- Answers: A, B, D
Devices will need to be added to Azure AD and enrolled in Intune before Windows Hello for Business can be configured. Since the devices are joined to Active Directory (on-premise), we'll need Azure AD Connect as well.
More information: Chapter 4, Planning Windows 10 Deployments, and https://docs.microsoft.com/en-us/windows/security/identity-protection/hello-for-business/hello-hybrid-aadj-sso-base.
- Answer: B
The weekly digest under Settings in Azure AD Identity Protection provides information on users who have been flagged for risk, risk events, and vulnerabilities that have been found; it then emails them a summary each week with links to the relevant dashboards in Azure AD Identity Protection.
More information: https://docs.microsoft.com/en-us/azure/active-directory/identity-protection/howto-identity-protection-configure-notifications...