Microsoft 365 Identity and Services (legacy) — Question 70
You have a Microsoft 365 subscription that contains a user named User1.
User1 requires admin access to perform the following tasks:
• Manage Microsoft Exchange Online settings.
• Create Microsoft 365 groups.
You need to ensure that User1 only has admin access for eight hours and requires approval before the role assignment takes place.
What should you use?
Answer options
- A. Microsoft Entra Verified ID
- B. Azure Active Directory (Azure AD) Identity Protection
- C. Conditional Access
- D. Azure Active Directory (Azure AD) Privileged Identity Management (PIM)
Correct answer: D
Explanation
The correct answer is D, Azure Active Directory (Azure AD) Privileged Identity Management (PIM), as it allows you to manage time-limited administrative roles and requires approval for role assignments. Options A, B, and C do not provide the capability to set temporary access or require approval for admin role assignments.