AB-650 · Beta Exam

Free AB-650 Practice Questions With Full Rationale

12 scenario questions across all three AB-650 domains. Every option gets an explanation, not just the correct one.

Skills measured checked August 202616 min read

AB-650 currently has no official Microsoft practice assessment — Microsoft's own AB-650 exam page confirms one isn't available yet for this beta exam. That makes independently grounded practice questions more useful for AB-650 than for most Microsoft certifications, since there is no official baseline to lean on instead. The 12 questions below are scenario-based, matching the reasoning style of the real exam, and grouped by the three domains from Microsoft's official AB-650 study guide.

Want the full domain breakdown and a study plan before you start? Read the AB-650 study guide first. Prefer a dense reference table for your final review? Jump to the AB-650 cheat sheet.

How These Practice Questions Work

Answer each question before reading its rationale box. Every rationale explains why the correct choice is right andwhy each of the three distractors is wrong — the distractors are built to mirror real Microsoft 365 admin mistakes, not random wrong answers.

3
Domain 1 Questions
Tenants & workloads (20–25% of exam)
5
Domain 2 Questions
Govern & secure (40–45% of exam)
4
Domain 3 Questions
AI services (35–40% of exam)

Domain 1 Questions: Configure & Manage Tenants and Workloads

Questions 1–3

1

A 400-person marketing department needs Microsoft 365 Copilot licenses. New hires join the department weekly, and the admin does not want to manually assign a Copilot license to each new account.

Which licensing approach should the admin configure?

A)Assign Copilot licenses individually as each new hire's account is created
B)Group-based licensing, assigning the Copilot license to the marketing department's security group
C)Pay-as-you-go billing, which removes the need for any license assignment
D)A Conditional Access policy that grants Copilot access based on department attribute

Answer: B. Group-based licensing assigns and removes the Copilot license automatically as membership in the security group changes, which is exactly what a department with regular new hires needs. A is what the admin is trying to avoid. C describes a billing model, not a license-assignment mechanism, and doesn't exist as a way to skip assignment. D confuses access control (Conditional Access) with license assignment — Conditional Access can restrict how a license is used, but it doesn't assign the license itself.

2

A ransomware attack encrypts and deletes files across a SharePoint site. The organization needs to restore the site's content to its state from three days earlier, before the attack began.

Which Microsoft 365 capability is designed for this scenario?

A)Microsoft Purview retention policies
B)Microsoft 365 Backup
C)SharePoint Advanced Management site exclusions
D)Microsoft Entra Conditional Access

Answer: B. Microsoft 365 Backup exists specifically to set up, restore, and monitor point-in-time recovery of Exchange, SharePoint, and OneDrive content. A is a compliance/lifecycle tool for keeping or deleting content on schedule, not a restore mechanism for an attack. C controls whether a site is included in Copilot indexing — unrelated to data recovery. D is an identity access control, not a data protection or restore feature.

3

A SharePoint site under active legal hold must remain accessible to the legal team exactly as it is today, but its content should never appear in Microsoft 365 Copilot's generated answers for any user, including the legal team.

What should the admin configure?

A)Remove all users' SharePoint permissions on the site
B)A site exclusion for Copilot in SharePoint Advanced Management
C)A Purview retention policy set to permanently delete the site
D)A Conditional Access policy blocking sign-in to SharePoint Online

Answer: B. Site exclusions in SharePoint Advanced Management remove a site from Copilot's grounding sources without touching the underlying SharePoint permissions. A breaks the requirement that the legal team keep normal access. C would destroy content under legal hold, which is the opposite of what's needed. D blocks SharePoint entirely, far broader than the Copilot-only restriction requested.

Keep going in the real quiz interface

Try 40 Free AB-650 Questions With Instant Scoring

Practice mode with explanations for every answer. No credit card required.

Start Free Practice →

Domain 2 Questions: Govern & Secure Tenants and Workloads

Questions 4–8

4

A helpdesk technician needs Global Administrator rights for exactly 4 hours to complete a tenant migration task, and should not retain that access afterward without re-justifying it.

How should the admin grant this access?

A)Permanently assign the Global Administrator role to the technician's account
B)Create a time-bound eligible role assignment in Microsoft Entra Privileged Identity Management (PIM)
C)Add the technician to an administrative unit scoped to the migration
D)Create a guest account with Global Administrator permissions for the day

Answer: B. PIM eligible assignments let a user activate a privileged role for a defined window and require re-activation afterward — exactly the temporary, re-justified access described. A grants standing access with no time limit, the opposite of the requirement. C administrative units scope management of users/groups within an org, not role duration. D introduces an unnecessary guest identity and still doesn't time-bound the role.

5

Security wants MFA required automatically whenever Microsoft Entra ID Protection flags a sign-in as risky, but does not want every user prompted for MFA on every routine sign-in.

What should the admin configure?

A)Enable MFA as a default requirement for every user in the tenant
B)A Conditional Access policy scoped to sign-in risk level, with MFA as the grant control
C)Self-service password reset (SSPR) for all users
D)Microsoft Entra Password Protection with a stricter banned-password list

Answer: B. A Conditional Access policy that evaluates ID Protection's sign-in risk signal and applies MFA only when risk is detected matches the requirement precisely. A prompts everyone every time, which the scenario explicitly rules out. C SSPR handles forgotten passwords, not risk-based authentication. D Password Protection blocks weak passwords at set time, but does nothing about risky sign-in behavior after the fact.

6

Defender for Office 365 is already filtering most phishing email, but employees keep clicking the small percentage that gets through. Security wants a way to measure which employees are still vulnerable and train them.

Which capability should the admin use?

A)Additional threat policies and mail flow rules in Defender for Office 365
B)Attack simulation training with a phishing simulation campaign
C)A Purview DLP policy for email
D)Microsoft Entra Conditional Access blocking external email

Answer: B. Attack simulation training sends realistic simulated phishing to measure who clicks and automatically assigns follow-up training — it addresses the human layer the filtering already missed. A is more mail filtering, which the scenario says is already in place and still being bypassed. C DLP prevents sensitive data leaving the org; it doesn't train users to recognize phishing. D blocking all external email is disproportionate and would break legitimate business email.

7

Compliance is concerned that Microsoft 365 Copilot could include unmasked national ID numbers from source documents in its generated answers to end users.

What should the admin configure to prevent this?

A)A sensitivity label applied manually to every document containing ID numbers
B)A Purview DLP policy scoped to the Microsoft 365 Copilot location, using a sensitive information type for the ID number format
C)Disabling Microsoft 365 Copilot Search tenant-wide
D)A Conditional Access policy restricting Copilot to compliance staff only

Answer: B. Purview DLP policies can be scoped specifically to the Copilot location, and a sensitive information type detects the ID number pattern automatically across all matching content — no manual labeling required. A doesn't scale and misses any document an admin forgets to label. C disables the feature entirely rather than protecting the specific data type, over-correcting for the actual requirement. D restricting Copilot to one team doesn't stop that team from seeing the unmasked data — it narrows who has the problem, not the exposure itself.

8

Legal wants Microsoft Teams chat messages automatically deleted after 3 years, except for any chats currently under an active legal hold, which must be preserved regardless of age.

Which Purview capability satisfies both requirements together?

A)A DLP policy scoped to Teams chat
B)A retention policy for Teams chat with a legal hold exception, as part of Purview data lifecycle management
C)A sensitivity label policy applied to Teams
D)Data Security Posture Management (DSPM) for AI

Answer: B. Retention policies are Purview's data lifecycle management tool for automatic deletion on a schedule, and legal hold takes precedence over a retention policy's delete action — exactly the combination requested. A DLP stops data leaving the org; it doesn't delete data on a timer. C sensitivity labels classify and protect content but don't schedule deletion. D DSPM for AI monitors AI activity and risk, unrelated to chat retention.

Domain 3 Questions: Manage & Secure AI Services

Questions 9–12

9

An onboarding automation agent needs read access to the HR SharePoint site for exactly 14 days while a new-hire workflow runs, and access should expire automatically afterward without manual cleanup.

How should the admin grant this?

A)Add the agent identity to the HR site's member group permanently
B)An access package for the agent identity through Microsoft Entra Agent ID, time-bound to 14 days
C)A sensitivity label granting the agent VIEW rights with no expiration
D)Manually remove the agent from the site after 14 days

Answer: B. Access packages issued through Entra Agent ID support time-bound assignment for agent identities, which expires access automatically at the end of the window — no manual cleanup step needed. A is permanent, the opposite of the requirement. C a sensitivity label controls usage rights on content the agent already has access to; it doesn't grant site membership or expire automatically. D works but relies on someone remembering to do it manually, which the scenario explicitly wants to avoid.

10

An employee submits a third-party AI agent for tenant-wide use. The agent has not yet been reviewed for data handling or permissions.

What should happen before the agent becomes installable tenant-wide?

A)The agent is installed automatically once submitted
B)An admin reviews the submission in the agent registry and either publishes or rejects it
C)A Conditional Access policy is applied retroactively after installation
D)The agent is added to a DLP policy exception list

Answer: B. The agent registry is where admins discover, review, and publish or reject both Microsoft and third-party agent submissions before they can be installed broadly. A skips governance entirely, the opposite of what an unreviewed agent needs. C applying Conditional Access after the fact doesn't address whether the agent should have been allowed at all. D a DLP exception is unrelated to whether an agent is vetted for tenant-wide install.

11

During a Microsoft 365 Copilot pilot, several employees discover Copilot can summarize files they technically have SharePoint permission to open but were never meant to see, because those permissions were set too broadly years ago.

What should the admin address before expanding the Copilot rollout?

A)Disable Copilot Search for the whole tenant
B)Data oversharing remediation — fixing the underlying overly broad permissions — as part of Copilot data readiness
C)Add a Copilot connector to filter results by department
D)Enable an AI disclaimer on all Copilot responses

Answer: B. Copilot only summarizes what the requesting user already has permission to access — the real problem is over-permissioned content, and data readiness assessment exists specifically to surface and remediate oversharing before wider rollout. A disabling the feature avoids the symptom instead of fixing the permissions issue underneath it. C connectors bring in new data sources; they don't fix existing SharePoint permission sprawl. D a disclaimer addresses trust in the answer, not unauthorized data exposure.

12

Leadership wants a single view showing Copilot adoption rates broken down by department, alongside overall AI service cost trends for the quarter.

Where should the admin find this?

A)The agent registry
B)The Copilot Control System
C)Microsoft Purview compliance portal
D)Microsoft Entra Conditional Access reports

Answer: B. The Copilot Control System is where AI service costs, workload-level Copilot adoption, and service health are monitored together. A the agent registry manages agent discovery and installation, not adoption reporting. C Purview covers data governance and compliance, not usage or cost trends. D Conditional Access reports show policy evaluation results, not Copilot adoption or spend.

Distractor Patterns to Watch For

Across these 12 questions, the wrong answers fall into four recurring patterns. Recognizing the pattern is often faster than recalling the exact feature name under exam pressure.

PatternWhat it looks likeExample from above
Right domain, wrong toolA Purview or Entra feature that sounds close but solves a different problem (DLP vs. retention, Conditional Access vs. licensing).Q1 (Conditional Access instead of group licensing), Q8 (DLP instead of retention)
Fixes the symptom, not the causeDisabling a feature entirely instead of remediating the underlying configuration.Q7 (disabling Copilot Search vs. scoped DLP), Q11 (disabling Copilot vs. fixing permissions)
Manual process where automation is requiredA correct-sounding manual workaround when the scenario specifically asks for something that scales or expires on its own.Q1 (manual license assignment), Q9 (manual removal after 14 days)
Human-identity assumption applied to agentsA control or grant that works for human users assumed to apply automatically to agent identities.Q9 (permanent human-style group membership for an agent)

12 down. 488 to go.

MSCertQuiz maintains a 500-question AB-650 bank, 40 of them free with no signup. Take the timed readiness quiz to see your score broken down by domain.

Frequently Asked Questions

Are these questions harder than the real AB-650 exam?

They're written to match the real exam's scenario-based reasoning style rather than testing simple recall. Since AB-650 has no official practice assessment yet, there's no Microsoft benchmark to calibrate difficulty against directly — these are grounded in the official skills-measured list instead.

Why do these questions include Copilot and Agent 365 material?

Because Domain 3 (Manage and secure AI services in Microsoft 365) makes up 35–40% of AB-650 — nearly two out of every five questions on the real exam touch Copilot, agents, or Agent 365 governance.

Do I need hands-on Microsoft 365 admin experience to answer these?

It helps but isn't required. Each rationale explains the underlying concept, not just the answer letter, so you can learn from a question even without prior hands-on time in the admin center.

How many questions are on the real AB-650 exam?

Microsoft's AB-650 exam page doesn't publish an exact count for this beta exam. Microsoft's general guidance is that most certification exams run 40–60 questions within a 100-minute Associate-level time limit.

What if I get several Domain 2 questions wrong?

Domain 2 (Govern and secure Microsoft 365 tenants and workloads) is the largest at 40–45% of the exam. Missing multiple Domain 2 questions is a strong signal to revisit Entra Conditional Access, PIM, and Purview DLP/retention before your exam date.

About This Practice Set

These questions were written by the MSCertQuiz team, who also maintain the paid 500-question AB-650 practice bank linked above. Every scenario is grounded in Microsoft's official AB-650 study guide (skills measured checked August 2026) rather than adapted from another certification's question set.