Which service provides Azure identity management capabilities?
AAzure Active Directory
BAzure SQL Database
CAzure DevOps
DAzure Blob Storage
Explanation
Azure Active Directory is designed for identity management, while the others serve different purposes.
Q2
A company needs to monitor network traffic and identify potential threats in real-time. Which Azure service should they use?
AAzure Monitor
BAzure Sentinel
CAzure Firewall
DAzure Backup
Explanation
Azure Sentinel is a SIEM tool that provides threat detection and security analytics, whereas the other options focus on monitoring or protection without full threat analysis.
Q3
You are configuring Encryption at Rest in Azure. Which setting should you prioritize to comply with GDPR?
AUse Azure Key Vault
BActivate customer-managed keys
CEnable blob soft delete
DUse Storage redundancy options
Explanation
Activating customer-managed keys provides control over data access compliant with GDPR, unlike the other options.
Q4
Which service provides Azure Active Directory Identity Protection features?
AAzure Active Directory
BAzure Information Protection
CMicrosoft Defender for Identity
DAzure Security Center
Explanation
Azure Active Directory specifically includes Identity Protection features that help to manage identity risks, while the other options focus on different aspects of security.
Q5
A company needs to audit all access to their Azure Key Vault. What should they enable?
AKey Vault logging
BAzure Monitor logs
CAccess policies
DKey Vault alerts
Explanation
Key Vault logging provides detailed logs of all access requests, whereas the other options do not specifically capture Key Vault access actions.
Q6
What happens when you delete an Azure Security Group?
AMembers are removed from Azure AD
BAll resources are deleted
CPolicies are retained but inactive
DAccess is immediately revoked
Explanation
Deleting an Azure Security Group immediately revokes access for its members, unlike the other options which are inaccurate.
Q7
Which service allows you to provision a secure virtual network in Azure?
AAzure Virtual Network
BAzure Blob Storage
CAzure Active Directory
DAzure Cognitive Services
Explanation
Azure Virtual Network enables secure network provisioning, while others serve different purposes like storage or identity management.
Q8
A company needs to protect sensitive data at rest in Azure. Which feature should they use?
AAzure Blob Storage
BAzure managed disks
CAzure Key Vault
DAzure Security Center
Explanation
Azure Key Vault specifically manages and protects sensitive information, while others do not focus solely on encryption key management.
Q9
What happens when a user is reverted to a previous state in Azure Security Center?
AFull administrative rights are restored
BPending updates remain active
CThreat policies are removed
DSecurity recommendations revert as well
Explanation
Reverting a user resets their access and related policies, including security recommendations, but does not dictate admin rights or pending updates.
Q10
Which service integrates security alerts in Azure?
AAzure Security Center
BAzure DevOps
CAzure IoT Hub
DAzure Logic Apps
Explanation
Azure Security Center provides comprehensive security alerts, while the others serve different functions.