List of questions
Related questions
Question 138 - SC-100 discussion
You have an Azure AD tenant that syncs with an Active Directory Domain Services (AD DS) domain.
You are designing an Azure DevOps solution to deploy applications to an Azure subscription by using continuous integration and continuous deployment (CI/CD) pipelines.
You need to recommend which types of identities to use for the deployment credentials of the service connection. The solution must follow DevSecOps best practices from the Microsoft Cloud Adoption Framework for Azure.
What should you recommend?
an Azure AD user account that has a password stored in Azure Key Vault
a group managed service account (gMSA)
an Azure AD user account that has role assignments in Azure AD Privileged Identity Management {PIM)
a managed identity in Azure
0 comments
Leave a comment first