Free AZ-500 Exam Braindumps (page: 67)

Page 66 of 128

You are troubleshooting a security issue for an Azure Storage account.
You enable Azure Storage Analytics logs and archive it to a storage account.
What should you use to retrieve the diagnostics logs?

  1. Azure Cosmos DB explorer
  2. SQL query editor in Azure
  3. AzCopy
  4. the Security admin center

Answer(s): C



You have an Azure Sentinel workspace.
You need to create a playbook.
Which two triggers will start the playbook? Each correct answer presents a complete solution.
NOTE: Each correct selection is worth one point.

  1. An Azure Sentinel scheduled query rule is executed.
  2. An Azure Sentinel data connector is added.
  3. An Azure Sentinel alert is generated.
  4. An Azure Sentinel hunting query result is returned.
  5. An Azure Sentinel incident is created.

Answer(s): C,E

Explanation:


Reference:

https://docs.microsoft.com/en-us/azure/sentinel/tutorial-respond-threats-playbook



You are troubleshooting a security issue for an Azure Storage account.
You enable Azure Storage Analytics logs and archive it to a storage account.
What should you use to retrieve the diagnostics logs?

  1. Azure Monitor
  2. SQL query editor in Azure
  3. File Explorer in Windows
  4. Azure Storage Explorer

Answer(s): D



You have an Azure Active Directory (Azure AD) tenant that contains a user named User1.
You plan to enable passwordless authentication for the tenant.
You need to ensure that User1 can enable the combined registration experience. The solution must use the principle of least privilege.
Which role should you assign to User1?

  1. Security administrator
  2. Privileged role administrator
  3. Authentication administrator
  4. Global administrator

Answer(s): D

Explanation:

Authentication Administrator.
Users with this role can set or reset any authentication method (including passwords) for non-administrators and some roles. Authentication Administrators can require users who are non-administrators or assigned to some roles to re-register against existing non-password credentials (for example, MFA or FIDO), and can also revoke remember MFA on the device, which prompts for MFA on the next sign-in.
Note: Before combined registration, users registered authentication methods for Azure AD Multi-Factor Authentication and self-service password reset (SSPR) separately. People were confused that similar methods were used for Azure AD Multi-Factor Authentication and SSPR but they had to register for both features.
Now, with combined registration, users can register once and get the benefits of both Azure AD Multi-Factor Authentication and SSPR.
Azure Active Directory role enable the combined registration experience
Incorrect:
Privileged Role Administrator.
Users with this role can manage role assignments in Azure Active Directory, as well as within Azure AD Privileged Identity Management. They can create and manage groups that can be assigned to Azure AD roles. In addition, this role allows management of all aspects of Privileged Identity Management and administrative units.


Reference:

https://docs.microsoft.com/en-us/azure/active-directory/authentication/howto-registration-mfa-sspr-combined https://docs.microsoft.com/en-us/azure/active-directory/roles/permissions-reference#privileged-role-administrator






Post your Comments and Discuss Microsoft AZ-500 exam with other Community members:

AZ-500 Exam Discussions & Posts