View Mode
Q: 11
You have an Azure subscription that contains an app named App1. App1 has the app registration shown in the following table. AZ-500 question You need to ensure that App1 can read all user calendars and create appointments. The solution must use the principle of least privilege. What should you do?
Options
Q: 12
You have an Azure subscription that contains the Azure virtual machines shown in the following table. AZ-500 question You create an MDM Security Baseline profile named Profile1. You need to identify to which virtual machines Profile1 can be applied. Which virtual machines should you identify?
Options
Q: 13

HOTSPOT You have a management group named MG1 that contains an Azure subscription and a resource group named RG1. RG1 contains a virtual machine named VM1. You have the custom Azure roles shown in the following table. AZ-500 question The permissions for Role1 are shown in the following role definition file. AZ-500 question You assign the roles to the users shown in the following table. AZ-500 question For each of the following statements, select Yes if the statement is true. Otherwise, select No AZ-500 question

Your Answer
Q: 14
Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. Your company has an Active Directory forest with a single domain, named weylandindustries.com. They also have an Azure Active Directory (Azure AD) tenant with the same name. You have been tasked with integrating Active Directory and the Azure AD tenant. You intend to deploy Azure AD Connect. Your strategy for the integration must make sure that password policies and user logon limitations affect user accounts that are synced to the Azure AD tenant, and that the amount of necessary servers are reduced. Solution: You recommend the use of federation with Active Directory Federation Services (AD FS). Does the solution meet the goal?
Options
Q: 15

DRAG DROP Your company has an Azure Active Directory (Azure AD) tenant named contoso.com. The company is developing an application named App1. App1 will run as a service on server that runs Windows Server 2016. App1 will authenticate to contoso.com and access Microsoft Graph to read directory data. You need to delegate the minimum required permissions to App1. Which three actions should you perform in sequence from the Azure portal? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order. AZ-500 question

Drag & Drop
Q: 16
From Azure Security Center, you need to deploy SecPol1. What should you do first?
Options
Q: 17

HOTSPOT You have an Azure subscription that uses Microsoft Defender for Cloud. Defender for Cloud has the security alerts shown in the following exhibit. AZ-500 question AZ-500 question

Your Answer
Q: 18
You have a Microsoft 365 E5 subscription. You have an Azure subscription that uses Microsoft Defender for Cloud. You have an on-premises datacenter that contains the servers shown in the following table. You enable direct onboarding to Microsoft Defender for Cloud. Which servers will be onboarded to Defender for Cloud?
Options
Q: 19

DRAG DROP You have an Azure subscription that contains an Azure web app named Appl. You plan to configure a Conditional Access policy for Appl. The solution must meet the following requirements:

• Only allow access to App1 from Windows devices.

• Only allow devices that are marked as compliant to access Appl.

Which Conditional Access policy settings should you configure? To answer, drag the appropriate settings to the correct requirements. Each setting may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. AZ-500 question

Drag & Drop
Q: 20

DRAG DROP You have an Azure subscription. You plan to create two custom roles named Role1 and Role2. The custom roles will be used to perform the following tasks:

• Members of Role1 will manage application security groups.

• Members of Role2 will manage Azure Bastion.

You need to add permissions to the custom roles. Which resource provider should you use for each role? To answer, drag the appropriate resource providers to the correct roles. Each resource provider may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content AZ-500 question

Drag & Drop
Question 11 of 20 · Page 2 / 2

Premium Access Includes

  • Quiz Simulator
  • Exam Mode
  • Progress Tracking
  • Question Saving
  • Flash Cards
  • Drag & Drops
  • 3 Months Access
  • PDF Downloads
Get Premium Access
Scroll to Top

FLASH OFFER

Days
Hours
Minutes
Seconds

avail 10% DISCOUNT on YOUR PURCHASE