Free AZ-500 Exam Braindumps (page: 52)

Page 51 of 128

You have an Azure subscription named Sub1 that is associated to an Azure Active Directory (Azure AD) tenant named contoso.com.
You are assigned the Global administrator role for the tenant. You are responsible for managing Azure Security Center settings.
You need to create a custom sensitivity label.
What should you do?

  1. Create a custom sensitive information type.
  2. Elevate access for global administrators in Azure AD.
  3. Upgrade the pricing tier of the Security Center to Standard.
  4. Enable integration with Microsoft Cloud App Security.

Answer(s): A

Explanation:

First, you need to create a new sensitive information type because you can't directly modify the default rules.


Reference:

https://docs.microsoft.com/en-us/office365/securitycompliance/customize-a-built-in-sensitive-information-type



HOTSPOT (Drag and Drop is not supported) (Drag and Drop is not supported)
You have the hierarchy of Azure resources shown in the following exhibit.
You create the Azure Blueprints definitions shown in the following table.
To which objects can you assign Blueprint1 and Blueprint2? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Hot Area:


  1. See Explanation section for answer.

Answer(s): A

Explanation:



Blueprints can only be assigned to subscriptions.



You have an Azure subscription that contains the Azure Log Analytics workspaces shown in the following table.
You create the virtual machines shown in the following table.
You plan to use Azure Sentinel to monitor Windows Defender Firewall on the virtual machines.
Which virtual machines you can connect to Azure Sentinel?

  1. VM1 only
  2. VM1 and VM3 only
  3. VM1, VM2, VM3, and VM4
  4. VM1 and VM2 only

Answer(s): C

Explanation:


Reference:

https://docs.microsoft.com/en-us/azure/sentinel/connect-windows-firewall



HOTSPOT (Drag and Drop is not supported) (Drag and Drop is not supported)
You have an Azure subscription that contains a user named Admin1 and a resource group named RG1.
In Azure Monitor, you create the alert rules shown in the following table.
Admin1 performs the following actions on RG1:
-Adds a virtual network named VNET1
-Adds a Delete lock named Lock1
Which rules will trigger an alert as a result of the actions of Admin1? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Hot Area:

  1. See Explanation section for answer.

Answer(s): A

Explanation:






Post your Comments and Discuss Microsoft AZ-500 exam with other Community members:

AZ-500 Exam Discussions & Posts