Summer Special - Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: top65certs

Free Access Microsoft AZ-500 New Release

Page: 6 / 11
Total 460 questions

Microsoft Azure Security Technologies Questions and Answers

Question 21

You have an Azure subscription that contains the following resources:

    A virtual network named VNET1 that contains two subnets named Subnet1 and Subnet2.

    A virtual machine named VM1 that has only a private IP address and connects to Subnet1.

You need to ensure that Remote Desktop connections can be established to VM1 from the internet.

Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange then in the correct order.

Options:

Question 22

You have an Azure subscription that contains the resources shown in the following table.

User1 is a member of Group1. Group1 and User2 are assigned the Key Vault Contributor role for Vault1.

On January 1, 2019, you create a secret in Vault1. The secret is configured as shown in the exhibit. (Click the Exhibit tab.)

User2 is assigned an access policy to Vault1. The policy has the following configurations:

    Key Management Operations: Get, List, and Restore

    Cryptographic Operations: Decrypt and Unwrap Key

    Secret Management Operations: Get, List, and Restore

Group1 is assigned an access to Vault1. The policy has the following configurations:

    Key Management Operations: Get and Recover

    Secret Management Operations: List, Backup, and Recover

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

Options:

Question 23

You have an Azure subscription. That contains the virtual machines shown in the following table.

You need to enable file integrity monitoring in Microsoft Defender for Cloud. Which computers will support file integrity monitoring?

Options:

A.

Computed only

B.

Computer 1 and Computer2 only

C.

Computed and Computed only

D.

Computer1, Computer2, and Computer3

Question 24

You have an Azure Active Directory (Azure AD) tenant named contoso.com

You need to configure diagnostic settings for contoso.com. The solution must meet the following requirements:

• Retain loqs for two years.

• Query logs by using the Kusto query language

• Minimize administrative effort.

Where should you store the logs?

Options:

A.

an Azure Log Analytics workspace

B.

an Azure event hub

C.

an Azure Storage account

Page: 6 / 11
Total 460 questions