks.

Question 5

Adventure Works has completed a pilot and must now choose the production administration approach. The support team has reproduced the issue and narrowed it to this requirement: determine whether a current Microsoft cloud issue is a known service incident affecting the tenant. The initial rollout covers 17 locations and approximately 200 managed identities or devices. The administrator must avoid granting unrelated tenant-wide privilege. Which control should the team use?

  1. Use the workload-specific Microsoft 365 admin role when tenant-wide privilege is unnecessary
  2. Configure Service health notifications
  3. Open Health > Service health in the Microsoft 365 admin center
  4. Create a new Microsoft 365 tenant
  5. Use Microsoft 365 Backup to restore a protected SharePoint site or OneDrive account

Correct answer: C

Why: Service health provides tenant-relevant advisories and incidents and should be checked before treating a widespread cloud problem as a local fault. It directly addresses the stated requirement.

Option review:

A: Workload-specific admin roles provide narrower permissions than highly privileged tenant roles and better support least privilege. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

B: Service health notification settings allow admins to receive updates for selected services and issue types instead of relying only on manual dashboard checks. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

C: Service health provides tenant-relevant advisories and incidents and should be checked before treating a widespread cloud problem as a local fault. It directly addresses the stated requirement.

D: A new tenant provides the organizational and identity boundary required for an independent Microsoft 365 environment. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

E: Microsoft 365 Backup supports high-fidelity restore operations for protected SharePoint and OneDrive content to selected restore points. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

Learning point: MS102-T02-Q005: Open Health > Service health in the Microsoft 365 admin center – Service health provides tenant-relevant advisories and incidents and should be checked before treating a widespread cloud problem as a local fault.

Question 6

An incident review at Northwind Traders produces a single administrative requirement for the governance lead. The organization is replacing a manual process. The replacement must notify administrators when selected Microsoft 365 service incidents or advisories occur while remaining centrally manageable. The service desk has 37 related tickets from 7 business units, so the team wants a targeted fix. The architecture board will reject a choice that solves a different problem from the one stated. Which Microsoft 365 or Microsoft Entra capability is the best fit?

  1. Review Security & privacy organization settings
  2. Invite the partner as an external guest user
  3. Use Microsoft Graph PowerShell for scripted bulk user changes
  4. Configure Service health notifications
  5. Scope the delegated administrator to the administrative unit instead of the tenant

Correct answer: D

Why: Service health notification settings allow admins to receive updates for selected services and issue types instead of relying only on manual dashboard checks. It directly addresses the stated requirement.

Option review:

A: Security & privacy settings in the Microsoft 365 admin center are designed for organization-wide configuration, not individual mailbox preferences. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

B: Microsoft Entra B2B guest collaboration is designed for external users who need controlled access while retaining their external identity context. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

C: Microsoft Graph PowerShell provides scriptable Microsoft 365 and Entra administration suitable for controlled bulk operations. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

D: Service health notification settings allow admins to receive updates for selected services and issue types instead of relying only on manual dashboard checks. It directly addresses the stated requirement.

E: A tenant-wide role would exceed the requirement; administrative-unit scoping is designed for delegated management of a subset of directory objects. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

Learning point: MS102-T02-Q006: Configure Service health notifications – Service health notification settings allow admins to receive updates for selected services and issue types instead of relying only on manual dashboard checks.

Question 7

Northwind Traders is migrating a business process to Microsoft 365 and wants the narrowest supported solution. The administrator is comparing native Microsoft controls after documenting a requirement to determine whether a current Microsoft cloud issue is a known service incident affecting the tenant. The affected scope contains 54 users across 20 administrative groups. The solution should use a native Microsoft control that matches the stated requirement. Which administrative choice should be recommended?

  1. Use Microsoft Purview role groups for Purview responsibilities
  2. Prefer local internet egress for Microsoft 365 traffic where appropriate
  3. Add the custom domain and verify ownership with DNS
  4. Verify the workload is protected before relying on Microsoft 365 Backup recovery
  5. Open Health > Service health in the Microsoft 365 admin center

Correct answer: E

Why: Service health provides tenant-relevant advisories and incidents and should be checked before treating a widespread cloud problem as a local fault. It directly addresses the stated requirement.

Option review:

A: Purview uses role groups to bundle compliance permissions, allowing administrators to receive only the capabilities needed for their duties. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

B: Microsoft 365 network guidance favors direct, local egress and avoiding unnecessary hairpins for trusted Microsoft 365 traffic. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

C: Microsoft 365 verifies custom-domain ownership by requiring the organization to publish the specified DNS record before the domain can be used fully. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

D: Backup recovery depends on the content being in the configured protection scope; assumptions about protection should be validated before an incident. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

E: Service health provides tenant-relevant advisories and incidents and should be checked before treating a widespread cloud problem as a local fault. It directly addresses the stated requirement.

Learning point: MS102-T02-Q007: Open Health > Service health in the Microsoft 365 admin center – Service health provides tenant-relevant advisories and incidents and should be checked before treating a widespread cloud problem as a local fault.

Question 8

Fourth Coffee is migrating a business process to Microsoft 365 and wants the narrowest supported solution. A post-incident action item requires the tenant to identify Microsoft 365 connectivity quality and location-specific network recommendations. The service desk has 71 related tickets from 10 business units, so the team wants a targeted fix. The organization wants a reversible rollout with measurable verification before broad enforcement. Which control should the team use?

  1. Review Network connectivity insights for the affected office
  2. Use Microsoft 365 Backup to restore a protected SharePoint site or OneDrive account
  3. Edit the Microsoft 365 contact instead of creating a licensed user
  4. Assign the least-privileged built-in Microsoft Entra role
  5. Require approval or MFA for PIM role activation

Correct answer: A

Why: Network connectivity insights correlate Microsoft 365 connectivity measurements with locations and recommendations, helping isolate network design issues. It directly addresses the stated requirement.

Option review:

A: Network connectivity insights correlate Microsoft 365 connectivity measurements with locations and recommendations, helping isolate network design issues. It directly addresses the stated requirement.

B: Microsoft 365 Backup supports high-fidelity restore operations for protected SharePoint and OneDrive content to selected restore points. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

C: Contacts are appropriate for non-sign-in recipients; creating a licensed user would add unnecessary identity and licensing overhead. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

D: Least-privilege role assignment limits standing administrative capability and reduces the impact of credential misuse. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

E: PIM activation settings can require safeguards such as approval, MFA, justification, or time limits for eligible role activations. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

Learning point: MS102-T02-Q008: Review Network connectivity insights for the affected office – Network connectivity insights correlate Microsoft 365 connectivity measurements with locations and recommendations, helping isolate network design issues.

Question 9

Southridge Video is migrating a business process to Microsoft 365 and wants the narrowest supported solution. Security and operations teams agree on the target state: reduce avoidable latency caused by backhauling Microsoft 365 traffic through a distant corporate network edge. The team must preserve a clear audit trail for the administrative decision. The control owner requires a review after 88 days and evidence from 23 representative cases. What should the administrator configure first?

  1. Scope the delegated administrator to the administrative unit instead of the tenant
  2. Prefer local internet egress for Microsoft 365 traffic where appropriate
  3. Review software update status in the Microsoft 365 admin center
  4. Configure the Organization profile in the Microsoft 365 admin center
  5. Create a member user in Microsoft Entra ID

Correct answer: B

Why: Microsoft 365 network guidance favors direct, local egress and avoiding unnecessary hairpins for trusted Microsoft 365 traffic. It directly addresses the stated requirement.

Option review:

A: A tenant-wide role would exceed the requirement; administrative-unit scoping is designed for delegated management of a subset of directory objects. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

B: Microsoft 365 network guidance favors direct, local egress and avoiding unnecessary hairpins for trusted Microsoft 365 traffic. It directly addresses the stated requirement.

C: Central update monitoring is the appropriate way to identify update compliance and rollout problems across managed Microsoft 365 Apps. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

D: Organization profile settings are the appropriate place for tenant-wide company information rather than per-user properties. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

E: Member users are the normal tenant identities for internal users and can be assigned licenses, groups, and roles as appropriate. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

Learning point: MS102-T02-Q009: Prefer local internet egress for Microsoft 365 traffic where appropriate – Microsoft 365 network guidance favors direct, local egress and avoiding unnecessary hairpins for trusted Microsoft 365 traffic.

Question 10

Humongous Insurance is standardizing administration after several teams used inconsistent procedures. Security and operations teams agree on the target state: identify Microsoft 365 connectivity quality and location-specific network recommendations. The architecture board will reject a choice that solves a different problem from the one stated. The initial rollout covers 13 locations and approximately 140 managed identities or devices. Which administrative choice should be recommended?

  1. Verify the workload is protected before relying on Microsoft 365 Backup recovery
  2. Create and manage a shared mailbox
  3. Review Network connectivity insights for the affected office
  4. Use Microsoft Defender Unified RBAC or the appropriate Defender role
  5. Configure Service health notifications

Correct answer: C

Why: Network connectivity insights correlate Microsoft 365 connectivity measurements with locations and recommendations, helping isolate network design issues. It directly addresses the stated requirement.

Option review:

A: Backup recovery depends on the content being in the configured protection scope; assumptions about protection should be validated before an incident. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

B: A shared mailbox is intended for a common address accessed by multiple delegated users rather than a personal user mailbox. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

C: Network connectivity insights correlate Microsoft 365 connectivity measurements with locations and recommendations, helping isolate network design issues. It directly addresses the stated requirement.

D: Defender permissions should be managed with the supported Defender role model or unified RBAC so security duties can be scoped appropriately. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

E: Service health notification settings allow admins to receive updates for selected services and issue types instead of relying only on manual dashboard checks. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

Learning point: MS102-T02-Q010: Review Network connectivity insights for the affected office – Network connectivity insights correlate Microsoft 365 connectivity measurements with locations and recommendations, helping isolate network design issues.

Question 11

Proseware Logistics is preparing a change requested by the identity administrator. A post-incident action item requires the tenant to reduce avoidable latency caused by backhauling Microsoft 365 traffic through a distant corporate network edge. The initial rollout covers 3 locations and approximately 310 managed identities or devices. The team must preserve a clear audit trail for the administrative decision. Which Microsoft 365 or Microsoft Entra capability is the best fit?

  1. Require approval or MFA for PIM role activation
  2. Use Adoption Score for organization-level adoption insights
  3. Create a Microsoft 365 Backup protection policy
  4. Prefer local internet egress for Microsoft 365 traffic where appropriate
  5. Create an organizational contact in the Microsoft 365 admin center

Correct answer: D

Why: Microsoft 365 network guidance favors direct, local egress and avoiding unnecessary hairpins for trusted Microsoft 365 traffic. It directly addresses the stated requirement.

Option review:

A: PIM activation settings can require safeguards such as approval, MFA, justification, or time limits for eligible role activations. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

B: Adoption Score is designed to provide adoption-oriented insights and recommendations rather than raw service-health status. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

C: Microsoft 365 Backup protection policies define protected content and establish recoverable restore points for supported workloads. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

D: Microsoft 365 network guidance favors direct, local egress and avoiding unnecessary hairpins for trusted Microsoft 365 traffic. It directly addresses the stated requirement.

E: A contact represents an external recipient for addressing and directory purposes and does not need a Microsoft 365 sign-in identity. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

Learning point: MS102-T02-Q011: Prefer local internet egress for Microsoft 365 traffic where appropriate – Microsoft 365 network guidance favors direct, local egress and avoiding unnecessary hairpins for trusted Microsoft 365 traffic.

Question 12

Margie Travel has completed a pilot and must now choose the production administration approach. The existing configuration works for normal operations but fails the new requirement to identify Microsoft 365 connectivity quality and location-specific network recommendations. Existing workload settings should remain unchanged unless the requirement specifically depends on them. The initial rollout covers 16 locations and approximately 480 managed identities or devices. What should the administrator configure first?

  1. Create a member user in Microsoft Entra ID
  2. Review license assignment errors for the affected users or groups
  3. Create an administrative unit and assign a scoped role over it
  4. Use Microsoft 365 admin center update management to configure the update approach
  5. Review Network connectivity insights for the affected office

Correct answer: E

Why: Network connectivity insights correlate Microsoft 365 connectivity measurements with locations and recommendations, helping isolate network design issues. It directly addresses the stated requirement.

Option review:

A: Member users are the normal tenant identities for internal users and can be assigned licenses, groups, and roles as appropriate. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

B: License monitoring should include assignment state and errors, such as conflicting service plans or insufficient available licenses. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

C: Administrative units provide a boundary for scoped Entra role assignments so a delegated admin does not automatically administer the whole tenant. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

D: The exam objective specifically targets configuring software update management through the Microsoft 365 admin center rather than updating clients one by one. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

E: Network connectivity insights correlate Microsoft 365 connectivity measurements with locations and recommendations, helping isolate network design issues. It directly addresses the stated requirement.

Learning point: MS102-T02-Q012: Review Network connectivity insights for the affected office – Network connectivity insights correlate Microsoft 365 connectivity measurements with locations and recommendations, helping isolate network design issues.

Question 13

VanArsdel Media is migrating a business process to Microsoft 365 and wants the narrowest supported solution. Audit evidence shows that the current process cannot reliably reduce avoidable latency caused by backhauling Microsoft 365 traffic through a distant corporate network edge. The change must be repeatable and supportable after the project team leaves. The service desk has 65 related tickets from 6 business units, so the team wants a targeted fix. What should the administrator configure first?

  1. Prefer local internet egress for Microsoft 365 traffic where appropriate
  2. Configure Service health notifications
  3. Use a tenant administrator account for initial setup
  4. Use Microsoft 365 Backup granular restore for Exchange mailbox items when appropriate
  5. Create a Microsoft 365 Group for shared collaboration resources

Correct answer: A

Why: Microsoft 365 network guidance favors direct, local egress and avoiding unnecessary hairpins for trusted Microsoft 365 traffic. It directly addresses the stated requirement.

Option review:

A: Microsoft 365 network guidance favors direct, local egress and avoiding unnecessary hairpins for trusted Microsoft 365 traffic. It directly addresses the stated requirement.

B: Service health notification settings allow admins to receive updates for selected services and issue types instead of relying only on manual dashboard checks. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

C: Initial tenant configuration requires an appropriately privileged tenant administrator rather than an ordinary workload user. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

D: Microsoft 365 Backup supports mailbox-item recovery scenarios, allowing targeted recovery rather than an unnecessarily broad rollback. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

E: Microsoft 365 Groups provide a membership service that integrates with Microsoft 365 collaboration resources. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

Learning point: MS102-T02-Q013: Prefer local internet egress for Microsoft 365 traffic where appropriate – Microsoft 365 network guidance favors direct, local egress and avoiding unnecessary hairpins for trusted Microsoft 365 traffic.

Question 14

A quarterly control review at Adventure Works identifies a gap that must be corrected before the next audit. A production change is approved only if it can identify Microsoft 365 connectivity quality and location-specific network recommendations. The solution should use a native Microsoft control that matches the stated requirement. The initial rollout covers 19 locations and approximately 820 managed identities or devices. Which Microsoft 365 or Microsoft Entra capability is the best fit?

  1. Create an organizational contact in the Microsoft 365 admin center
  2. Review Network connectivity insights for the affected office
  3. Use Microsoft Entra PowerShell or Microsoft Graph PowerShell with a validated input set
  4. Make the privileged role eligible in Microsoft Entra PIM
  5. Use Microsoft 365 usage reports

Correct answer: B

Why: Network connectivity insights correlate Microsoft 365 connectivity measurements with locations and recommendations, helping isolate network design issues. It directly addresses the stated requirement.

Option review:

A: A contact represents an external recipient for addressing and directory purposes and does not need a Microsoft 365 sign-in identity. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

B: Network connectivity insights correlate Microsoft 365 connectivity measurements with locations and recommendations, helping isolate network design issues. It directly addresses the stated requirement.

C: PowerShell-based bulk administration is appropriate when the input set can be validated, logged, and processed consistently. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

D: PIM eligibility supports just-in-time role activation and reduces the time that privileged permissions are continuously active. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

E: Usage reports provide service-specific adoption and activity metrics rather than security incidents or licensing inventory alone. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

Learning point: MS102-T02-Q014: Review Network connectivity insights for the affected office – Network connectivity insights correlate Microsoft 365 connectivity measurements with locations and recommendations, helping isolate network design issues.

Question 15

The Microsoft 365 administrator at Alpine Ski House is designing the next phase of the Microsoft 365 rollout. Audit evidence shows that the current process cannot reliably control how supported Microsoft 365 Apps updates are managed centrally. The organization wants a reversible rollout with measurable verification before broad enforcement. The affected scope contains 8 users across 9 administrative groups. Which administrative choice should be recommended?

  1. Prefer local internet egress for Microsoft 365 traffic where appropriate
  2. Make the verified custom domain the default domain
  3. Use Microsoft 365 admin center update management to configure the update approach
  4. Select the restore point that predates the damaging event
  5. Use group-based licensing

Correct answer: C

Why: The exam objective specifically targets configuring software update management through the Microsoft 365 admin center rather than updating clients one by one. It directly addresses the stated requirement.

Option review:

A: Microsoft 365 network guidance favors direct, local egress and avoiding unnecessary hairpins for trusted Microsoft 365 traffic. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

B: After a custom domain is verified, setting it as the default causes new identities to use that domain suffix by default. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

C: The exam objective specifically targets configuring software update management through the Microsoft 365 admin center rather than updating clients one by one. It directly addresses the stated requirement.

D: Restore-point selection should align to when the unwanted deletion, encryption, or overwrite occurred so the recovered state is actually healthy. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

E: Group-based licensing applies product licenses to group members and adjusts assignments as membership changes, reducing per-user manual work. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

Learning point: MS102-T02-Q015: Use Microsoft 365 admin center update management to configure the update approach – The exam objective specifically targets configuring software update management through the Microsoft 365 admin center rather than updating clients one by one.

Question 16

The operations team at A. Datum Manufacturing needs to resolve an issue without granting broader permissions than necessary. The support team has reproduced the issue and narrowed it to this requirement: monitor whether managed Microsoft 365 Apps are receiving the intended updates. The affected scope contains 25 users across 22 administrative groups. The administrator must avoid granting unrelated tenant-wide privilege. What should the administrator configure first?

  1. Create a Microsoft 365 Group for shared collaboration resources
  2. Use the workload-specific Microsoft 365 admin role when tenant-wide privilege is unnecessary
  3. Open Health > Service health in the Microsoft 365 admin center
  4. Review software update status in the Microsoft 365 admin center
  5. Create a new Microsoft 365 tenant

Correct answer: D

Why: Central update monitoring is the appropriate way to identify update compliance and rollout problems across managed Microsoft 365 Apps. It directly addresses the stated requirement.

Option review:

A: Microsoft 365 Groups provide a membership service that integrates with Microsoft 365 collaboration resources. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

B: Workload-specific admin roles provide narrower permissions than highly privileged tenant roles and better support least privilege. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

C: Service health provides tenant-relevant advisories and incidents and should be checked before treating a widespread cloud problem as a local fault. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

D: Central update monitoring is the appropriate way to identify update compliance and rollout problems across managed Microsoft 365 Apps. It directly addresses the stated requirement.

E: A new tenant provides the organizational and identity boundary required for an independent Microsoft 365 environment. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

Learning point: MS102-T02-Q016: Review software update status in the Microsoft 365 admin center – Central update monitoring is the appropriate way to identify update compliance and rollout problems across managed Microsoft 365 Apps.

Question 17

During a tenant review at Woodgrove Bank, the messaging administrator identifies one unresolved requirement. A post-incident action item requires the tenant to control how supported Microsoft 365 Apps updates are managed centrally. The control owner requires a review after 42 days and evidence from 12 representative cases. The architecture board will reject a choice that solves a different problem from the one stated. Which action should the administrator take?

  1. Use Microsoft 365 usage reports
  2. Review Security & privacy organization settings
  3. Invite the partner as an external guest user
  4. Use Microsoft Graph PowerShell for scripted bulk user changes
  5. Use Microsoft 365 admin center update management to configure the update approach

Correct answer: E

Why: The exam objective specifically targets configuring software update management through the Microsoft 365 admin center rather than updating clients one by one. It directly addresses the stated requirement.

Option review:

A: Usage reports provide service-specific adoption and activity metrics rather than security incidents or licensing inventory alone. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

B: Security & privacy settings in the Microsoft 365 admin center are designed for organization-wide configuration, not individual mailbox preferences. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

C: Microsoft Entra B2B guest collaboration is designed for external users who need controlled access while retaining their external identity context. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

D: Microsoft Graph PowerShell provides scriptable Microsoft 365 and Entra administration suitable for controlled bulk operations. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

E: The exam objective specifically targets configuring software update management through the Microsoft 365 admin center rather than updating clients one by one. It directly addresses the stated requirement.

Learning point: MS102-T02-Q017: Use Microsoft 365 admin center update management to configure the update approach – The exam objective specifically targets configuring software update management through the Microsoft 365 admin center rather than updating clients one by one.

Question 18

A quarterly control review at Margie Travel identifies a gap that must be corrected before the next audit. The implementation review is focused on one outcome: monitor whether managed Microsoft 365 Apps are receiving the intended updates. The affected scope contains 59 users across 2 administrative groups. The team does not want to redesign unrelated workloads. What should the administrator configure first?

  1. Review software update status in the Microsoft 365 admin center
  2. Use group-based licensing
  3. Use Microsoft Purview role groups for Purview responsibilities
  4. Review Network connectivity insights for the affected office
  5. Add the custom domain and verify ownership with DNS

Correct answer: A

Why: Central update monitoring is the appropriate way to identify update compliance and rollout problems across managed Microsoft 365 Apps. It directly addresses the stated requirement.

Option review:

A: Central update monitoring is the appropriate way to identify update compliance and rollout problems across managed Microsoft 365 Apps. It directly addresses the stated requirement.

B: Group-based licensing applies product licenses to group members and adjusts assignments as membership changes, reducing per-user manual work. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

C: Purview uses role groups to bundle compliance permissions, allowing administrators to receive only the capabilities needed for their duties. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

D: Network connectivity insights correlate Microsoft 365 connectivity measurements with locations and recommendations, helping isolate network design issues. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

E: Microsoft 365 verifies custom-domain ownership by requiring the organization to publish the specified DNS record before the domain can be used fully. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

Learning point: MS102-T02-Q018: Review software update status in the Microsoft 365 admin center – Central update monitoring is the appropriate way to identify update compliance and rollout problems across managed Microsoft 365 Apps.

Question 19

Southridge Video is preparing a change requested by the governance lead. The implementation review is focused on one outcome: control how supported Microsoft 365 Apps updates are managed centrally. The control owner requires a review after 76 days and evidence from 15 representative cases. The team does not want to redesign unrelated workloads. What should the administrator configure first?

  1. Create a new Microsoft 365 tenant
  2. Use Microsoft 365 admin center update management to configure the update approach
  3. Use Microsoft 365 Backup to restore a protected SharePoint site or OneDrive account
  4. Edit the Microsoft 365 contact instead of creating a licensed user
  5. Assign the least-privileged built-in Microsoft Entra role

Correct answer: B

Why: The exam objective specifically targets configuring software update management through the Microsoft 365 admin center rather than updating clients one by one. It directly addresses the stated requirement.

Option review:

A: A new tenant provides the organizational and identity boundary required for an independent Microsoft 365 environment. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

B: The exam objective specifically targets configuring software update management through the Microsoft 365 admin center rather than updating clients one by one. It directly addresses the stated requirement.

C: Microsoft 365 Backup supports high-fidelity restore operations for protected SharePoint and OneDrive content to selected restore points. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

D: Contacts are appropriate for non-sign-in recipients; creating a licensed user would add unnecessary identity and licensing overhead. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

E: Least-privilege role assignment limits standing administrative capability and reduces the impact of credential misuse. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

Learning point: MS102-T02-Q019: Use Microsoft 365 admin center update management to configure the update approach – The exam objective specifically targets configuring software update management through the Microsoft 365 admin center rather than updating clients one by one.

Question 20

Consolidated Messenger is standardizing administration after several teams used inconsistent procedures. The administrator must choose between several Microsoft 365 controls. Only one directly meets the documented need to monitor whether managed Microsoft 365 Apps are receiving the intended updates. The organization wants a reversible rollout with measurable verification before broad enforcement. The service desk has 93 related tickets from 5 business units, so the team wants a targeted fix. What should the administrator configure first?

  1. Use Microsoft Graph PowerShell for scripted bulk user changes
  2. Scope the delegated administrator to the administrative unit instead of the tenant
  3. Review software update status in the Microsoft 365 admin center
  4. Use Microsoft 365 admin center update management to configure the update approach
  5. Configure the Organization profile in the Microsoft 365 admin center

Correct answer: C

Why: Central update monitoring is the appropriate way to identify update compliance and rollout problems across managed Microsoft 365 Apps. It directly addresses the stated requirement.

Option review:

A: Microsoft Graph PowerShell provides scriptable Microsoft 365 and Entra administration suitable for controlled bulk operations. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

B: A tenant-wide role would exceed the requirement; administrative-unit scoping is designed for delegated management of a subset of directory objects. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

C: Central update monitoring is the appropriate way to identify update compliance and rollout problems across managed Microsoft 365 Apps. It directly addresses the stated requirement.

D: The exam objective specifically targets configuring software update management through the Microsoft 365 admin center rather than updating clients one by one. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

E: Organization profile settings are the appropriate place for tenant-wide company information rather than per-user properties. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

Learning point: MS102-T02-Q020: Review software update status in the Microsoft 365 admin center – Central update monitoring is the appropriate way to identify update compliance and rollout problems across managed Microsoft 365 Apps.

Question 21

The operations team at Wide World Importers needs to resolve an issue without granting broader permissions than necessary. The next migration wave is blocked until the team can control how supported Microsoft 365 Apps updates are managed centrally. The solution should use a native Microsoft control that matches the stated requirement. The affected scope contains 19 users across 18 administrative groups. Which control should the team use?

  1. Add the custom domain and verify ownership with DNS
  2. Verify the workload is protected before relying on Microsoft 365 Backup recovery
  3. Create and manage a shared mailbox
  4. Use Microsoft 365 admin center update management to configure the update approach
  5. Use Microsoft Defender Unified RBAC or the appropriate Defender role

Correct answer: D

Why: The exam objective specifically targets configuring software update management through the Microsoft 365 admin center rather than updating clients one by one. It directly addresses the stated requirement.

Option review:

A: Microsoft 365 verifies custom-domain ownership by requiring the organization to publish the specified DNS record before the domain can be used fully. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

B: Backup recovery depends on the content being in the configured protection scope; assumptions about protection should be validated before an incident. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

C: A shared mailbox is intended for a common address accessed by multiple delegated users rather than a personal user mailbox. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

D: The exam objective specifically targets configuring software update management through the Microsoft 365 admin center rather than updating clients one by one. It directly addresses the stated requirement.

E: Defender permissions should be managed with the supported Defender role model or unified RBAC so security duties can be scoped appropriately. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

Learning point: MS102-T02-Q021: Use Microsoft 365 admin center update management to configure the update approach – The exam objective specifically targets configuring software update management through the Microsoft 365 admin center rather than updating clients one by one.

Question 22

Lucerne Publishing is standardizing administration after several teams used inconsistent procedures. The existing configuration works for normal operations but fails the new requirement to measure active use of Microsoft 365 services with workload usage data. The change must be repeatable and supportable after the project team leaves. The affected scope contains 36 users across 8 administrative groups. Which control should the team use?

  1. Assign the least-privileged built-in Microsoft Entra role
  2. Require approval or MFA for PIM role activation
  3. Use Adoption Score for organization-level adoption insights
  4. Create a Microsoft 365 Backup protection policy
  5. Use Microsoft 365 usage reports

Correct answer: E

Why: Usage reports provide service-specific adoption and activity metrics rather than security incidents or licensing inventory alone. It directly addresses the stated requirement.

Option review:

A: Least-privilege role assignment limits standing administrative capability and reduces the impact of credential misuse. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

B: PIM activation settings can require safeguards such as approval, MFA, justification, or time limits for eligible role activations. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

C: Adoption Score is designed to provide adoption-oriented insights and recommendations rather than raw service-health status. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

D: Microsoft 365 Backup protection policies define protected content and establish recoverable restore points for supported workloads. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

E: Usage reports provide service-specific adoption and activity metrics rather than security incidents or licensing inventory alone. It directly addresses the stated requirement.

Learning point: MS102-T02-Q022: Use Microsoft 365 usage reports – Usage reports provide service-specific adoption and activity metrics rather than security incidents or licensing inventory alone.

Question 23

Northwind Traders is troubleshooting a Microsoft 365 behavior that affects a limited but important user population. The current workaround is too manual. The replacement should evaluate how Microsoft 365 usage patterns and technology experiences are progressing across the organization. The initial rollout covers 21 locations and approximately 530 managed identities or devices. The solution should use a native Microsoft control that matches the stated requirement. Which approach most directly addresses the requirement?

  1. Use Adoption Score for organization-level adoption insights
  2. Configure the Organization profile in the Microsoft 365 admin center
  3. Create a member user in Microsoft Entra ID
  4. Review license assignment errors for the affected users or groups
  5. Create an administrative unit and assign a scoped role over it

Correct answer: A

Why: Adoption Score is designed to provide adoption-oriented insights and recommendations rather than raw service-health status. It directly addresses the stated requirement.

Option review:

A: Adoption Score is designed to provide adoption-oriented insights and recommendations rather than raw service-health status. It directly addresses the stated requirement.

B: Organization profile settings are the appropriate place for tenant-wide company information rather than per-user properties. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

C: Member users are the normal tenant identities for internal users and can be assigned licenses, groups, and roles as appropriate. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

D: License monitoring should include assignment state and errors, such as conflicting service plans or insufficient available licenses. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

E: Administrative units provide a boundary for scoped Entra role assignments so a delegated admin does not automatically administer the whole tenant. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

Learning point: MS102-T02-Q023: Use Adoption Score for organization-level adoption insights – Adoption Score is designed to provide adoption-oriented insights and recommendations rather than raw service-health status.

Question 24

City Power & Light is migrating a business process to Microsoft 365 and wants the narrowest supported solution. A production change is approved only if it can measure active use of Microsoft 365 services with workload usage data. The solution should use a native Microsoft control that matches the stated requirement. The initial rollout covers 11 locations and approximately 700 managed identities or devices. What should the administrator configure first?

  1. Use Microsoft Defender Unified RBAC or the appropriate Defender role
  2. Use Microsoft 365 usage reports
  3. Configure Service health notifications
  4. Use a tenant administrator account for initial setup
  5. Use Microsoft 365 Backup granular restore for Exchange mailbox items when appropriate

Correct answer: B

Why: Usage reports provide service-specific adoption and activity metrics rather than security incidents or licensing inventory alone. It directly addresses the stated requirement.

Option review:

A: Defender permissions should be managed with the supported Defender role model or unified RBAC so security duties can be scoped appropriately. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

B: Usage reports provide service-specific adoption and activity metrics rather than security incidents or licensing inventory alone. It directly addresses the stated requirement.

C: Service health notification settings allow admins to receive updates for selected services and issue types instead of relying only on manual dashboard checks. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

D: Initial tenant configuration requires an appropriately privileged tenant administrator rather than an ordinary workload user. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

E: Microsoft 365 Backup supports mailbox-item recovery scenarios, allowing targeted recovery rather than an unnecessarily broad rollback. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

Learning point: MS102-T02-Q024: Use Microsoft 365 usage reports – Usage reports provide service-specific adoption and activity metrics rather than security incidents or licensing inventory alone.

Question 25

During a tenant review at Trey Research, the security operations analyst identifies one unresolved requirement. A production change is approved only if it can evaluate how Microsoft 365 usage patterns and technology experiences are progressing across the organization. The solution should use a native Microsoft control that matches the stated requirement. The service desk has 87 related tickets from 24 business units, so the team wants a targeted fix. Which option best satisfies the requirement?

  1. Create a Microsoft 365 Backup protection policy
  2. Create an organizational contact in the Microsoft 365 admin center
  3. Use Adoption Score for organization-level adoption insights
  4. Use Microsoft Entra PowerShell or Microsoft Graph PowerShell with a validated input set
  5. Make the privileged role eligible in Microsoft Entra PIM

Correct answer: C

Why: Adoption Score is designed to provide adoption-oriented insights and recommendations rather than raw service-health status. It directly addresses the stated requirement.

Option review:

A: Microsoft 365 Backup protection policies define protected content and establish recoverable restore points for supported workloads. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

B: A contact represents an external recipient for addressing and directory purposes and does not need a Microsoft 365 sign-in identity. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

C: Adoption Score is designed to provide adoption-oriented insights and recommendations rather than raw service-health status. It directly addresses the stated requirement.

D: PowerShell-based bulk administration is appropriate when the input set can be validated, logged, and processed consistently. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

E: PIM eligibility supports just-in-time role activation and reduces the time that privileged permissions are continuously active. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

Learning point: MS102-T02-Q025: Use Adoption Score for organization-level adoption insights – Adoption Score is designed to provide adoption-oriented insights and recommendations rather than raw service-health status.

Question 26

Fourth Coffee has completed a pilot and must now choose the production administration approach. The support team has reproduced the issue and narrowed it to this requirement: measure active use of Microsoft 365 services with workload usage data. The team will validate the change with 14 pilot groups before expanding it to 13 users. Existing workload settings should remain unchanged unless the requirement specifically depends on them. What should the administrator configure first?

  1. Create an administrative unit and assign a scoped role over it
  2. Prefer local internet egress for Microsoft 365 traffic where appropriate
  3. Make the verified custom domain the default domain
  4. Use Microsoft 365 usage reports
  5. Select the restore point that predates the damaging event

Correct answer: D

Why: Usage reports provide service-specific adoption and activity metrics rather than security incidents or licensing inventory alone. It directly addresses the stated requirement.

Option review:

A: Administrative units provide a boundary for scoped Entra role assignments so a delegated admin does not automatically administer the whole tenant. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

B: Microsoft 365 network guidance favors direct, local egress and avoiding unnecessary hairpins for trusted Microsoft 365 traffic. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

C: After a custom domain is verified, setting it as the default causes new identities to use that domain suffix by default. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

D: Usage reports provide service-specific adoption and activity metrics rather than security incidents or licensing inventory alone. It directly addresses the stated requirement.

E: Restore-point selection should align to when the unwanted deletion, encryption, or overwrite occurred so the recovered state is actually healthy. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

Learning point: MS102-T02-Q026: Use Microsoft 365 usage reports – Usage reports provide service-specific adoption and activity metrics rather than security incidents or licensing inventory alone.

Question 27

A quarterly control review at Alpine Ski House identifies a gap that must be corrected before the next audit. The change advisory board wants the smallest supported control that can evaluate how Microsoft 365 usage patterns and technology experiences are progressing across the organization. The control owner requires a review after 30 days and evidence from 4 representative cases. The response must address the cause described in the scenario rather than simply suppressing the symptom. Which option best satisfies the requirement?

  1. Use Microsoft 365 Backup granular restore for Exchange mailbox items when appropriate
  2. Create a Microsoft 365 Group for shared collaboration resources
  3. Use the workload-specific Microsoft 365 admin role when tenant-wide privilege is unnecessary
  4. Open Health > Service health in the Microsoft 365 admin center
  5. Use Adoption Score for organization-level adoption insights

Correct answer: E

Why: Adoption Score is designed to provide adoption-oriented insights and recommendations rather than raw service-health status. It directly addresses the stated requirement.

Option review:

A: Microsoft 365 Backup supports mailbox-item recovery scenarios, allowing targeted recovery rather than an unnecessarily broad rollback. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

B: Microsoft 365 Groups provide a membership service that integrates with Microsoft 365 collaboration resources. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

C: Workload-specific admin roles provide narrower permissions than highly privileged tenant roles and better support least privilege. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

D: Service health provides tenant-relevant advisories and incidents and should be checked before treating a widespread cloud problem as a local fault. That capability can be valid in its own scenario, but it does not most directly satisfy the requirement stated here.

E: Adoption Score is designed to provide adoption-oriented insights and recommendations rather than raw service-health status. It directly addresses the stated requirement.

Learning point: MS102-T02-Q027: Use Adoption Score for organization-level adoption insights – Adoption Score is designed to provide adoption-oriented insights and recommendations rather than raw service-health status.

Popular posts

img