DON'T WANT TO MISS A THING?

Certification Exam Passing Tips

Latest exam news and discount info

Curated and up-to-date by our experts

Yes, send me the newsletter

Best Microsoft MD-102 Practice Exams and Exam Preparation Materials, Microsoft Windows Endpoint Administrator | SPOTO

Dive into our curated selection of practice tests, sample questions, and mock exams tailored to enhance your exam readiness. Explore our extensive array of exam materials, including free test resources and online exam questions, meticulously designed to equip you with the skills needed to excel in the MD-102: Manage endpoint security certification. With our detailed exam dumps and comprehensive exam questions and answers, you'll be fully prepared to tackle the challenges of the exam. Stay ahead of the curve with our latest practice tests, continuously updated to reflect the most recent exam trends. Embark on your journey to becoming a Microsoft 365 Certified: Endpoint Administrator Associate with SPOTO's unparalleled exam preparation resources.
Take other online exams

Question #1
You need to meet the OOBE requirements for Windows AutoPilot. Which two settings should you configure from the Azure Active Directory blade? To answer, select the appropriate settings in the answer area. NOTE: Each correct selection is worth one point.
A. Mastered
B. Not Mastered
View answer
Correct Answer: A
Question #2
What is the maximum number of devices that User1 and User2 can enroll in Intune? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.
A. Mastered
B. Not Mastered
View answer
Correct Answer: C
Question #3
You have a Microsoft 365 tenant and an internal certification authority (CA). You need to use Microsoft Intune to deploy the root CA certificate to managed devices. Which type of Intune policy and profile should you use? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.
A. Mastered
B. Not Mastered
View answer
Correct Answer: C
Question #4
You are replacing 100 company-owned Windows devices. You need to use the Microsoft Deployment Toolkit (MDT) to securely wipe and decommission the devices. The solution must meet the following requirements: ? Back up the user state. ? Minimize administrative effort. Which task sequence template should you use?
A. Standard Client Task Sequence
B. Standard Client Replace Task Sequence
C. Litetouch OEM Task Sequence
D. Sysprep and Capture
View answer
Correct Answer: A
Question #5
You have a Microsoft 365 subscription that contains the devices shown in the following table. You need to ensure that only devices running trusted firmware or operating system build can access network resources. Which compliance policy setting should you configure for each device? To answer, drag the appropriate settings to the correct devices. Each setting may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. NOTE: Each correct selectio
A. Mastered
B. Not Mastered
View answer
Correct Answer: C
Question #6
You have a Windows 11 capable device named Device1 that runs the 64-bit version of Windows 10 Enterprise and has Microsoft Office 2019 installed. You have the Windows 11 Enterprise images shown in the following table. Which images can be used to perform an in-place upgrade of Device1?
A. image1 only
B. lmage2only
C. Image1 and Image2
View answer
Correct Answer: A
Question #7
You have a Microsoft 365 subscription that uses Microsoft Intune Suite. You use Microsoft Intune to manage devices. You plan to deploy two apps named App1 and App2 to all Windows devices. App1 must be installed before App2. From the Intune admin center, you create and deploy two Windows app (Win32) apps. You need to ensure that App1 is installed before App2 on every device. What should you configure?
A. the App1 deployment configurations
B. a dynamic device group
C. a detection rule
D. the App2 deployment configurations
View answer
Correct Answer: A
Question #8
You have a Microsoft 365 subscription that contains the devices shown in the following table. You need to ensure that only devices running trusted firmware or operating system builds can access network resources. Which compliance policy setting should you configure for each device? To answer, drag the appropriate settings to the correct devices. Each setting may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. NOTE: Each correct selecti
A. Mastered
B. Not Mastered
View answer
Correct Answer: C
Question #9
You have a Microsoft 365 E5 subscription that contains 100 iOS devices enrolled in Microsoft Intune. You need to deploy a custom line-of-business (LOB) app to the devices by using Intune. Which extension should you select for the app package file?
A.
B. apk
C. jpa
D.
View answer
Correct Answer: A
Question #10
You have an Azure Active Directory (Azure AD) tenant named contoso.com that contains a user named User1. User1 has a user principal name (UPN) of user1 @contoso.com. You join a Windows 10 device named Client1 to contoso.com. You need to add User1 to the local Administrators group of Client1. How should you complete the command? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.
A. Mastered
B. Not Mastered
View answer
Correct Answer: B
Question #11
You have a computer that runs Windows 10 and contains two local users named User! and User2. You need to ensure that the users can perform the following anions: ? User 1 must be able to adjust the date and time. ? User2 must be able to clear Windows logs. The solution must use the principle of least privilege. To which group should you add each user? To answer, drag the appropriate groups to the correct users. Each group may be used once, more than once, or not at all. You may need to drag the split bar bet
A. Mastered
B. Not Mastered
View answer
Correct Answer: A
Question #12
You need to implement mobile device management (MDM) for personal devices that run Windows 11. The solution must meet the following requirements: ? Ensure that you can manage the personal devices by using Microsoft Intune. ? Ensure that users can access company data seamlessly from their personal devices. ? Ensure that users can only sign in to their personal devices by using their personal account What should you use to add the devices to Azure AD?
A. Azure AD registered
B. hybrid Azure AD join
C. AD joined
View answer
Correct Answer: A
Question #13
You create a Windows Autopilot deployment profile. You need to configure the profile settings to meet the following requirements: Include the hardware serial number in the computer name. Which two settings should you configure? To answer, select the appropriate settings in the answer area. NOTE: Each correct selection is worth one point.
A. Mastered
B. Not Mastered
View answer
Correct Answer: A
Question #14
You have a Microsoft 365 subscription that contains 100 devices enrolled in Microsoft Intune. You need to review the startup processes and how often each device restarts. What should you use?
A. Endpoint analytics
B. Intune Data Warehouse
C. Azure Monitor
D. Device Management
View answer
Correct Answer: B
Question #15
You have a Microsoft 365 subscription that uses Microsoft Intune Suite. You use Microsoft Intune to manage devices. You need to ensure that the startup performance of managed Windows 11 devices is captured and available for review in the Intune admin center. What should you configure?
A. the Azure Monitor agent
B. a device compliance policy
C. a Conditional Access policy
D. an Intune data collection policy
View answer
Correct Answer: A
Question #16
You use a Microsoft Intune subscription to manage iOS devices. You configure a device compliance policy that blocks jailbroken iOS devices. You need to enable Enhanced jailbreak detection. What should you configure?
A. the Compliance policy settings
B. the device compliance policy
C. a network location
D. a configuration profile
View answer
Correct Answer: B
Question #17
You have computers that run Windows 11 Pro. The computers are joined to Azure AD and enrolled in Microsoft Intune. You need to upgrade the computers to Windows 11 Enterprise. What should you configure in Intune?
A. a device compliance policy
B. a device cleanup rule
C. a device enrollment policy
D. a device configuration profile
View answer
Correct Answer: D
Question #18
You have devices enrolled in Microsoft Intune as shown in the following table. On which devices can you apply app configuration policies?
A. Device2 only
B. Device1 and Device2 only
C. Device3 and Device4 only
D. Device2, Device3, and Device4 only
E. Device1, Device2, Device B, and Device4
View answer
Correct Answer: A
Question #19
You manage 1.000 devices by using Microsoft Intune. You review the Device compliance trends report. For how long will the report display trend data?
A. 30 days
B. 60 days
C. 90 days
D. 365 days
View answer
Correct Answer: B
Question #20
You have a Microsoft 365 subscription that uses Microsoft Intune Suite. You use Microsoft Intune to manage devices. You have a Windows 11 device named Device1 that is enrolled in Intune. Device1 has been offline for 30 days. You need to remove Device1 from Intune immediately. The solution must ensure that if the device checks in again, any apps and data provisioned by Intune are removed. User-installed apps, personal data, and OEM-installed apps must be retained. What should you use?
A. a Delete action
B. a Retire action
C. a Fresh Start action
D. an Autopilot Reset action
View answer
Correct Answer: A
Question #21
You have a Microsoft 365 subscription that contains two security groups named Group1 and Group2. Microsoft 365 uses Microsoft Intune Suite. You use Microsoft Intune to manage devices. You need to assign roles in Intune to meet the following requirements: ? The members of Group1 must manage Intune roles and assignments. ? The members of Group2 must assign existing apps and policies to users and devices. The solution must follow the principle of least privilege. Which role should you assign to each group? To
A. Mastered
B. Not Mastered
View answer
Correct Answer: A
Question #22
You have a Microsoft 365 E5 subscription that contains the devices shown in the following table. All devices have Microsoft Edge installed. From the Microsoft Intune admin center, you create a Microsoft You need to apply Edge1 to all the supported devices. To which devices should you apply Edge1?
A. Device1 only
B. Device1 and Device2 only
C. Device1, Device2, and Device3 only
D. Device1, Device2, and Device4 only
E. Device1, Device2, Device3, and Device4
View answer
Correct Answer: AE
Question #23
You have a Microsoft 365 E5 subscription that contains 150 hybrid Azure AD joined Windows devices. All the devices are enrolled in Microsoft Intune. You need to configure Delivery Optimization on the devices to meet the following requirements: ? Allow downloads from the internet and from other computers on the local network. ? Limit the percentage of used bandwidth to 50. What should you use?
A. a configuration profile
B. a Windows Update for Business Group Policy setting
C. a Microsoft Peer-to-Peer Networking Services Group Policy setting
D. an Update ring for Windows 10 and later profile
View answer
Correct Answer: A
Question #24
You use Microsoft Intune and Intune Data Warehouse. You need to create a device inventory report that includes the data stored in the data warehouse. What should you use to create the report?
A. the Azure portal app
B. Endpoint analytics
C. the Company Portal app
D. Microsoft Power Bl
View answer
Correct Answer: B
Question #25
You have a Microsoft 365 tenant that uses Microsoft Intune to manage personal and corporate devices. The tenant contains three Windows 10 devices as shown in the following exhibit. How will Intune classify each device after the devices are enrolled in Intune automatically? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.
A. Mastered
B. Not Mastered
View answer
Correct Answer: B
Question #26
Which user can enroll Device6 in Intune?
A. User4 and User2 only
B. User4 and User 1 only
C. User1, User2, User3, and User4
D. User4
View answer
Correct Answer: D
Question #27
You have a Microsoft Intune deployment that contains the resources shown in the following table. You create a policy set named Set1 and add Comply1 to Set1. Which additional resources can you add to Set1?
A. Conf1 only
B. Comply2 only
C. Comply2 and Conf1 only
D. CA1
E. Comply2
View answer
Correct Answer: A
Question #28
You have a Microsoft 365 tenant that uses Microsoft Intune. You use the Company Portal app to access and install published apps to enrolled devices. From the Microsoft Intune admin center, you add a Microsoft Store app. Which two App information types are visible in the Company Portal? NOTE: Each correct selection is worth one point.
A. Privacy URL
B. Information URL
C. Developer
D. Owner
View answer
Correct Answer: E
Question #29
You have a server named Server1 and computers that run Windows 8.1. Server1 has the Microsoft Deployment Toolkit (MDT) installed. You plan to upgrade the Windows 8.1 computers to Windows 10 by using the MDT deployment wizard. You need to create a deployment share on Server1. What should you do on Server1, and what are the minimum components you should add to the MDT deployment share? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.
A. Mastered
B. Not Mastered
View answer
Correct Answer: B
Question #30
You need to meet the technical requirements for the IT department. What should you do first?
A. From the Azure Active Directory blade in the Azure portal, enable Seamless single sign-on
B. From the Configuration Manager console, add an Intune subscription
C. From the Azure Active Directory blade in the Azure portal, configure the Mobility (MDM and MAM) settings
D. From the Microsoft Intune blade in the Azure portal, configure the Windows enrollment settings
View answer
Correct Answer: D
Question #31
You have an Azure AD tenant named contoso.com that contains the users shown in the following table. You have a computer named Computer1 that runs Windows 10. Computer1 is in a workgroup and has the local users shown in the following table. UserA joins Computer1 to Azure AD by using user1@contoso.com. For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.
A. Mastered
B. Not Mastered
View answer
Correct Answer: A
Question #32
You have a Microsoft 365 subscription that contains 1,000 iOS devices. The devices are enrolled in Microsoft Intune as follows: ? Two hundred devices are enrolled by using the Intune Company Portal. ? Eight hundred devices are enrolled by using Apple Automated Device Enrollment (ADE). You create an iOS/iPadOS software updates policy named Policy 1 that is configured to install iOS/iPadOS 15.5. How many iOS devices will Policy1 update, and what should you configure to ensure that only iOS/iPadOS 15.5 is inst
A. Mastered
B. Not Mastered
View answer
Correct Answer: A
Question #33
You have a Microsoft 365 subscription that uses Microsoft Intune Suite. You use Microsoft Intune to manage devices. You need to configure an update ring that meets the following requirements: ? Fixes and improvements to existing Windows functionality can be deferred for 14 days but will install automatically seven days after that date. ? The installation of new Windows features can be deferred for 90 days but will install automatically 10 days after that date. ? Devices must restart automatically three days
A. Mastered
B. Not Mastered
View answer
Correct Answer: A
Question #34
You have a Microsoft 365 subscription. All devices run Windows 10. You need to prevent users from enrolling the devices in the Windows Insider Program. What two configurations should you perform from the Microsoft Intune admin center? Each correct answer is a complete solution. NOTE: Each correct selection is worth one point.
A. a device restrictions device configuration profile
B. an app configuration policy
C. a Windows 10 and later security baseline
D. a custom device configuration profile
E. a Windows 10 and later update ring
View answer
Correct Answer: C
Question #35
You have a Microsoft Intune subscription that is configured to use a PFX certificate connector to an on-premises Enterprise certification authority (CA). You need to use Intune to configure autoenrollment for Android devices by using public key pair (PKCS) certificates. Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
A. Mastered
B. Not Mastered
View answer
Correct Answer: B
Question #36
You have a Microsoft 365 subscription that uses Microsoft Intune Suite. You use Microsoft Intune to deploy and manage Windows devices. You have 100 devices from users that left your company. You need to repurpose the devices for new users by removing all the data and applications installed by the previous users. The solution must minimize administrative effort. What should you do?
A. Deploy a new configuration profile to the devices
B. Perform a Windows Autopilot reset on the devices
C. Perform an in-place upgrade on the devices
D. Perform a clean installation of Windows 11 on the devices
View answer
Correct Answer: A
Question #37
Your company has an Azure AD tenant named contoso.com that contains several Windows 10 devices. When you join new Windows 10 devices to contoso.com, users are prompted to set up a four-digit pin. You need to ensure that the users are prompted to set up a six-digit pin when they join the Windows 10 devices to contoso.com. Solution: From the Microsoft Entra admin center, you configure automatic mobile device management (MDM) enrollment. From the Microsoft Intune admin center, you configure the Windows Hello f
A. Yes
B. No
View answer
Correct Answer: A
Question #38
You are evaluating which devices are compliant. For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.
A. Mastered
B. Not Mastered
View answer
Correct Answer: CE
Question #39
You have a Microsoft 365 E5 subscription that contains 1,000 Windows 11 devices. All the devices are enrolled in Microsoft Intune. You plan to integrate Intune with Microsoft Defender for Endpoint. You need to establish a service-to-service connection between Intune and Defender for Endpoint. Which settings should you configure in the Microsoft Endpoint Manager admin center?
A. Connectors and tokens
B. Premium add-ons
C. Microsoft Tunnel Gateway
D. Tenant enrollment
View answer
Correct Answer: A
Question #40
You have a Microsoft 365 subscription that uses Microsoft Intune. You need to ensure that you can deploy apps to Android Enterprise devices. What should you do first?
A. Create a configuration profile
B. Add a certificate connector
C. Configure the Partner device management settings
D. Link your managed Google Play account to Intune
View answer
Correct Answer: D

View Answers after Submission

Please submit your email and WhatsApp to get the answers of questions.

Note: Please make sure your email ID and Whatsapp are valid so that you can get the correct exam results.

Email:
Whatsapp/phone number: