Microsoft Azure

Microsoft Cybersecurity Architect

SC-100
Popular Trending

Become a Microsoft Cybersecurity Architect by passing the SC-100 exam.

147 questions 0 views Free
Start Mock Test Timed · Full-length · Scored

Questions 1–10 of 147

Q1

Which service provides Azure identity management capabilities?

  • A Azure Active Directory
  • B Azure SQL Database
  • C Azure DevOps
  • D Azure Blob Storage
Explanation Azure Active Directory is designed for identity management, while the others serve different purposes.
Q2

A company needs to monitor network traffic and identify potential threats in real-time. Which Azure service should they use?

  • A Azure Monitor
  • B Azure Sentinel
  • C Azure Firewall
  • D Azure Backup
Explanation Azure Sentinel is a SIEM tool that provides threat detection and security analytics, whereas the other options focus on monitoring or protection without full threat analysis.
Q3

You are configuring Encryption at Rest in Azure. Which setting should you prioritize to comply with GDPR?

  • A Use Azure Key Vault
  • B Activate customer-managed keys
  • C Enable blob soft delete
  • D Use Storage redundancy options
Explanation Activating customer-managed keys provides control over data access compliant with GDPR, unlike the other options.
Q4

Which service provides Azure Active Directory Identity Protection features?

  • A Azure Active Directory
  • B Azure Information Protection
  • C Microsoft Defender for Identity
  • D Azure Security Center
Explanation Azure Active Directory specifically includes Identity Protection features that help to manage identity risks, while the other options focus on different aspects of security.
Q5

A company needs to audit all access to their Azure Key Vault. What should they enable?

  • A Key Vault logging
  • B Azure Monitor logs
  • C Access policies
  • D Key Vault alerts
Explanation Key Vault logging provides detailed logs of all access requests, whereas the other options do not specifically capture Key Vault access actions.
Q6

What happens when you delete an Azure Security Group?

  • A Members are removed from Azure AD
  • B All resources are deleted
  • C Policies are retained but inactive
  • D Access is immediately revoked
Explanation Deleting an Azure Security Group immediately revokes access for its members, unlike the other options which are inaccurate.
Q7

Which service allows you to provision a secure virtual network in Azure?

  • A Azure Virtual Network
  • B Azure Blob Storage
  • C Azure Active Directory
  • D Azure Cognitive Services
Explanation Azure Virtual Network enables secure network provisioning, while others serve different purposes like storage or identity management.
Q8

A company needs to protect sensitive data at rest in Azure. Which feature should they use?

  • A Azure Blob Storage
  • B Azure managed disks
  • C Azure Key Vault
  • D Azure Security Center
Explanation Azure Key Vault specifically manages and protects sensitive information, while others do not focus solely on encryption key management.
Q9

What happens when a user is reverted to a previous state in Azure Security Center?

  • A Full administrative rights are restored
  • B Pending updates remain active
  • C Threat policies are removed
  • D Security recommendations revert as well
Explanation Reverting a user resets their access and related policies, including security recommendations, but does not dictate admin rights or pending updates.
Q10

Which service integrates security alerts in Azure?

  • A Azure Security Center
  • B Azure DevOps
  • C Azure IoT Hub
  • D Azure Logic Apps
Explanation Azure Security Center provides comprehensive security alerts, while the others serve different functions.