Microsoft 365 Fundamentals Practice Test (MS-900)
Use the form below to configure your Microsoft 365 Fundamentals Practice Test (MS-900). The practice test can be configured to only include certain exam objectives and domains. You can choose between 5-100 questions and set a time limit.

Microsoft 365 Fundamentals MS-900 Information
The Microsoft 365 Fundamentals (MS-900) certification is an entry-level credential designed for individuals looking to demonstrate foundational knowledge of Microsoft's cloud services. This certification focuses on core concepts of Microsoft 365, including cloud computing models, productivity solutions, collaboration tools, security, compliance, and pricing structures. It provides a broad understanding of Microsoft 365's offerings, which makes it an excellent starting point for individuals new to cloud services or Microsoft technologies.
The certification exam covers four key areas: cloud concepts, core Microsoft 365 services and concepts, security, compliance, and trust in Microsoft 365, as well as Microsoft 365 pricing and support. Candidates are expected to understand the different types of cloud services—SaaS, PaaS, and IaaS—and how these services are integrated into Microsoft 365. This includes being familiar with the productivity capabilities of apps like Microsoft Word, Excel, PowerPoint, Outlook, and OneDrive, as well as the collaboration solutions offered through Teams, SharePoint, and Exchange. Candidates also learn about Microsoft’s endpoint management tools and deployment models, providing a foundational understanding of how these services are used in both hybrid and cloud-based environments.
Security, compliance, and trust are critical components of the Microsoft 365 Fundamentals certification. Candidates are introduced to security features such as Microsoft Defender, which offers a suite of tools to protect data, devices, and identities. They also learn about compliance features like Microsoft Purview, which helps organizations maintain regulatory compliance through solutions like data loss prevention and eDiscovery. Additionally, identity and access management services such as Microsoft Entra ID, multi-factor authentication (MFA), and conditional access policies ensure secure access to Microsoft 365 services.
Another key focus of the certification is pricing and licensing. Candidates explore various billing and pricing models available for Microsoft 365, including enterprise agreements and cloud solution providers. Understanding the different support options available, such as how to create a support request or interpret service health status, is also covered, ensuring that individuals can manage and troubleshoot Microsoft 365 services effectively.
The Microsoft 365 Fundamentals certification is designed for a wide range of individuals, including business decision-makers, IT professionals, and those new to Microsoft’s cloud ecosystem. By earning this certification, individuals can better understand the value that Microsoft 365 brings to businesses, from its productivity tools to its robust security and compliance features. This foundational knowledge serves as a stepping stone for further certifications or more specialized roles within the Microsoft ecosystem.
For more details on the exam topics and to access resources for studying, candidates can refer to the official study guide provided by Microsoft. Additionally, more information about the Microsoft 365 Fundamentals certification itself, including practice assessments and exam details, can be found on the Microsoft certification page.
This certification is ideal for those looking to gain a fundamental understanding of cloud services and Microsoft 365, providing a solid foundation for further career advancement or deeper technical roles.

Free Microsoft 365 Fundamentals MS-900 Practice Test
- 20 Questions
- Unlimited
- Describe cloud conceptsDescribe Microsoft 365 apps and servicesDescribe security, compliance, privacy, and trust in Microsoft 365Describe Microsoft 365 pricing, licensing, and support
Your company wants to enhance protection for its cloud-based email and collaboration tools against threats like phishing and malware.
Which Microsoft Defender solution should you recommend?
Microsoft Defender for Identity
Microsoft Defender for Cloud Apps
Microsoft Defender for Endpoint
Microsoft Defender for Office 365
Answer Description
Microsoft Defender for Office 365 is designed to protect cloud-based email and collaboration tools such as Exchange Online, SharePoint Online, OneDrive for Business, and Microsoft Teams from threats like phishing, malware, and zero-day exploits. It provides advanced threat protection by scanning and analyzing messages and documents for malicious content.
Microsoft Defender for Endpoint focuses on securing endpoint devices.
Microsoft Defender for Identity helps detect identity-based threats.
Microsoft Defender for Cloud Apps secures the use of cloud applications but does not specifically target email and collaboration tools.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What specific features does Microsoft Defender for Office 365 offer to protect against phishing and malware?
How does Microsoft Defender for Office 365 differ from Microsoft Defender for Endpoint?
What is the role of Microsoft Defender for Identity in the security ecosystem?
Which Microsoft 365 application provides a visual task management tool that helps teams create plans, assign work, and track progress through dashboards and charts?
Microsoft Project
Microsoft To Do
Microsoft Planner
Microsoft Lists
Answer Description
Microsoft Planner is designed for team-based task management, allowing users to create plans, assign tasks, share files, and communicate with team members. It presents tasks in a visual format using boards and charts, making it easy to track progress.
Microsoft To Do focuses on individual task management.
Microsoft Lists is used for tracking information in customizable lists.
Microsoft Project is an advanced project management tool suitable for complex projects requiring detailed scheduling and resource management.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What features make Microsoft Planner effective for team task management?
How does Microsoft Planner differ from Microsoft Lists?
Can Microsoft Planner be used independently or does it need integration with other apps?
An organization is required by strict regulations to handle all its data processing and storage internally, without involving third-party service providers. Which deployment model best suits their needs?
On-premises deployment
Hybrid cloud
Private cloud
Public cloud
Answer Description
On-premises deployment is the most suitable model because it involves maintaining all hardware and software internally, without reliance on external providers. This ensures that all data processing and storage remain within the organization, complying with strict regulatory requirements. While a private cloud is dedicated to a single organization, it can still be hosted or managed by third-party providers, which may not meet the requirement of avoiding external involvement. Public and hybrid clouds involve third-party services and are therefore not appropriate in this scenario.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is the difference between on-premises deployment and private cloud?
Why does hybrid cloud not meet strict regulatory requirements?
What are the key advantages of on-premises deployment?
An organization wants to implement a Microsoft Purview feature that can automatically identify and restrict the sharing of sensitive financial information through emails and cloud services. Which feature should they use?
Data Loss Prevention
Information Rights Management
Data Classification
Sensitivity labels
Answer Description
Data Loss Prevention is the feature that allows organizations to create policies to detect and restrict the sharing of sensitive information, such as financial data. It monitors data across services like email, SharePoint Online, and OneDrive for Business, and can automatically block or warn users when attempts are made to share sensitive information improperly. Sensitivity labels classify and protect content by applying labels, but they do not monitor or restrict the sharing of data based on policies. Information Rights Management applies encryption and usage restrictions to content but does not provide automatic detection and restriction of sensitive data sharing. Data Classification helps in identifying and labeling data but does not enforce any restrictions on data sharing.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
How does Data Loss Prevention (DLP) identify sensitive information?
Can DLP be used across all Microsoft 365 services, and if so, which ones?
What happens if a DLP policy detects a violation, and how can users be notified?
Maria needs to collaborate with her team on creating and editing documents. She wants to ensure that all team members can access, edit, and comment on the documents simultaneously, and that the documents are stored in a centralized location within the organization.
Which Microsoft 365 service best meets Maria's needs?
Microsoft SharePoint
Microsoft Outlook
Microsoft Stream
Microsoft OneDrive
Answer Description
Microsoft SharePoint is designed for team collaboration and centralized document management, allowing multiple users to access, edit, and comment on shared documents in real-time within the organization.
Microsoft OneDrive provides cloud storage and sharing, it is intended for individual use and personal file storage.
Microsoft Outlook is an email and calendar application.
Microsoft Stream is a video-sharing service.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
How does Microsoft SharePoint enable real-time collaboration?
What is the difference between OneDrive and SharePoint?
Can SharePoint integrate with other Microsoft 365 services?
An IT administrator is facing a complex issue with Microsoft 365 services and requires technical assistance from Microsoft. Which method offers the most direct way to receive official support?
Ask for help on the Microsoft community forums.
Use the in-product feedback option.
Submit a support request through the online administration portal.
Call Microsoft customer service hotline.
Answer Description
The most direct way to receive official technical support from Microsoft is to submit a support request through the online administration portal. This method ensures that the issue is formally recorded and routed to Microsoft's technical support team for resolution. While calling Microsoft customer service may provide general assistance, it may not connect the administrator with specialized support for complex technical issues. Using the in-product feedback option is intended for providing feedback to improve services and does not offer immediate support. Asking for help on the Microsoft community forums can be helpful but is not an official channel for Microsoft's technical support team to address specific issues.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is the Microsoft 365 online administration portal?
What steps are involved in submitting a support request through the administration portal?
What type of issues can be resolved using the Microsoft 365 support request process?
You need to organize tasks for a small team, allowing members to assign work, set due dates, and track progress visually through different stages. Which Microsoft 365 app is most appropriate for this scenario?
Microsoft Project
Microsoft To Do
Microsoft Planner
Microsoft Forms
Answer Description
Microsoft Planner is designed for team-based task management, offering a visual interface where tasks can be assigned, categorized, and tracked through various stages using boards and cards. It facilitates collaboration by allowing team members to update statuses, add comments, and share files related to tasks. Microsoft Project is more suitable for complex project management needs, providing advanced scheduling, budgeting, and resource allocation features. Microsoft To Do is intended for individual task management without collaborative features. Microsoft Forms is used to create surveys and quizzes, not for task organization or project management.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What features make Microsoft Planner suitable for team-based task management?
How does Microsoft Planner differ from Microsoft Project?
Can Microsoft To Do be used for team collaboration like Planner?
A company wants its employees to access Microsoft 365 services using their existing on-premises user credentials. They prefer a solution that avoids deploying additional servers and minimizes complexity. Which method should they implement to meet these requirements?
Set up pass-through authentication
Implement password hash synchronization
Create separate cloud-only user accounts
Deploy Active Directory Federation Services (AD FS)
Answer Description
Implementing password hash synchronization allows the company to synchronize users' credential hashes from their on-premises directory to Microsoft Entra ID (formerly Azure Active Directory). This enables users to sign in to Microsoft 365 services with the same usernames and passwords they use on-premises, without the need for extra servers or complex configurations.
Pass-through authentication also permits the use of existing credentials but requires an on-premises agent, adding to the infrastructure and complexity. Deploying Active Directory Federation Services (AD FS) involves setting up additional servers and is more complex to manage. Creating cloud-only user accounts would require employees to manage separate credentials, which the company wants to avoid.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is password hash synchronization in Microsoft Entra ID?
How does pass-through authentication differ from password hash synchronization?
When would deploying Active Directory Federation Services (AD FS) be a better choice?
An organization needs to ensure that their Microsoft 365 data is stored and processed within specific geographic regions to meet regulatory compliance requirements.
Which Microsoft 365 feature enables them to specify data residency for different users?
Microsoft 365 Multi-Geo Capabilities
Microsoft 365 Compliance Manager
Microsoft Information Protection
Microsoft Entra ID
Answer Description
Microsoft 365 Multi-Geo Capabilities allow organizations to specify where data for each user is stored geographically within a single tenant. This feature helps organizations meet data residency requirements by enabling them to store data in multiple selected regions.
Microsoft 365 Compliance Manager helps assess compliance risks but doesn't control data residency.
Microsoft Information Protection focuses on classifying and protecting sensitive information.
Microsoft Entra ID manages identities and access but doesn't determine data storage locations.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What are Microsoft 365 Multi-Geo Capabilities?
How does Multi-Geo differ from Microsoft Compliance Manager?
What data can be stored using Multi-Geo capabilities?
An organization is seeking a security approach where all access requests are authenticated and authorized regardless of the user's location, even within the corporate network. This approach enforces least-privilege access policies and assumes that breaches are inevitable.
Which security model is the organization adopting?
Zero Trust Model
Trust but Verify Model
Defense in Depth Model
Perimeter-Based Security Model
Answer Description
The Zero Trust Model requires all access requests to be authenticated and authorized, regardless of network location, enforcing least-privilege access and assuming that breaches will occur. This aligns with the organization's described approach.
The Perimeter-Based Security Model trusts internal network traffic, which does not meet the requirement to authenticate all requests.
The Trust but Verify Model suggests initial trust with subsequent verification, not constant authentication.
The Defense in Depth model involves multiple layers of security but does not specifically require authenticating every access request regardless of location.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is the Zero Trust Model?
How is the Zero Trust Model different from the Perimeter-Based Security Model?
Why is least privilege important in Zero Trust?
Your company wants to evaluate its security posture within Microsoft 365 and receive actionable recommendations to enhance it.
Which feature provides a numerical representation of your organization's security health and suggests improvement actions?
Microsoft Defender for Office 365
Microsoft Compliance Manager
Microsoft Secure Score
Microsoft Entra ID Protection
Answer Description
Microsoft Secure Score provides a numerical representation of your organization's security posture within Microsoft 365. It offers recommendations on how to improve security by suggesting specific actions.
Microsoft Entra ID Protection monitors and responds to identity-based risks.
Microsoft Defender for Office 365 protects against threats in email and collaboration tools.
Microsoft Compliance Manager helps manage compliance requirements.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is Microsoft Secure Score?
How does Microsoft Secure Score suggest improvement actions?
What areas does Microsoft Secure Score evaluate?
Your organization operates internationally and must comply with data residency regulations that require storing user data within specific countries or regions.
Which Microsoft 365 feature enables assigning different data storage locations to users based on their geographic location?
Microsoft 365 Data Loss Prevention
Microsoft Purview Compliance Manager
Microsoft 365 Data Sovereignty Controls
Microsoft 365 Multi-Geo
Answer Description
Microsoft 365 Multi-Geo enables organizations to specify data storage locations for individual users by assigning them to different geographies within a single Microsoft 365 tenant. This allows businesses to comply with data residency requirements by storing data in specific regions.
Microsoft 365 Data Loss Prevention (DLP) helps prevent sensitive information from being shared inappropriately but does not control where data is stored at rest.
Microsoft Purview Compliance Manager provides tools to assess and manage compliance risks but does not directly manage data residency.
Microsoft 365 Data Sovereignty Controls is not a specific, standalone feature in Microsoft 365 for this purpose; data sovereignty is a broader concept addressed by solutions like Microsoft Cloud for Sovereignty, which includes features like Multi-Geo.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is Microsoft 365 Multi-Geo and how does it work?
How can I determine if my organization needs Microsoft 365 Multi-Geo?
What is the difference between Microsoft 365 Multi-Geo and Microsoft Purview Compliance Manager?
A company's legal department needs to collect and preserve all communications between certain employees during a specified time frame for an upcoming litigation.
Which Microsoft Purview feature should they utilize to accomplish this?
Insider Risk Management
eDiscovery
Data Loss Prevention
Audit
Answer Description
Microsoft Purview eDiscovery is designed to help organizations search for, preserve, collect, and export content for legal and compliance needs. It enables legal teams to manage legal matters and investigations effectively by identifying relevant data across Microsoft 365 services.
Insider Risk Management focuses on detecting and mitigating risky user activities within the organization.
Audit provides logs of user and administrative activities for security and compliance monitoring.
Data Loss Prevention helps prevent sensitive information from being shared inappropriately. While these features are important, they do not offer the comprehensive legal data collection and preservation capabilities required for litigation support that eDiscovery provides.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is Microsoft Purview eDiscovery used for?
How does Microsoft Purview eDiscovery differ from Audit?
When should Insider Risk Management be used instead of eDiscovery?
Your organization plans to deploy Windows updates in stages, starting with a small group of devices to verify the updates before releasing them to all users. Which Windows 10 feature allows you to implement this phased deployment approach?
Update Deferrals
Servicing Channels
Deployment Rings
Staggered Deployment
Answer Description
Deployment Rings allow an organization to group devices into different rings or stages, enabling phased deployment of Windows updates. By starting with a small group (often called the pilot ring), IT can validate updates before progressively rolling them out to larger groups. Servicing Channels determine how frequently devices receive feature updates but do not provide a mechanism for staged rollouts within an organization. Staggered Deployment is a general term and not a specific Windows 10 feature. Update Deferrals delay the installation of updates but do not facilitate staged testing and deployment in phases.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What are Deployment Rings in Windows updates?
How do Deployment Rings differ from Servicing Channels?
Can Update Deferrals be used to implement staged rollouts like Deployment Rings?
Through which interface can administrators submit service requests directly to Microsoft for issues with their organization's cloud services?
Windows Control Panel
Microsoft Store
Office desktop applications
Microsoft 365 admin center
Answer Description
Administrators can submit support requests through the Microsoft 365 admin center. The admin center provides a centralized portal for managing services and accessing support.
The Windows Control Panel and Office desktop applications are local tools that do not provide direct access to Microsoft support for cloud services.
The Microsoft Store is for purchasing apps and does not offer support submission for organizational services.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is the Microsoft 365 admin center?
What types of support requests can administrators submit in the Microsoft 365 admin center?
How can administrators access the Microsoft 365 admin center?
Which Microsoft 365 solution assists organizations in automating data subject requests and optimizing data handling practices to comply with data protection regulations?
Microsoft Priva
Microsoft Defender for Cloud Apps
Microsoft Entra ID
Microsoft Purview
Answer Description
Microsoft Priva provides tools designed to help organizations manage personal data risks by automating data subject request workflows and assessing data handling practices to comply with data protection regulations such as GDPR.
Microsoft Purview offers data governance and compliance solutions but does not specifically automate data subject requests.
Microsoft Entra ID focuses on identity and access management.
Microsoft Defender for Cloud Apps provides security for cloud applications.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is GDPR, and why is it significant?
How does Microsoft Priva automate data subject requests?
How is Microsoft Priva different from Microsoft Purview in terms of data compliance?
What is the recommended method for efficiently assigning licenses to a large number of users in Microsoft 365?
Use group-based license assignment in Microsoft Entra ID
Enable users to obtain licenses through self-service
Assign licenses automatically based on device usage
Assign licenses individually to each user
Answer Description
Use group-based license assignment in Microsoft Entra ID - Group-based license assignment in Microsoft Entra ID enables administrators to assign licenses to an entire group of users at once. By adding or removing users from the group, licenses are automatically assigned or removed. This approach is scalable, efficient, and easy to manage, which makes it the most suitable choice.
Assign licenses individually to each user - Assigning licenses individually is time-consuming and inefficient, especially for a large number of users. It also makes it more challenging to manage and update license assignments as users join or leave the organization.
Enable users to obtain licenses through self-service - Allowing self-service license acquisition may not provide the control needed for managing licenses effectively. It could lead to inconsistent assignments and possible license compliance issues.
Assign licenses automatically based on device usage - Microsoft 365 licensing is typically user-based rather than device-based. While device-based licensing exists for specific scenarios (like shared computers), it is not the standard or recommended method for assigning licenses to a large number of individual users.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is Microsoft Entra ID?
How does group-based licensing work in Microsoft Entra ID?
Why is assigning licenses individually not recommended for large organizations?
Under the Microsoft 365 services' Service Level Agreement (SLA), what compensation does Microsoft provide if the monthly uptime percentage falls below the guaranteed threshold?
Full refund of the month's subscription fees
Free upgrade to a higher service tier
Extended support hours with priority response
Service credits applied to future billing cycles
Answer Description
When Microsoft fails to meet the guaranteed service levels as defined in the Service Level Agreement (SLA), they provide service credits that are applied to future billing cycles. This is the standard compensation method rather than refunds, upgrades, or extended support.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is a Service Level Agreement (SLA)?
How are service credits calculated under the Microsoft 365 SLA?
What happens if service credits don't fully compensate for downtime?
Your organization is planning to move to Microsoft 365 but wants to continue using its existing on-premises Active Directory infrastructure for authentication while allowing users to access cloud-based resources. Which identity model should you implement to meet these requirements?
Synchronized identity
Federated identity
Cloud identity
On-premises identity
Answer Description
The federated identity model allows organizations to keep user authentication on-premises using their existing Active Directory infrastructure. With federation, users authenticate against the on-premises Active Directory, and access to cloud resources is granted based on this authentication. This meets the requirement of continuing to use on-premises authentication while accessing cloud-based services. The synchronized identity model synchronizes user accounts and password hashes to Microsoft Entra ID, but authentication happens in the cloud, not on-premises. Cloud identity involves creating and managing users only in Microsoft Entra ID, without using an on-premises directory. On-premises identity refers to a scenario where all resources are on-premises and does not provide access to cloud-based resources.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is federation in the federated identity model?
How does federated identity differ from synchronized identity?
What is Microsoft Entra ID and how does it relate to federated identity?
An organization wants to acquire Microsoft cloud services through a partner that can provide customized support and additional value-added services. Which purchasing model should they choose?
Enterprise Agreement
Direct Purchase from Microsoft
Volume Licensing Agreement
Cloud Solution Provider
Answer Description
The Cloud Solution Provider model enables organizations to purchase Microsoft cloud services through a partner who offers tailored support and additional services. This approach is ideal for organizations seeking a personalized experience with extra value from their provider. Other models like Enterprise Agreement or direct purchase do not involve a partner offering customized support.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is the Cloud Solution Provider model?
How does the CSP model differ from Enterprise Agreements?
Can small businesses benefit from the CSP model?
That's It!
Looks like that's it! You can go back and review your answers or click the button below to grade your test.