Free AZ-500 Exam Braindumps (page: 62)

Page 61 of 128

You are troubleshooting a security issue for an Azure Storage account.
You enable the diagnostic logs for the storage account.
What should you use to retrieve the diagnostics logs?

  1. Azure Security Center
  2. Azure Monitor
  3. the Security admin center
  4. Azure Storage Explorer

Answer(s): D

Explanation:


Reference:

https://docs.microsoft.com/en-us/azure/storage/blobs/monitor-blob-storage?tabs=azure-portal



You have an Azure subscription that contains the resources shown in the following table.
You plan to enable Azure Defender for the subscription.
Which resources can be protected by using Azure Defender?

  1. VM1, VNET1, storage1, and Vault1
  2. VM1, VNET1, and storage1 only
  3. VM1, storage1, and Vault1 only
  4. VM1 and VNET1 only
  5. VM1 and storage1 only

Answer(s): C

Explanation:


Reference:

https://docs.microsoft.com/en-us/azure/security-center/azure-defender



DRAG DROP (Drag and Drop is not supported) (Drag and Drop is not supported)
You have an Azure subscription that contains the following resources:
-A network virtual appliance (NVA) that runs non-Microsoft firewall software and routes all outbound traffic from the virtual machines to the internet
-An Azure function that contains a script to manage the firewall rules of the NVA
-Azure Security Center standard tier enabled for all virtual machines
-An Azure Sentinel workspace
-30 virtual machines
You need to ensure that when a high-priority alert is generated in Security Center for a virtual machine, an incident is created in Azure Sentinel and then a script is initiated to configure a firewall rule for the NVA.
How should you configure Azure Sentinel to meet the requirements? To answer, drag the appropriate components to the correct requirements. Each component may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.
NOTE: Each correct selection is worth one point.
Select and Place:

  1. See Explanation section for answer.

Answer(s): A

Explanation:


Reference:

https://docs.microsoft.com/en-us/azure/sentinel/create-incidents-from-alerts https://docs.microsoft.com/en-us/azure/sentinel/connect-azure-security-center



You have an Azure subscription that contains a resource group named RG1 and a security group named ServerAdmins. RG1 contains 10 virtual machines, a virtual network named VNET1, and a network security group (NSG) named NSG1. ServerAdmins can access the virtual machines by using RDP.
You need to ensure that NSG1 only allows RDP connections to the virtual machines for a maximum of 60 minutes when a member of ServerAdmins requests access.
What should you configure?

  1. an Azure policy assigned to RG1
  2. a just in time (JIT) VM access policy in Microsoft Defender for Cloud
  3. an Azure Active Directory (Azure AD) Privileged Identity Management (PIM) role assignment
  4. an Azure Bastion host on VNET1

Answer(s): B

Explanation:


Reference:

https://docs.microsoft.com/en-us/azure/security-center/just-in-time-explained






Post your Comments and Discuss Microsoft AZ-500 exam with other Community members:

AZ-500 Exam Discussions & Posts