Celebrate 2025 with Discount Offer - Coupon code:

Microsoft AZ-500 Exam Questions

Certification Exams

Downloadable PDF versions

100% Confidential

Updated Regularly

Advanced Features

Number Of Questions: 417

$59.00

Exam Details

Exam Name:

Microsoft Azure Security Technologies

Exam Code:

AZ-500

Total Questions in Exam:

417

Demo Questions

Q1. You have an Azure subscription named Sub1 that has Security defaults disabled. The subscription contains the following users: * Five users that have owner permissions for Sub1. * Ten users that have owner permissions for Azure resources. None of the users have multi-factor authentication (MFA) enabled. Sub1 has the secure score as shown in the Secure Score exhibit. (Click the Secure Score tab.) You plan to enable MFA for the following users: * Five users that have owner permissions for Sub1. * Five users that have owner permissions for Azure resources. By how many points will the secure score increase after you perform the planned changes?

A.0

B. 5

C. 7.5

D. 10

E. 14

Correct Answer: C

Q2. You have an Azure subscription that contains an Azure App Service app named App1, an Azure container instance named AC1. and a storage account named storage1. AC1 hosts an app named App2. Users send requests to App1 by using a URL of https:/app1.contoso.com/echo/resource-cache? param1 =sample. App1 calls App2. which retrieves data from storage1. You need to ensure that a security alert will be generated when connections are detected from anomalous IP addresses. Which Microsoft Defender for Cloud service should you use?

A.Microsoft Defender for App Service

B. Microsoft Defender for APIs

C. Microsoft Defender for Storage

D. Microsoft Defender for Containers

Correct Answer: B

Q3. You have an Azure subscription that contains the virtual machines shown in the following table. You are configuring Microsoft Defender for Servers. You plan to enable adaptive application controls to create an allowlist of known-safe apps on the virtual machines. Which virtual machines support the use of adaptive application controls?

A.VM1 and VM2 only

B. VM2 and VM4 only

C. VM2 and VM3 only

D. VM1, VM2, VM3, and VM4

Correct Answer: A

Q4. Lab Task Task 2 You need to ensure that the events in the NetworkSecurityGroupRuleCounter log of the VNETOI-Subnet0-NSG network security group (NSG) are stored in the Iogs31330471 Azure Storage account for 30 days.

A.see the task answer with step by step below

Correct Answer: A Enable diagnostic resource logging for the NSG. You can use the Azure portal, Azure PowerShell, or the Azure CLI to do this. You need to select theRule countercategory under Logs and choose theIogs31330471storage account as the destination. Configure the retention policy for the storage account to keep the logs for 30 days. You can use the Azure portal, Azure PowerShell, or the Azure CLI to do this. You need to specify thedaysparameter as 30 for the Set-AzStorageServiceProperty cmdlet or the az storage logging update command. View and analyze the logs in the storage account. You can use any tool that can read JSON files, such as Azure Storage Explorer or Visual Studio Code. You can also export the logs to any visualization tool, SIEM solution, or IDS of your choice

$59.00

Reviews

There are no reviews yet.

Be the first to review “Microsoft AZ-500 Exam Questions”

Your email address will not be published. Required fields are marked *