ExamGecko
Home Home / Microsoft / AZ-500

Microsoft AZ-500 Practice Test - Questions Answers, Page 30

Question list
Search
Search

List of questions

Search

Related questions











You are troubleshooting a security issue for an Azure Storage account.

You enable Azure Storage Analytics logs and archive it to a storage account.

What should you use to retrieve the diagnostics logs?

A.
Azure Cosmos DB explorer
A.
Azure Cosmos DB explorer
Answers
B.
SQL query editor in Azure
B.
SQL query editor in Azure
Answers
C.
AzCopy
C.
AzCopy
Answers
D.
the Security admin center
D.
the Security admin center
Answers
Suggested answer: C

You have an Azure Sentinel workspace.

You need to create a playbook.

Which two triggers will start the playbook? Each correct answer presents a complete solution, NOTE: Each correct selection is worth one point.

A.
An Azure Sentinel scheduled query rule is executed.
A.
An Azure Sentinel scheduled query rule is executed.
Answers
B.
An Azure Sentinel data connector is added.
B.
An Azure Sentinel data connector is added.
Answers
C.
An Azure Sentinel alert is generated.
C.
An Azure Sentinel alert is generated.
Answers
D.
An Azure Sentinel hunting query result is returned.
D.
An Azure Sentinel hunting query result is returned.
Answers
E.
An Azure Sentinel incident is created.
E.
An Azure Sentinel incident is created.
Answers
Suggested answer: C, E

Explanation:

https://docs.microsoft.com/en-us/azure/sentinel/tutorial-respond-threats-playbook

DRAG DROP

You have an Azure subscription that contains a Microsoft SQL server named Server1 and an Azure key vault named vault1. Server1 hosts a database named DB1. Vault1 contains an encryption key named key1.

You need to ensure that you can enable Transparent Data Encryption (TDE) on DB1 by using key1.

Which four actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.


Question 293
Correct answer: Question 293

Explanation:

Reference: https://docs.microsoft.com/en-us/azure/azure-sql/database/transparent-data-encryption-byok-configure?tabs=azure-powershell

HOTSPOT

You have an Azure subscription mat contains a resource group named RG1. RG1 contains a storage account named storage1. You have two custom Azure rotes named Role1 and Role2 that are scoped to RG1.

The permissions for Role1 are shown in the following JSON code.


Question 294
Correct answer: Question 294

HOTSPOT

You have an Azure Active Directory (Azure AD) tenant that contains two administrative units named AU1 and AU2. Users are assigned to the administrative units as shown in the following table.


Question 295
Correct answer: Question 295

You have an Azure subscription that uses Microsoft Sentinel.

You need to create a Microsoft Sentinel notebook that will use the Guided Investigation - Anomaly Lookup template. What should you create first?

A.
an analytics rule
A.
an analytics rule
Answers
B.
a Log Analytics workspace
B.
a Log Analytics workspace
Answers
C.
an Azure Machine Learning workspace
C.
an Azure Machine Learning workspace
Answers
D.
a hunting query
D.
a hunting query
Answers
Suggested answer: A

You have an Azure Active Directory (Azure AD) tenant that contains a user named User1.

You need to ensure that User1 can create and manage administrative units. The solution must use the principle of least privilege.

Which role should you assign to User1?

A.
Privileged role administrator
A.
Privileged role administrator
Answers
B.
Helpdesk administrator
B.
Helpdesk administrator
Answers
C.
Global administrator
C.
Global administrator
Answers
D.
Security administrator
D.
Security administrator
Answers
Suggested answer: A

DRAG DROP

You have an Azure subscription that contains an Azure SQL database named SQLDB1. SQLDB1 contains the columns shown in the following table.

For the Email and Birthday columns, you implement dynamic data masking by using the default masking function. Which value will the users see in each column? To answer, drag the appropriate values to the correct columns. Each value may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.

NOTE: Each correct selection is worth one point.


Question 298
Correct answer: Question 298

You have an Azure subscription that contains the resources shown in the following Table.

You plan to enable Microsoft Defender for Cloud for the subscription. Which resources can be protected by using Microsoft Defender for Cloud?

A.
VM1, VNET1, and storage1 only
A.
VM1, VNET1, and storage1 only
Answers
B.
VM1, storage1, and Vault1 only
B.
VM1, storage1, and Vault1 only
Answers
C.
VM1.VNET1, storage1, and Vault1
C.
VM1.VNET1, storage1, and Vault1
Answers
D.
VM1 and storage1 only
D.
VM1 and storage1 only
Answers
E.
VM1 and VNET only
E.
VM1 and VNET only
Answers
Suggested answer: C

You have an Azure Active directory tenant that syncs with an Active Directory Domain Services (AD DS) domain. You plan to create an Azure file share that will contain folders and files.

Which identity store can you use to assign permissions to the Azure file share and folders within the share? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.

A.
A.
Answers
Suggested answer: A
Total 439 questions
Go to page: of 44