Q1: Does using Transport Data Encryption & Azure Key Vault with customer-managed keys for Azure SQL Managed Instance satisfy your key rotation requirement in the data encryption policy?
Q1: Does using Transport Data Encryption & Azure Key Vault with customer-managed keys for Azure SQL Managed Instance satisfy your key rotation requirement in the data encryption policy?
True
False
Answer: True
Q2 Which Azure security solutions complement Microsoft Defender for Cloud in a multi-cloud environment without Azure Arc resource onboarding? (Choose two)
Q2 Which Azure security solutions complement Microsoft Defender for Cloud in a multi-cloud environment without Azure Arc resource onboarding? (Choose two)
Microsoft Defender for Containers
Microsoft Defender for Servers
Azure Active Directory PIM
Azure Policy
Answer: C & D
A.
B.
C.
D.
Q3.As a security architect countering a recent incident from an unauthorized Azure server app, which feature in Microsoft Defender for Cloud helps mitigate future threats?
Q3.As a security architect countering a recent incident from an unauthorized Azure server app, which feature in Microsoft Defender for Cloud helps mitigate future threats?
Adaptive application controls in Defender for Cloud
Azure Blueprints
App discovery anomaly detection policies in Microsoft Defender for Cloud Apps
Azure Policy
Answer: A
A.
B.
C.
D.
Q4. CIO requests interactive Azure dashboards from diverse sources, with customization. Which Microsoft Defender for Cloud tool offers this, plus templates?
Q4. CIO requests interactive Azure dashboards from diverse sources, with customization. Which Microsoft Defender for Cloud tool offers this, plus templates?
Security Posture Dashboard
Security solutions
workbooks
workflow automation
Answer: C
A.
B.
C.
D.
Q5. While overseeing Azure subscription with enabled Microsoft Defender for Cloud, you check the Azure Security Benchmark report. To ensure email info for security matters in all subscriptions, which compliance control you need to assess?
Q5. While overseeing Azure subscription with enabled Microsoft Defender for Cloud, you check the Azure Security Benchmark report. To ensure email info for security matters in all subscriptions, which compliance control you need to assess?
Asset Management
Posture and Vulnerability Management
Incident Response
Endpoint Security
Answer: C
A.
B.
C.
D.
Q6. Organization Azure Subscription uses Azure Storage. Need secure external vendor access to specific BLOB storage without public exposure. Time-controlled access required. What solution do you recommend?
Q6. Organization Azure Subscription uses Azure Storage. Need secure external vendor access to specific BLOB storage without public exposure. Time-controlled access required. What solution do you recommend?
Configure Azure Private Link connections
CMKs
Share the connection string from the access key
Create shared access signatures
Answer: D
A.
B.
C.
D.
Q7. Referring to the image below, you'd locate internet-facing VM security suggestions under activating endpoint security recommendations. True or False?
Q7. Referring to the image below, you'd locate internet-facing VM security suggestions under activating endpoint security recommendations. True or False?
True
False
Answer: False
Q8. In multi-cloud setup, deploying AWS resources, using Microsoft Defender for Cloud to enhance AWS security, excluding Azure Arc. What Microsoft Defender for Cloud feature can you use?
Q8. In multi-cloud setup, deploying AWS resources, using Microsoft Defender for Cloud to enhance AWS security, excluding Azure Arc. What Microsoft Defender for Cloud feature can you use?