Free AZ-500 Exam Braindumps (page: 59)

Page 58 of 128

You have an Azure subscription named Subscription1.
You need to view which security settings are assigned to Subscription1 by default.
Which Azure policy or initiative definition should you review?

  1. the Audit diagnostic setting policy definition
  2. the Enable Monitoring in Azure Security Center initiative definition
  3. the Enable Azure Monitor for VMs initiative definition
  4. the Azure Monitor solution 'Security and Audit' must be deployed policy definition

Answer(s): B

Explanation:


Reference:

https://docs.microsoft.com/en-us/azure/security-center/tutorial-security-policy https://docs.microsoft.com/en-us/azure/security-center/policy-reference



DRAG DROP (Drag and Drop is not supported) (Drag and Drop is not supported)
You have an Azure Sentinel workspace that has an Azure Active Directory (Azure AD) data connector.
You are threat hunting suspicious traffic from a specific IP address.
You need to annotate an intermediate event stored in the workspace and be able to reference the IP address when navigating through the investigation graph.
Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
Select and Place:

  1. See Explanation section for answer.

Answer(s): A

Explanation:


Reference:

https://docs.microsoft.com/en-us/azure/sentinel/bookmarks



HOTSPOT (Drag and Drop is not supported) (Drag and Drop is not supported)
You have 20 Azure subscriptions and a security group named Group1. The subscriptions are children of the root management group.
Each subscription contains a resource group named RG1.
You need to ensure that for each subscription RG1 meets the following requirements:
-The members of Group1 are assigned the Owner role.
-The modification of permissions to RG1 is prevented.
What should you do? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Hot Area:

  1. See Explanation section for answer.

Answer(s): A

Explanation:



Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You use Microsoft Defender for Cloud for the centralized policy management of three Azure subscriptions.
You use several policy definitions to manage the security of the subscriptions.
You need to deploy the policy definitions as a group to all three subscriptions.
Solution: You create a policy initiative and an assignment that is scoped to the Tenant Root Group management group.
Does this meet the goal?

  1. Yes
  2. No

Answer(s): A

Explanation:


Reference:

https://docs.microsoft.com/en-us/azure/governance/policy/overview https://4sysops.com/archives/apply-governance-policy-to-multiple-azure-subscriptions-with-management-groups/






Post your Comments and Discuss Microsoft AZ-500 exam with other Community members:

AZ-500 Exam Discussions & Posts