Free az-500 Exam Braindumps

Pass your Microsoft Azure Security Technologies exam with these free Questions and Answers

Page 12 of 76
QUESTION 51

- (Exam Topic 4)
You have an Azure subscription that contains the resources shown in the following table.
AZ-500 dumps exhibit
You plan to deploy the virtual machines shown in the following table.
AZ-500 dumps exhibit
You need to assign managed identities to the virtual machines. The solution must meet the following requirements:
AZ-500 dumps exhibit Assign each virtual machine the required roles.
AZ-500 dumps exhibit Use the principle of least privilege.
What is the minimum number of managed identities required?

  1. A. 1
  2. B. 2
  3. C. 3
  4. D. 4

Correct Answer: B
We have two different sets of required permissions. VM1 and VM2 have the same permission requirements. VM3 and VM4 have the same permission requirements.
A user-assigned managed identity can be assigned to one or many resources. By using user-assigned managed identities, we can create just two managed identities: one with the permission requirements for VM1 and VM2 and the other with the permission requirements for VM3 and VM4.
Reference:
https://docs.microsoft.com/en-us/azure/active-directory/managed-identities-azure-resources/overview

QUESTION 52

- (Exam Topic 4)
You have an Azure subscription named Subscription1 that contains the resources shown in the following table.
AZ-500 dumps exhibit
You need to identify which initiatives and policies you can add to Subscription1 by using Azure Security Center.
What should you identify?

  1. A. Policy1 and Policy2 only
  2. B. Initiative1 only
  3. C. Initiative1 and Initiative2 only
  4. D. Initiative1, Initiative2, Policy1, and Policy2

Correct Answer: D
Reference:
https://docs.microsoft.com/en-us/azure/security-center/custom-security-policies

QUESTION 53

- (Exam Topic 4)
You plan to use Azure Sentinel to create an analytic rule that will detect suspicious threats and automate responses.
Which components are required for the rule? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
AZ-500 dumps exhibit
Solution:
Reference:
https://docs.microsoft.com/en-us/azure/sentinel/tutorial-detect-threats-custom https://docs.microsoft.com/en-us/azure/sentinel/tutorial-respond-threats-playbook

Does this meet the goal?

  1. A. Yes
  2. B. No

Correct Answer: A

QUESTION 54

- (Exam Topic 4)
You have an Azure subscription named Sub1.
In Azure Security Center, you have a workflow automation named WF1. WF1 is configured to send an email message to a user named User1.
You need to modify WF1 to send email messages to a distribution group named Alerts. What should you use to modify WF1?

  1. A. Azure Application Insights
  2. B. Azure Monitor
  3. C. Azure Logic Apps Designer
  4. D. Azure DevOps

Correct Answer: C
Reference:
https://docs.microsoft.com/en-us/azure/security-center/workflow-automation
https://docs.microsoft.com/en-us/learn/modules/resolve-threats-with-azure-security-center/6-exerciseconfigure-p

QUESTION 55

- (Exam Topic 4)
You need to configure a virtual network named VNET2 to meet the following requirements:
AZ-500 dumps exhibit Administrators must be prevented from deleting VNET2 accidentally.
AZ-500 dumps exhibit Administrators must be able to add subnets to VNET2 regularly.
To complete this task, sign in to the Azure portal and modify the Azure resources.
Solution:
Locking prevents other users in your organization from accidentally deleting or modifying critical resources, such as Azure subscription, resource group, or resource.
Note: In Azure, the term resource refers to an entity managed by Azure. For example, virtual machines, virtual networks, and storage accounts are all referred to as Azure resources.
* 1. In the Azure portal, type Virtual Networks in the search box, select Virtual Networks from the search results then select VNET2. Alternatively, browse to Virtual Networks in the left navigation pane.
* 2. In the Settings blade for virtual network VNET2, select Locks.
AZ-500 dumps exhibit
* 3. To add a lock, select Add.
AZ-500 dumps exhibit
* 4. For Lock type select Delete lock, and click OK Reference:
https://docs.microsoft.com/en-us/azure/azure-resource-manager/resource-group-lock-resources

Does this meet the goal?

  1. A. Yes
  2. B. No

Correct Answer: A

Page 12 of 76

Post your Comments and Discuss Microsoft az-500 exam with other Community members: