SC-300 Verified 2026 Edition

SC-300Practice Exam

Master the Microsoft Identity and Access Administrator with the official PlanetCert Practice Test. Access real exam questions, professional-grade detailed explanations, and our advanced adaptive simulator. Pass your certification exam on the first attempt.

481 Total Questions
2 Included Versions Get all versions for the price of one
English Edition
All-In-One Bundle
$79.99
$75.99
  • Interactive Simulator & AI
  • Detailed Explanations
  • Study, Timed & Flashcard Mode
  • Lifetime Access & Updates

Instant lifetime access • Secure checkout

Why Study with PlanetCert?

The Latest Questions

Practice questions and exam topics aligned with the current exam objectives.

Detailed Explanations

Go beyond the answer. Master the material with comprehensive learning and professional explanations for every concept.

AI

AI-Powered Insights

Personalized preparation guidance that adapts to your performance and identifies weak spots automatically.

Exam Information

Official specifications published by Microsoft

Exam Format

100 min
40-60 questions
700
Associate

Registration

$165 USD
Pearson VUE or online proctoring
English, Japanese, Chinese (Simplified), Korean +8 more

Validity

1 year
Pass renewal assessment on Microsoft Learn (free); Complete relevant Microsoft Learn modules; Earn a higher-level certification

SC-300 Exam Topics and Domains

SC-300 is organized into 4 weighted domains. Expect to work with Microsoft Entra ID, Azure Portal, Defender for Cloud Apps, Microsoft Entra Conditional Access, and more.

1

Implement and manage user identities

25%

Configure and manage a Microsoft Entra tenant

Configure and manage built-in and custom Microsoft Entra rolesRecommend when to use administrative unitsConfigure and manage administrative unitsEvaluate effective permissions for Microsoft Entra rolesConfigure and manage domains in Microsoft Entra ID and Microsoft 365Configure Company branding settingsConfigure tenant properties, user settings, group settings, and device settings
  • Configure and manage Microsoft Entra tenant settings
  • Implement administrative units for delegated administration
  • Evaluate and manage role permissions effectively

Create, configure, and manage Microsoft Entra identities

Create, configure, and manage usersCreate, configure, and manage groupsManage custom security attributesAutomate bulk operations using the Microsoft Entra admin center and PowerShellManage device join and device registration in Microsoft Entra IDAssign, modify, and report on licenses
  • Manage user and group identities effectively
  • Implement automated identity management processes
  • Configure device identity and access

Implement and manage identities for external users and tenants

Manage External collaboration settings in Microsoft Entra IDInvite external users, individually or in bulkManage external user accounts in Microsoft Entra IDImplement Cross-tenant access settingsImplement and manage cross-tenant synchronizationConfigure external identity providers
  • Configure and manage external collaboration
  • Implement cross-tenant access policies
  • Integrate external identity providers

Implement and manage hybrid identity

Implement and manage Microsoft Entra Connect SyncImplement and manage Microsoft Entra Cloud SyncImplement and manage password hash synchronizationImplement and manage pass-through authenticationImplement and manage seamless single sign-on (SSO)Migrate from AD FS to other authentication and authorization mechanismsImplement and manage Microsoft Entra Connect Health
  • Implement hybrid identity solutions
  • Configure and manage directory synchronization
  • Monitor hybrid identity health
2

Implement authentication and access management

30%

Plan, implement, and manage Microsoft Entra user authentication

Plan for authenticationImplement and manage authentication methodsImplement and manage tenant-wide Multi-factor Authentication (MFA) settingsConfigure and deploy self-service password reset (SSPR)Implement and manage Windows Hello for BusinessDisable accounts and revoke user sessionsImplement and manage Microsoft Entra password protectionEnable Microsoft Entra Kerberos authentication for hybrid identities
  • Plan and implement authentication strategies
  • Configure multi-factor authentication
  • Implement passwordless authentication

Plan, implement, and manage Microsoft Entra Conditional Access

Plan Conditional Access policiesImplement Conditional Access policy assignmentsImplement Conditional Access policy controlsTest and troubleshoot Conditional Access policiesImplement session managementImplement device-enforced restrictionsImplement continuous access evaluationConfigure authentication contextImplement protected actionsCreate a Conditional Access policy from a template
  • Design and implement Conditional Access policies
  • Configure advanced access controls
  • Troubleshoot access issues

Manage risk by using Microsoft Entra ID Protection

Implement and manage user risk policiesImplement and manage sign-in risk policiesImplement and manage MFA registration policiesMonitor, investigate and remediate risky users and sign-insMonitor, investigate, and remediate risky workload identities
  • Configure risk-based policies
  • Investigate and remediate risks
  • Protect workload identities

Implement access management for Azure resources by using Azure roles

Create custom Azure rolesAssign built-in and custom Azure rolesEvaluate effective permissions for Azure rolesAssign Azure roles to enable Microsoft Entra ID login to Azure VMsConfigure Azure Key Vault RBAC and access policies
  • Implement Azure RBAC
  • Create and manage custom roles
  • Secure Azure resources with proper access controls

Implement Global Secure Access

Deploy Global Secure Access clientsDeploy Private AccessDeploy Internet AccessDeploy Internet Access for Microsoft 365
  • Deploy Global Secure Access solution
  • Configure private and internet access
  • Optimize Microsoft 365 connectivity
3

Plan and implement workload identities

25%

Plan and implement identities for applications and Azure workloads

Select appropriate identities for applications and Azure workloadsCreate managed identitiesAssign a managed identity to an Azure resourceUse a managed identity to access other Azure resources
  • Select and implement appropriate workload identities
  • Configure managed identities for Azure resources
  • Implement secure resource access patterns

Plan, implement, and monitor the integration of enterprise applications

Plan and implement settings for enterprise applicationsAssign appropriate Microsoft Entra roles to manage enterprise applicationsDesign and implement integration for on-premises apps using Application ProxyDesign and implement integration for SaaS appsAssign, classify, and manage users, groups, and app rolesConfigure and manage user and admin consentCreate and manage application collections
  • Integrate enterprise applications
  • Configure application access and consent
  • Implement Application Proxy for on-premises apps

Plan and implement app registrations

Plan for app registrationsCreate app registrationsConfigure app authenticationConfigure API permissionsCreate app roles
  • Create and configure app registrations
  • Implement application authentication
  • Configure API permissions and roles

Manage and monitor app access by using Microsoft Defender for Cloud Apps

Configure and analyze cloud discovery resultsConfigure connected appsImplement application-enforced restrictionsConfigure Conditional Access app controlCreate access and session policiesImplement and manage policies for OAuth appsManage the Cloud app catalog
  • Configure cloud app discovery and governance
  • Implement session and access controls
  • Manage OAuth app permissions
4

Plan and automate identity governance

20%

Plan and implement entitlement management in Microsoft Entra

Plan entitlementsCreate and configure catalogsCreate and configure access packagesManage access requestsImplement and manage terms of use (ToU)Manage the lifecycle of external usersConfigure and manage connected organizations
  • Implement entitlement management
  • Configure access packages and catalogs
  • Manage external user lifecycle

Plan, implement, and manage access reviews in Microsoft Entra

Plan for access reviewsCreate and configure access reviewsMonitor access review activityManually respond to access review activity
  • Plan and implement access reviews
  • Configure review automation
  • Monitor and respond to reviews

Plan and implement privileged access

Plan and manage Microsoft Entra roles in PIMPlan and manage Azure resources in PIMPlan and configure groups managed by PIMManage the PIM request and approval processAnalyze PIM audit history and reportsCreate and manage break-glass accounts
  • Implement Privileged Identity Management
  • Configure just-in-time access
  • Manage emergency access accounts

Monitor identity activity by using logs, workbooks, and reports

Review and analyze sign-in, audit, and provisioning logsConfigure diagnostic settingsMonitor Microsoft Entra ID using KQL queriesAnalyze Microsoft Entra ID using workbooks and reportingMonitor and improve security posture using Identity Secure Score
  • Configure identity monitoring
  • Analyze logs with KQL
  • Improve security posture

How do I earn this certification?

Practice with Precision

The PlanetCert Simulator mirrors the real exam environment with authentic questions and timed pressure.

Launch Simulator

How to study for this exam?

The most effective way to prepare for SC-300 is by using the PlanetCert Simulator to practice questions and review detailed explanations.

What's changed on this exam?

Current Status
  • ACTIVE
  • Last content update: 2025-07-25
  • Announcement date: 2025-06-26
Updates
  • Global Secure Access GA New topic added to exam as of July 2025 • Release date: 2024-07-01
  • Microsoft Entra Workload ID 2.0 Enhanced coverage of workload identity protection • Release date: 2025-01-15
  • Protected Actions for Conditional Access Preview Added to exam topics despite preview status due to high adoption • Release date: 2025-03-01
  • Microsoft Entra Permissions Management Removed Removed from exam scope as of July 2025 update • Release date: 2025-07-25

Who should take this exam?

This exam is typically taken by Identity and Access Administrators and Security Administrators.

  • Familiarity with Azure and Microsoft 365 services and workloads
  • Understanding of Active Directory Domain Services (AD DS)
  • Basic knowledge of PowerShell
  • Understanding of Kusto Query Language (KQL)
  • General understanding of identity and access management concepts
  • Experience with Zero Trust security principles

Your Complete Exam Solution

Best-In-Class Practice Tests

Authentic, regularly updated questions that mirror the real exam. Verified, current material — not recycled dumps.

Topical Breakdown

Study by domain, pinpoint weak areas, and focus your time where it matters most. Every topic mapped to the official syllabus.

Flashcard Mode

Rapid-fire review to reinforce key concepts. Flip through questions and answers at your own pace before exam day.

See How You Compare Against Yourself

✕
✕
✕

Other Exam Prep

  • Outdated question dumpsRecycled, often inaccurate material
  • No explanationsMemorize answers without understanding
  • Static PDF filesNo interactive practice or feedback
  • Subscription feesRecurring charges, access expires
✓
✓
✓

PlanetCert

  • Verified, current questionsUpdated weekly to match live exam objectives
  • Expert-written rationalesUnderstand every concept, not just the answer
  • Session tracking & exam progressTrack every attempt, see your growth over time
  • Lifetime access, one pricePay once — updates included forever
CERTIFIEDSC-300

Study Naturally, Study Responsibly

Join thousands of certified professionals who trusted PlanetCert to pass on the first attempt.

Try Free Demo
Secure Checkout Lifetime Access Money-back Guarantee