AB-900 Certification Exam Guide + Practice Questions

Home / Microsoft / AB-900

Comprehensive AB-900 certification exam guide covering exam overview, skills measured, preparation tips, and practice questions with detailed explanations.

What is the AB-900 Exam?


The AB-900 Microsoft 365 Copilot and Agent Administration Fundamentals exam is a foundational Microsoft certification test designed to validate your understanding of Microsoft 365 services, Copilot, and agent administration. This exam assesses your knowledge of core Microsoft 365 services, security, governance, and AI-driven productivity tools, ensuring you can perform basic administrative tasks effectively.

Who is the Exam For?


The AB-900 exam is ideal for IT professionals, system administrators, and business users who are responsible for managing Microsoft 365 environments, including Copilot and agent functionalities. Candidates should have a basic understanding of Microsoft 365 workloads, modern IT management practices, and AI-driven productivity tools.

Exam Overview


Duration: 45 minutes
Language: English
Price: $99
Passing Score: 700
Focus Areas: Core Microsoft 365 services, security, identity and access, data protection, governance, Copilot, and agent administration.

Skills Measured


The AB-900 exam evaluates your ability to:

Identify the core features and objects of Microsoft 365 services, including users, groups, teams, sites, and libraries.
Understand data protection and governance tasks for Microsoft 365 and Copilot.
Perform basic administrative tasks for Copilot and agents.
Navigate Microsoft 365 admin centers such as Exchange Online, SharePoint, Microsoft Teams, Microsoft Entra, and Microsoft Purview.
Understand key security features, including authentication methods, conditional access policies, and single sign-on (SSO).

How to Prepare for This Exam?


To prepare for AB-900, focus on:

Studying Microsoft 365 core services and features.
Gaining hands-on experience with Microsoft 365 admin centers.
Learning about AI-driven productivity tools and Copilot functionality.
Reviewing Microsoft 365 security and governance best practices.
Taking practice exams to identify knowledge gaps and reinforce learning.

How to Use AB-900 Practice Questions?


Practice questions are an essential tool for exam preparation. Use them to simulate real exam conditions, test your knowledge of Microsoft 365 services, Copilot, and agent administration, and reinforce key concepts. Practice questions help you gain confidence, improve time management, and identify areas that need further review before sitting for the exam.

Practice Questions for Microsoft AB-900 Exam


AB-900 practice questions are vital for successful exam preparation. They provide insight into the types of questions you will encounter, highlight the core skills and knowledge areas assessed, and help you familiarize yourself with the exam format. By regularly practicing, you can identify weak areas, reinforce understanding, and increase your chances of passing the exam on your first attempt.

Question#1

HOTSPOT
Your organization has a Microsoft 365 subscription.
A user named John is assigned an admin role as shown in the following exhibit.



Use the drop-down menus to select the answer choice that completes the statement based on the information presented in the graphic.


A. 

Explanation:
The correct answer is View all the users in the Microsoft Entra tenant. In the exhibit, John is assigned the Global Reader role. Microsoft documents that the Global Reader role is intended for users who need to view administrator features and settings in admin centers that a Global Administrator can view, but without edit permissions. That makes it appropriate for read-only visibility into tenant-wide directory and admin information, including users in Microsoft Entra.
The other answer choices are not supported by the Global Reader role. Microsoft distinguishes admin-center visibility from access to content in workloads such as SharePoint sites and Exchange mailboxes. Global Reader is a read-only administrative role, not a content access role for reading all documents or mailbox items. Likewise, performing eDiscovery of Microsoft 365 Copilot prompts requires Purview eDiscovery permissions or role group membership, not merely the Global Reader role. Microsoft documents eDiscovery permissions separately in Purview role groups.
Therefore, based on the assigned role shown, the valid completion is that John can view all the users in the Microsoft Entra tenant.

Question#2

HOTSPOT
Your organization has a Microsoft 365 subscription.
The HR department at your company asks for a copy of all the recent files that were modified by a user named User1.
What should you use in the Microsoft Purview portal? To answer, select the appropriate solutions in the answer area.


A. 

Explanation:
The correct answer is eDiscovery. In Microsoft Purview, eDiscovery is the solution used to search for content and export copies of that content from Microsoft 365 locations such as SharePoint and OneDrive. Microsoft Learn states that when you export search results from eDiscovery, copies of native Office documents and other documents are exported. That directly matches the requirement to provide HR with a copy of files.
By contrast, Audit is primarily used to investigate user and admin activity records and can export those audit records to CSV, but it does not export the actual files themselves. Audit would help identify that User1 modified files, but the question asks for copies of the recent files modified by User1, which is an eDiscovery content search and export scenario rather than an activity-log reporting scenario.
So, among the Microsoft Purview solutions shown, the appropriate selection is eDiscovery because it is the Purview tool designed to find and export the actual content items HR wants to receive.

Question#3

HOTSPOT
For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.


A. 

Explanation:
The correct selections are No, Yes, Yes. Statement 1 is No because Microsoft documents that Agent Builder in Microsoft 365 Copilot is included with the Microsoft 365 Copilot license, and agents built with that feature are part of that licensed experience. Microsoft also states that the capability is enabled by default in Microsoft 365 Copilot licensed tenants. While Copilot Chat users with qualifying Microsoft 365 licenses can access web-grounded chat experiences, creating Microsoft 365 Copilot agents in the app is documented under the Copilot-licensed Agent Builder experience, not as an E5-only entitlement.
Statement 2 is Yes because Microsoft states that Researcher and Analyst were deployed to users with Microsoft 365 Copilot licenses. Statement 3 is Yes because Microsoft says users can build agents in Agent Builder by using natural language or manually.

Question#4

Your organization has a Microsoft 365 E5 subscription.
You need to prevent users from sharing corporate financial data to external users.
What should you use?

A. retention labels
B. data loss prevention (DLP) policies
C. rote groups
D. insider risk management policies

Explanation:
The correct answer is
B. data loss prevention (DLP) policies. Microsoft Learn states that Microsoft Purview Data Loss Prevention helps organizations identify, monitor, and automatically protect sensitive information across Microsoft 365 locations such as Exchange, SharePoint, OneDrive, Teams, and devices. Microsoft specifically documents scenarios for preventing sensitive items from being shared with external users in SharePoint and OneDrive, and DLP policies can also block or restrict sharing based on sensitive information types, labels, or policy conditions. This is exactly the control used when the requirement is to stop users from sharing corporate financial data outside the organization.
Option A is incorrect because retention labels manage how long content is kept or deleted, not whether it can be shared externally. Option C is incorrect because role groups are used for permissions and administrative access delegation, not content-sharing prevention. Option D is incorrect because Insider Risk Management is designed to detect and investigate risky user behavior, not to directly block external sharing transactions in the way DLP policies do. For proactive enforcement of external-sharing restrictions on sensitive financial information, Microsoft’s documented solution is DLP policies.

Question#5

HOTSPOT
For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.


A. 

Explanation:
You can use a Microsoft Entra security group to assign permissions to Microsoft Entra ID resources. Answer. Yes
You can use a Microsoft Entra security group to assign Microsoft 365 licenses.
Answer. Yes
You can use a Microsoft Entra security group to assign permissions to Microsoft Exchange mailboxes.
Answer. No

Disclaimer

This page is for educational and exam preparation reference only. It is not affiliated with Microsoft, Microsoft 365 Certified: Copilot and Agent Administration Fundamentals, or the official exam provider. Candidates should refer to official documentation and training for authoritative information.

Exam Code: AB-900Q & A: 42 Q&AsUpdated:  2026-03-18

  Access Additional AB-900 Practice Resources