az-500 Dumps

az-500 Free Practice Test

Microsoft az-500: Microsoft Azure Security Technologies

QUESTION 26

- (Exam Topic 4)
You have an Azure subscription named Subscription1 that contains the resources shown in the following table.
AZ-500 dumps exhibit
You need to identify which initiatives and policies you can add to Subscription1 by using Azure Security Center.
What should you identify?

Correct Answer: D
Reference:
https://docs.microsoft.com/en-us/azure/security-center/custom-security-policies

QUESTION 27

- (Exam Topic 4)
You have an Azure subscription named Sub1.
You create a virtual network that contains one subnet. On the subnet, you provision the virtual machines shown in the following table.
AZ-500 dumps exhibit
Currently, you have not provisioned any network security groups (NSGs). You need to implement network security to meet the following requirements:
AZ-500 dumps exhibit Allow traffic to VM4 from VM3 only.
AZ-500 dumps exhibit Allow traffic from the Internet to VM1 and VM2 only.
AZ-500 dumps exhibit Minimize the number of NSGs and network security rules.
How many NSGs and network security rules should you create? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
AZ-500 dumps exhibit
Solution:
NSGs: 1
Network security rules: 3
Not 2: You cannot specify multiple service tags or application groups) in a security rule. References:
https://docs.microsoft.com/en-us/azure/virtual-network/security-overview

Does this meet the goal?

Correct Answer: A

QUESTION 28

- (Exam Topic 4)
From the Azure portal, you are configuring an Azure policy.
You plan to assign policies that use the DeployIfNotExist, AuditIfNotExist, Append, and Deny effects.
Which effect requires a managed identity for the assignment?

Correct Answer: C
When Azure Policy runs the template in the deployIfNotExists policy definition, it does so using a managed identity.
References:
https://docs.microsoft.com/bs-latn-ba/azure/governance/policy/how-to/remediate-resources

QUESTION 29

- (Exam Topic 4)
On Monday, you configure an email notification in Azure Security Center to notify user user1@contoso.com. On Tuesday, Security Center generates the security alerts shown in the following table.
AZ-500 dumps exhibit
How many email notifications will user1@contoso.com receive on Tuesday? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
AZ-500 dumps exhibit
Solution:
Reference:
https://docs.microsoft.com/en-us/azure/security-center/security-center-provide-security-contact-details

Does this meet the goal?

Correct Answer: A

QUESTION 30

- (Exam Topic 4)
You have an Azure subscription that contains a storage account named storage1 and a virtual machine named VM1.
VM1 is connected to a virtual network named VNet1 that contains one subnet and uses Azure DNS.
You need to ensure that VM1 connects to storage1 by using a private IP address. The solution must minimize administrative effort.
What should you do?

Correct Answer: D