top of page
  • Writer's pictureKaty Morgan

Introduction to Microsoft 365 Certified - Modern Desktop Administrator Associate Exam

Updated: Jun 26, 2021

The Microsoft MD-101 Exam is challenging and thorough preparation is essential for success. This exam study guide is designed to help you prepare for the Managing Modern Desktops certification exam. It contains a detailed list of the topics covered on the Professional exam, as well as a detailed list of preparation resources. These study guides for the Managing Microsoft Modern Desktops will help guide you through the study process for your certification.

MD-101 pdf, MD-101 questions, MD-101 exam guide, MD-101 practice test, MD-101 books, MD-101 Syllabus, MD-101

MD-101 Managing Microsoft Modern Desktops Exam Summary


Exam Name: Managing Microsoft Modern Desktops

Exam Code: MD-101

Exam Price: $165 (USD)

Duration: 120 mins

Number of Questions: 40-60

Passing Score: 700 / 1000

Schedule Exam: Pearson VUE


Exam Syllabus: MD-101 Microsoft 365 Certified - Modern Desktop Administrator Associate


1. Deploy and update operating systems - 35-40%


● Plan and implement Windows 10 by using dynamic deployment

- evaluate and select an appropriate deployment options

- pilot deployment

- manage and troubleshoot provisioning packages

- evaluate deployment options in Microsoft Endpoint Manager

● Plan and implement Windows 10 by using Windows Autopilot

- evaluate and select an appropriate deployment options

- pilot deployment

- create, validate, and assign deployment profile

- extract device HW information to CSV file

- import device HW information to cloud service

- troubleshoot deployment

● Upgrade devices to Windows 10

- identify upgrade and downgrade paths

- manage in-place upgrades

- configure a Desktop Analytics environment

- assess which computers can be upgraded to Windows 10

- migrate user profiles

● Manage updates

- configure Windows 10 delivery optimization

- configure Windows Update for Business

- deploy Windows updates

- implement feature updates

- monitor Windows 10 updates

● Manage device authentication

- manage authentication policies

- manage sign-on options

- perform Azure AD join

2. Manage policies and profiles - 25-30%


● Plan and implement co-management

- implement co-management precedence

- migrate group policy to MDM policies

- recommend a co-management strategy

● Implement conditional access and compliance policies for devices

- implement conditional access policies

- manage conditional access policies

- plan conditional access policies

- implement device compliance policies

- manage device compliance policies

- plan device compliance policies

● Configure device profiles

- implement device profiles

- manage device profiles

- plan device profiles

● Manage user profiles

- configure user profiles

- configure Enterprise State Roaming in Azure AD

- configure sync settings

- implement Folder Redirection, including OneDrive


3. Manage and protect devices - 20-25%


● Manage Windows Defender

- implement and manage Windows Defender Application Guard

- implement and manage Windows Defender Credential Guard

- implement and manage Windows Defender Exploit Guard

- implement Microsoft Defender Advanced Threat Protection

- integrate Windows Defender Application Control

- manage Windows Defender Antivirus

● Manage Intune device enrollment and inventory

- configure enrollment settings

- configure Intune automatic enrollment

- enable device enrollment

- enroll non-Windows devices

- enroll Windows devices

- generate custom device inventory reports’ Review device inventory

● Monitor devices

- monitor device health (e.g., log analytics, Desktop Analytics, or other cloud-based tools, etc.)

- monitor device security


4. Manage apps and data - 10-15%


● Deploy and update applications

- assign apps to groups

- deploy apps by using Intune

- deploy apps by using Microsoft Store for Business

- deploy Microsoft 365 Apps for Enterprise

- enable sideloading of apps into images

- gather Microsoft 365 Apps readiness data

- configure and implement kiosk (assigned access) or public devices

● Implement Mobile Application Management (MAM)

- implement MAM policies

- manage MAM policies

- plan MAM

- configure Windows Information Protection

- securing data by using Intune


Microsoft MD-101 Certification Sample Questions and Answers


To make you familiar with Managing Microsoft Modern Desktops (MD-101) certification exam structure, we have prepared this sample question set. We suggest you try our Sample Questions for Managing Modern Desktops MD-101 Certification to test your understanding of Microsoft MD-101process with the real Microsoft certification exam environment.


MD-101 Managing Microsoft Modern Desktops Sample Questions:-


01. You have a Microsoft Azure Log Analytics workplace that collects all the event logs from the computers at your company.

You have a computer named Computer1 than runs Windows 10. You need to view the events collected from Computer1.

Which query should you run in Log Analytics?


a) Event | where Computer = = "Computer1"

b) ETWEvent | where SourceSystem = = "Computer1"

c) ETWEvent | where Computer = = "Computer1"

d) Event | where SourceSystem = = "Computer1"


02. Reference Scenario: click here

What should you configure to meet the technical requirements for the Azure AD-joined computers?


a) Windows Hello for Business from the Microsoft Intune blade in the Azure portal

b) The Accounts options in an endpoint protection profile

c) The Password Policy settings in a Group Policy object (GPO)

d) A password policy from the Microsoft Office 365 portal


03. What should you upgrade before you can configure the environment to support co-management?


a) the domain functional level

b) Configuration Manager

c) the domain controllers

d) Windows Server Update Services (WSUS)


04. You manage 1,000 computers that run Windows 10. All the computers are enrolled in Microsoft Intune. You manage the servicing channel settings of the computers by using Intune.

You need to review the servicing status of a computer. What should you do?


a) From Device configuration- Profiles, view the device status.

b) From Device compliance, view the device compliance.

c) From Software updates, view the audit logs.

d) From Software updates, view the Per update ring deployment state.


05. You are the mobile device administrator for CompanyA. CompanyA has 3,500 devices running Windows 10, version 1709.

CompanyA has a System Center Configuration Manager site. This site has a single primary site server running version 1806. You are planning to implement co-management with Microsoft Intune.

You need to deploy co-management. What should you do first?


a) Upgrade to the latest version of Windows 10.

b) Deploy a Cloud Management Gateway.

c) Add a Microsoft Intune subscription in the Configuration Manager Console.

d) Assign a Microsoft Intune license to all users.

e) Upgrade to the latest version of System Center Configuration Manager (SCCM).


06. What should you use to meet the technical requirements for Azure DevOps?


a) An app protection policy

b) Windows Information Protection (WIP)

c) Conditional access

d) A device configuration profile


07. CompanyA has 10,000 devices running Windows 10. You plan to implement Microsoft Intune for Mobile Device Management (MDM). You need to configure Microsoft Intune to support automatic device enrollment for all Windows 10 devices.

Which two actions should you perform?

Each correct answer presents part of the solution.


a) Assign a deployment profile to all devices.

b) Set the MDM user scope to all users.

c) Import the hardware IDs for all devices.

d) Assign an Intune license to all users.

e) Assign a device profile to all users.


08. Your company supports 800 Azure Active Directory (Azure AD)-joined Windows 10 devices. The company is gradually moving to using Intune to manage devices, so only some of the devices are enrolled with Intune.

Each user is assigned an Intune license. Users are organized into groups for managing app deployment. Your company uses Intune for most app deployments. You need to deploy a new app to all network users and devices. The solution must include support for users and devices that are not enrolled in Intune.

Which two options should you configure to deploy the app?

Each correct answer presents part of the solution.


a) Assign apps as Required

b) Assign to devices

c) End users install available apps from the Company Portal app

d) Assign to users

e) Assign apps as Available


09. You have a Microsoft 365 subscription. All devices run Windows 10. You need to prevent users from enrolling the devices in the Windows Insider Program.

What should you configure from Microsoft 365 Device Management?

Each correct answer presents part of the solution. NOTE: Each correct selection is worth one point.


a) a custom device configuration profile

b) a device restrictions device configuration profile

c) an app configuration policy

d) a Windows 10 update ring

e) a Windows 10 security baseline


10. You are creating a device configuration profile in Microsoft Intune. You need to implement an ADMX-backed policy. Which profile type should you use?


a) Identity protection

b) Custom

c) Device restrictions

d) Device restrictions (Windows 10 Team)


Answers:-


Answer 1:- a

Answer 2:- a

Answer 3:- b

Answer 4:- d

Answer 5:- d

Answer 6:- c

Answer 7:- b, d

Answer 8:- d, e

Answer 9:- d

Answer 10:- b

bottom of page