Microsoft Azure
Microsoft Security Operations Analyst
SC-200
Popular
Validate your skills with the SC-200 exam for Microsoft Security Operations Analyst.
147 questions
0 views
Free
Questions 1–10 of 147
Which service provides threat protection for hybrid workloads in Azure?
-
A
Azure Security Center
-
B
Azure Monitor
-
C
Azure Sentinel
-
D
Azure Policy
Explanation
Azure Security Center offers unified security management and threat protection, while the others serve different functions.
A company needs to ensure that only authorized users can access specific Azure resources. What should they implement?
-
A
Azure Firewall
-
B
Azure Role-Based Access Control (RBAC)
-
C
Azure Policy
-
D
Azure Networking
Explanation
Azure RBAC controls access at various scopes, which is essential for authorization.
You are configuring Azure AD. What happens when a user is assigned to a role that includes both permissions to create and delete resources?
-
A
User can only create resources.
-
B
User loses all permissions.
-
C
User can create and delete resources.
-
D
User can only delete resources.
Explanation
Permissions are cumulative, allowing both actions for the user.
Which service provides real-time threat detection in Azure?
-
A
Azure Sentinel
-
B
Azure Monitor
-
C
Azure Resource Manager
-
D
Azure Blob Storage
Explanation
Azure Sentinel offers real-time threat detection capabilities, while others serve different functions.
A company needs to ensure compliance with GDPR across its Azure infrastructure. What should they primarily use?
-
A
Azure Firewall
-
B
Azure Policy
-
C
Azure Active Directory
-
D
Azure Virtual Network
Explanation
Azure Policy helps enforce compliance rules, unlike the other options that do not focus on compliance tracking.
You are configuring Azure Security Center to monitor your resources. What happens when a security policy violation occurs?
-
A
No action is taken
-
B
An alert is generated
-
C
The resource is deleted
-
D
Auditing is disabled
Explanation
Azure Security Center generates alerts for policy violations, while the other options are incorrect or misleading.
Which service is best for real-time threat detection in Azure?
-
A
Azure Sentinel
-
B
Azure DevOps
-
C
Azure Blob Storage
-
D
Azure Data Lake
Explanation
Azure Sentinel provides advanced security analytics for threats, while the others focus on development or storage.
A company needs to manage their security posture and compliance across many Azure subscriptions. What should they use?
-
A
Azure Defender
-
B
Azure Policy
-
C
Azure Log Analytics
-
D
Azure Storage Account
Explanation
Azure Policy helps enforce compliance across multiple subscriptions, while the others serve different security functions.
You are configuring Conditional Access policies. What happens if an account fails to meet the conditions set in the policy?
-
A
They are granted access anyway
-
B
Access is blocked or restricted
-
C
They receive a warning message
-
D
They must reset their password
Explanation
Conditional Access blocks or restricts access if conditions are not met, unlike the other options which are incorrect outcomes.
Which Azure service simplifies security management across your environment?
-
A
Azure Security Center
-
B
Azure Monitor
-
C
Azure DevOps
-
D
Azure Firewall
Explanation
Azure Security Center provides unified security management, while others focus on monitoring or development.