A company needs to monitor security alerts across all Azure subscriptions. Which solution should they implement?
AAzure Security Center
BAzure Logic Apps
CAzure DevOps
DAzure Storage Explorer
Explanation
Azure Security Center provides consolidated security alerts, while the others do not focus on security monitoring.
Q102
You are configuring Azure AD Identity Protection. What happens if a risk is detected with a user login?
AUser cannot access all services.
BUser is immediately disabled.
CRisk is assessed and actions applied.
DLogin is allowed with no consequences.
Explanation
Risk detection triggers remediation actions, but does not indiscriminately block access or disable the user.
Q103
Which service allows you to manage compliance across Azure resources?
AAzure Policy
BAzure Monitor
CAzure Firewall
DAzure Automation
Explanation
Azure Policy helps enforce compliance, while the others focus on monitoring or automation.
Q104
A company needs to secure sensitive data stored in Azure SQL Database. What should be implemented?
AData Encryption
BStorage Scaling
CPerformance Monitoring
DGeo-Replication
Explanation
Data Encryption is essential for securing sensitive information; the others don't provide data security.
Q105
You are configuring Azure Sentinel for threat detection. What happens when a new data connector is added?
AImmediate threat blocking
BData begins flowing immediately
CAlerts will be disabled
DConnectors need MFA setup
Explanation
Adding a connector allows data ingestion immediately, unlike the misleading options concerning blocking or alerts.
Q106
Which service provides real-time monitoring for Azure resources?
AAzure Monitor
BAzure Storage
CAzure SQL Database
DAzure Functions
Explanation
Azure Monitor provides comprehensive resource monitoring, while others do not focus on real-time monitoring.
Q107
A company needs to ensure that only approved applications can run on their Azure resources. Which feature should they implement?
AAzure Policy
BAzure DevOps
CAzure Backup
DAzure Traffic Manager
Explanation
Azure Policy enforces rules on resources, unlike the other listed services which serve different purposes.
Q108
You are configuring Azure Sentinel. What happens when you create a new scheduled query rule?
AIt automatically disables alerts.
BIt monitors data for threats.
CIt removes existing alerts.
DIt requires additional licensing.
Explanation
A new scheduled query rule actively looks for threats based on your configurations, unlike the incorrect options which misrepresent its functionality.
Q109
Which service provides unified security management in Azure?
AAzure Sentinel
BAzure Security Center
CAzure Monitor
DAzure DDoS Protection
Explanation
Azure Security Center is the unified security management service, whereas the others serve different purposes.
Q110
A company needs to automatically investigate and respond to potential threats in their Azure environment. Which service is most suitable?
AAzure Policy
BAzure Logic Apps
CAzure Sentinel
DAzure Security Center
Explanation
Azure Sentinel focuses on automated investigation and response, while the other options don't specifically handle these functions.