Exam Details

  • Exam Code
    :AZ-500
  • Exam Name
    :Microsoft Azure Security Technologies
  • Certification
    :Role-based
  • Vendor
    :Microsoft
  • Total Questions
    :538 Q&As
  • Last Updated
    :Nov 17, 2024

Microsoft Role-based AZ-500 Questions & Answers

  • Question 1:

    SIMULATION

    You need to configure Azure to allow RDP connections from the Internet to a virtual machine named VM1. The solution must minimize the attack surface of VM1.

    To complete this task, sign in to the Azure portal.

    A. See the explanation below.

  • Question 2:

    SIMULATION

    You need to create a new Azure Active Directory (Azure AD) directory named 11641655.onmicrosoft.com and a user named User1 in the new directory. The solution must ensure that User1 is enabled for Azure Multi-Factor Authentication (MFA).

    To complete this task, sign in to the Azure portal.

    A. See the explanation below.

  • Question 3:

    SIMULATION

    You need to add the network interface of a virtual machine named VM1 to an application security group named ASG1.

    To complete this task, sign in to the Azure portal.

    A. See the explanation below.

  • Question 4:

    HOTSPOT

    You have an Azure subscription that contains the resources shown in the following table.

    VNet1 contains the subnets shown in the following table.

    You plan to use the Azure portal to deploy an Azure firewall named AzFW1 to VNet1.

    Which resource group and subnet can you use to deploy AzFW1? To answer, select the appropriate options in the answer area.

    NOTE: Each correct selection is worth one point.

    Hot Area:

  • Question 5:

    HOTSPOT

    You have an Azure subscription named Sub1 that contains the resource groups shown in the following table.

    You create the Azure Policy definition shown in the following exhibit.

    You assign the policy to Sub1.

    You plan to create the resources shown in the following table.

    For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.

    Hot Area:

  • Question 6:

    SIMULATION

    The developers at your company plan to create a web app named App10598168 and to publish the app to https://www.contoso.com.

    You need to perform the following tasks:

    1.

    Ensure that App10598168 is registered to Azure Active Directory (Azure AD).

    2.

    Generate a password for App10598168.

    To complete this task, sign in to the Azure portal.

    A. See the explanation below.

  • Question 7:

    HOTSPOT

    You have an Azure subscription that contains two users named User1 and User2 and the blob containers shown in the following table.

    Policy1 is configured as shown in the following exhibit.

    You assign the roles for storage1 as shown in the following table.

    The storage1 account has the following shared access signature (SAS) named SAS1:

    Allowed services: Blob Allowed resource types: Container Allowed permissions: Read, Write, List, Add, Create Blob versioning permissions: enables deletion of versions Allowed blob index permissions: Read/Write Starr and expiry date/time:

    -Start: 12/1/2021

    -End: 12/31/2021

    For each of the following statements, select Yes if the statement is true. Otherwise, select No.

    NOTE: Each correct selection is worth one point.

    Hot Area:

  • Question 8:

    HOTSPOT

    Your on-premises network contains the servers shown in the following table.

    You have an Azure subscription that contains multiple virtual machines that run either Windows Server 2019 or SLES.

    You plan to implement adaptive application controls in Microsoft Defender for Cloud.

    Which operating systems and platforms can you monitor? To answer, select the appropriate options in the answer area.

    NOTE: Each correct selection is worth one point.

    Hot Area:

  • Question 9:

    HOTSPOT

    You have an Azure AD tenant named contoso.com that contains the users shown in the following table.

    You add enterprise applications to contoso.com as shown in the following table.

    You need to identify which users can grant admin consent for App1 and App2.

    Which users should you identify for each application? To answer, select the appropriate options in the answer area.

    NOTE: Each correct selection is worth one point.

    Hot Area:

  • Question 10:

    HOTSPOT - (Topic 4)

    You have an Azure subscription that contains the resources shown in the following table.

    Pass Your Certification With Marks4sure Guarantee 398 Microsoft AZ-500 : Practice Test

    SQL1 has the following configurations:

    1.

    Auditing: Enabled

    2.

    Audit log destination: storage1, Workspace1

    DB1 has the following configurations:

    1.

    Auditing: Enabled

    2.

    Audit log destination: storage2

    DB2 has auditing disabled.

    Where are the audit logs for DB1 and DB2 stored?

    To answer, select the appropriate options in the answer area

    NOTE: Each correct selection is worth one point.

    Hot Area:

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Microsoft exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your AZ-500 exam preparations and Microsoft certification application, do not hesitate to visit our Vcedump.com to find your solutions here.