Pre-Summer Sale Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 65pass65

AZ-500 Microsoft Azure Security Technologies is now Stable and With Pass Result | Test Your Knowledge for Free

Exams4sure Dumps

AZ-500 Practice Questions

Microsoft Azure Security Technologies

Last Update 4 days ago
Total Questions : 492

Dive into our fully updated and stable AZ-500 practice test platform, featuring all the latest Azure Security Engineer Associate exam questions added this week. Our preparation tool is more than just a Microsoft study aid; it's a strategic advantage.

Our free Azure Security Engineer Associate practice questions crafted to reflect the domains and difficulty of the actual exam. The detailed rationales explain the 'why' behind each answer, reinforcing key concepts about AZ-500. Use this test to pinpoint which areas you need to focus your study on.

AZ-500 PDF

AZ-500 PDF (Printable)
$48.3
$137.99

AZ-500 Testing Engine

AZ-500 PDF (Printable)
$52.5
$149.99

AZ-500 PDF + Testing Engine

AZ-500 PDF (Printable)
$65.45
$186.99
Question # 41

You have an Azure subscription.

You need to create and deploy an Azure policy that meets the following requirements:

    When a new virtual machine is deployed, automatically install a custom security extension.

    Trigger an autogenerated remediation task for non-compliant virtual machines to install the extension.

What should you include in the policy? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Question # 41

Options:

Discussion 0
Question # 42

You have an Azure subscription that contains the resources shown in the following table.

Question # 42

You need to configure AFW1 to only allow traffic from VM1 to storage accounts in the West US Azure region. The solution must minimize administrative effort.

What should you configure?

Options:

A.  

a DNAT rule

B.  

a network rule

C.  

an SNAT private IP address range

D.  

an application rule

Discussion 0
Question # 43

You have an Azure subscription that contains an Azure key vault named Vault1.

In Vault1, you create a secret named Secret1.

An application developer registers an application in Azure Active Directory (Azure AD).

You need to ensure that the application can use Secret1.

What should you do?

Options:

A.  

In Azure AD, create a role.

B.  

In Azure Key Vault, create a key.

C.  

In Azure Key Vault, create an access policy.

D.  

In Azure AD, enable Azure AD Application Proxy.

Discussion 0
Question # 44

You have an Azure subscription named Sub1 that contains the resources shown in the following table.

Question # 44

You need to ensure that you can provide VM1 with secure access to a database on SQL1 by using a contained database user.

What should you do?

Options:

A.  

Enable a managed service identity on VM1.

B.  

Create a secret in KV1.

C.  

Configure a service endpoint on SQL1.

D.  

Create a key in KV1.

Discussion 0
Question # 45

You have an Azure Active Directory (Azure AD) tenant that contains the users shown in the following table.

Question # 45

In Azure AD Privileged Identity Management (PIM), the Role settings for the Contributor role are configured as shown in the exhibit. (Click the Exhibit tab.)

Question # 45

You assign users the Contributor role on May 1, 2019 as shown in the following table.

Question # 45

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

NOTE: Each correct selection is worth one point.

Question # 45

Options:

Discussion 0
Question # 46

You have an Azure subscription that contains an Azure Data Lake Storage account named sa1.

You plan to deploy an app named App1 that will access sa1 and perform operations, including Read. List, Create Directory, and Delete Directory.

You need to ensure that App1 can connect securely to sa1 by using a private endpoint

What is the minimum number of private endpoints required for sa1?

Options:

A.  

1

B.  

2

C.  

3

D.  

4

E.  

5

Discussion 0
Question # 47

You have an Azure subscription that uses Microsoft Defender for Cloud.

You need to use Defender for Cloud to review regulatory compliance with the Azure CIS 1.4,0 standard. The solution must minimize administrative effort.

What should you do first?

Options:

A.  

Assign an Azure policy.

B.  

Manually add the Azure CIS 1.4.0 standard.

C.  

Disable one of the Out of the box standards.

D.  

Add a custom initiative.

Discussion 0
Question # 48

You have an Azure Active Directory (Azure AD) tenant that contains a user named User1.

You need to ensure that User1 can create and manage administrative units. The solution must use the principle of least privilege.

Which role should you assign to User1?

Options:

A.  

Privileged role administrator

B.  

Helpdesk administrator

C.  

Global administrator

D.  

Security administrator

Discussion 0
Question # 49

You have an Azure Active Directory (Azure AD) tenant that contains the users shown in the following table.

Question # 49

You create and enforce an Azure AD Identity Protection sign-in risk policy that has the following settings:

    Assignments: Include Group1, exclude Group2

    Conditions: Sign-in risk level: Medium and above

    Access Allow access, Require multi-factor authentication

You need to identify what occurs when the users sign in to Azure A

D.  

What should you identify for each user? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Question # 49

Options:

Discussion 0
Question # 50

You have an Azure subscription that contains the resources shown in the following table.

Question # 50

You need to configure network connectivity to meet the following requirements:

• Communication from VM1 to storage' must traverse an optimized Microsoft backbone network.

• All the outbound traffic from VM1 to the internet must be denied.

• The solution must minimize costs and administrative effort

What should you configure for VNetl and NSG1? To answer, drag the appropriate components to the correct resources. Each component may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content

NOTE: Each correct selection is worth one point.

Question # 50

Options:

Discussion 0
Get AZ-500 dumps and pass your exam in 24 hours!

Free Exams Sample Questions