What happens when an Azure Security Center recommendation is marked as 'dismissed'?
AIt is removed permanently.
BIt is noted for future assessment.
CIt triggers an alert to admins.
DIt invalidates all security policies.
Explanation
Dismissing a recommendation simply records the action for auditing without removing it permanently.
Q22
What type of Azure service is Azure Policy?
AGovernance and compliance management
BData storage
CNetworking optimization
DVirtual machine deployment
Explanation
Azure Policy helps enforce governance and compliance, while the others are unrelated services.
Q23
You are configuring Azure Sentinel for a new environment.What should you first connect?
AUser data sources
BData connectors
CIncident responders
DThreat intelligence feeds
Explanation
Connecting data connectors is essential to gather necessary logs and alerts for analysis.
Q24
A company needs to secure a critical Azure VM. Which feature should be configured?
AAzure Front Door
BAzure Disk Encryption
CNetwork Security Groups
DAzure Monitor Alerts
Explanation
Azure Disk Encryption protects data at rest for VMs, unlike others which manage traffic or monitor performance.
Q25
Which Azure service helps in detecting threats in real-time?
AAzure Security Center
BAzure DevOps
CAzure Functions
DAzure Site Recovery
Explanation
Azure Security Center provides continuous security monitoring and generates security alerts for threats, while the others focus on development or resource management.
Q26
A company needs to analyze logs from multiple Azure resources but wants to minimize costs. Which service should they use?
AAzure Synapse Analytics
BAzure Monitor Logs
CAzure Stream Analytics
DAzure Logic Apps
Explanation
Azure Monitor Logs efficiently collects and analyzes log data for various services at a lower cost, unlike the others which may incur more expenses for large data analysis.
Q27
What happens when you configure a Log Analytics workspace with a retention period of 30 days?
AData deleted after 30 days
BUnlimited data storage period
CNo data collection occurs
DData is archived after 30 days
Explanation
Data is retained for 30 days after which it's deleted, while the other options inaccurately describe retention behavior.
Q28
Which service provides security threat intelligence for Azure resources?
AMicrosoft Sentinel
BAzure Monitor
CAzure SQL Database
DAzure Storage
Explanation
Microsoft Sentinel aggregates threat intelligence for enhanced security, while others focus on monitoring or storage.
Q29
A company needs to restrict access to sensitive files in Azure Blob Storage. Which option is best?
AAssign read permissions to all users
BUse Azure Role-Based Access Control
CEnable public access to containers
DRemove all users access rights
Explanation
Azure RBAC allows granular access control, while other options compromise security.
Q30
You are configuring Azure Security Center. What happens if you enable automated remediation recommendations?
AIt applies fixes without any user input
BIt provides manual fixes only
CIt monitors without making changes
DIt generates reports on potential issues
Explanation
Automated remediation applies recommended fixes automatically, which differentiates it from other options.