A company needs to manage user identities in Azure. Which service should they use?
AAzure Active Directory
BAzure Key Vault
CAzure Security Center
DAzure Monitor
Explanation
Azure Active Directory is designed for identity management; the others serve different purposes.
Q72
What happens when you assign a role to a user at the resource group level?
AUser gets permissions for all resources
BUser loses all permissions
COnly specified resources receive permissions
DInherits permissions from underlying resources
Explanation
Assigning a role at the resource group level grants permissions to all contained resources; other options misrepresent permissions behavior.
Q73
Which service is designed for endpoint management in Azure?
AMicrosoft Intune
BAzure DevOps
CAzure Functions
DAzure Blob Storage
Explanation
Microsoft Intune is specifically for managing endpoints, while others serve different purposes.
Q74
A company needs to implement conditional access for remote users. What should they configure?
AVPN connections
BNetwork Security Groups
CAzure AD Conditional Access
DMulti-Factor Authentication
Explanation
Azure AD Conditional Access allows managing access based on conditions, unlike other options which do not control access policies directly.
Q75
What happens when a device is enrolled in Auto Enrollment?
AIt gets automatically configured.
BIt receives updates immediately.
CIt does not apply security policies.
DIt will fail to connect to Azure.
Explanation
Devices enrolled in Auto Enrollment get auto-configured for policies, while other options do not reflect the enrollment's purpose.
Q76
Which Azure service allows for centralized policy enforcement across resources?
AAzure Policy
BAzure Monitor
CAzure Automation
DAzure Resource Manager
Explanation
Azure Policy enforces rules and effects on resources, while others don't focus on policy enforcement.
Q77
A company needs to provide employees with secure remote access to applications. What should they implement?
AAzure File Sync
BAzure Bastion
CAzure Virtual Network
DAzure Front Door
Explanation
Azure Bastion provides secure RDP/SSH without exposing VMs directly to the internet, while the others serve different purposes.
Q78
You are configuring user settings for Azure Active Directory (AAD). What will happen if you set a user as a guest?
AFull administrative rights granted
BOnly limited access to resources
CImmediate removal from AAD
DUser can send emails to all users
Explanation
Guests have limited access to resources compared to regular users, which is typical for external users.
Q79
Which Azure service provides integrated identity and access management?
AAzure Active Directory
BAzure Blob Storage
CAzure Virtual Machines
DAzure SQL Database
Explanation
Azure Active Directory is designed for identity management; the others serve different purposes.
Q80
A company needs to secure its network to prevent unauthorized access to Azure resources. What should you implement?
AAzure Traffic Manager
BNetwork Security Groups
CAzure Logic Apps
DAzure Cosmos DB
Explanation
Network Security Groups provide access control; the other options don't focus on network security.