0% found this document useful (0 votes)
20 views31 pages

Az 900 Draft 2 No Ans

The document contains a series of questions and answers related to Azure services, covering topics such as data transfers, Azure Monitor, Windows Virtual Desktop, Azure Active Directory, security features, and resource management. It addresses various functionalities, limitations, and best practices within the Azure ecosystem. Each question is presented with a binary choice (Yes/No) for the respondent to select.

Uploaded by

sanjay2002in
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as DOCX, PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
20 views31 pages

Az 900 Draft 2 No Ans

The document contains a series of questions and answers related to Azure services, covering topics such as data transfers, Azure Monitor, Windows Virtual Desktop, Azure Active Directory, security features, and resource management. It addresses various functionalities, limitations, and best practices within the Azure ecosystem. Each question is presented with a binary choice (Yes/No) for the respondent to select.

Uploaded by

sanjay2002in
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as DOCX, PDF, TXT or read online on Scribd
You are on page 1/ 31

251. Data transfers between Azure services located in different Azure regions are always free.

a) Yes.
b) No.

252. You need to be notified when Microsoft plans to perform maintenance that can affect the resources d
should you use?
a) Azure Monitor.
b) Azure Service Health.
c) Azure Advisor.
d) Microsoft Trust Center.

253. A Windows Virtual Desktop session host can run Windows 10 only.
a) Yes.
b) No.

254. A Windows Virtual Desktop host pool that includes 20 session hosts supports a maximum of 20
simultaneous user connections.
a) Yes.
b) No.

255. Windows Virtual Desktop supports desktop and app virtualization.


a) Yes.
b) No.

256. […] can calculate cost savings due to reduced electricity consumption as a result of migrating on-prem
a) The Azure Migrate
b) The Azure Total Cost of Ownership (TCO) calculator.
c) The Database Migration Assistant.
d) The pricing calculator in Azure.

257. You can use Availability Zones in Azure to protect Azure virtual machines from a datacenter failure.
a) Yes.
b) No.

258. You can use Availability Zones in Azure to protect Azure virtual machines from a region failure.
a) Yes.
b) No.

259. You can use Availability Zones in Azure to protect Azure managed disks from a datacenter failure.
a) Yes.
b) No.

260. An Azure subscription can have multiple account administrators.


a) Yes.
b) No.

261. An Azure subscription can be managed by using a Microsoft account only.


a) Yes.
b) No.

262. An Azure resource group can contain multiple Azure subscriptions.


a) Yes.
b) No.

263. To use Azure Active Directory (Azure AD) credentials to sign in to a computer that runs Windows 10,
the computer must be joined to Azure AD.
a) Yes.
b) No.

264. Users in Azure Active Directory (Azure AD) are organized by using resource groups.
a) Yes.
b) No.

265. Azure Active Directory (Azure AD) groups support dynamic membership rules.
a) Yes.
b) No.

266. You plan to deploy several Azure virtual machines. You need to ensure that the services running on th
single data center fails. What are two possible solutions?
a) Deploy the virtual machines to two or more availability zones.
b) Deploy the virtual machines to two or more resource groups.
c) Deploy the virtual machines to a scale set.
d) Deploy the virtual machines to two or more regions.

267. Azure Monitor can monitor the performance of on-premises computers.


a) Yes.
b) No.
268. Azure Monitor can send alerts to Azure Active Directory security groups.
a) Yes.
b) No.

269. Azure Monitor can trigger alerts based on data in an Azure Log Analytics workspace.
a) Yes.
b) No.

270. From Azure Service Health, an administrator can view the health of all the services in an Azure environ
a) Yes.
b) No.

271. From Azure Service Health, an administrator can create a rule to be alerted if an Azure service fails.
a) Yes.
b) No.

272. From Azure Service Health, an administrator can prevent a service failure.
a) Yes.
b) No.

273. You need to identify which blades in the Azure portal must be used to perform the following task : Mo
a) Monitor
b) Subscriptions.
c) Marketplace.
d) Advisor.

274. You need to identify which blades in the Azure portal must be used to perform the following task
a) Monitor.
b) Subscriptions.
c) Marketplace.
d) Advisor.

275. You need to identify which blades in the Azure portal must be used to perform the following task
a) Monitor.
b) Subscriptions.
c) Marketplace.
d) Advisor.
276. Azure Advisor can generate a list of Azure virtual machines that are protected by Azure Backup.
a) Yes.
b) No.

277. If you implement the security recommendations provided by Azure Advisor, your company secure
score will decrease.
a) Yes.
b) No.

278. To maintain Microsoft support, you must implement the security recommendations provided by
Azure Advisor within a period of 30 days.
a) Yes.
b) No.

279. What can you use to automatically send an alert if an administrator stops an Azure virtual machine?
a) Azure Advisor.
b) Azure Service Health.
c) Azure Monitor.
d) Azure Network Watcher.

280. You have an Azure environment. You need to create a new Azure virtual machine from a tablet that ru
are three possible solutions?
a) Use Bash in Azure Cloud Shell.
b) Use PowerShell in Azure Cloud Shell.
c) Use the PowerApps portal.
d) Use the Security & Compliance admin center.
e) Use the Azure portal.

281. Azure Advisor provides recommendations on how to improve the security of an


Azure Active Directory (Azure AD) environment.
a) Yes.
b) No.

282. Azure Advisor provides recommendations on how to reduce the cost of running Azure virtual machines
a) Yes.
b) No.

283. Azure Advisor provides recommendations on how to configure the network settings on Azure virtual m
a) Yes.
b) No.
284. Several support engineers plan to manage Azure by using the Computer1-Windows 10. You need to ide
be used.
a) The Azure CLI and the Azure portal.
b) The Azure portal and Azure PowerShell.
c) The Azure CLI and Azure PowerShell.
d) The Azure CLI, the Azure portal, and Azure PowerShell.

285. Several support engineers plan to manage Azure by using the Computer2-Ubuntu. You need to identify
used.
a) The Azure CLI and the Azure portal.
b) The Azure portal and Azure PowerShell.
c) The Azure CLI and Azure PowerShell.
d) The Azure CLI, the Azure portal, and Azure PowerShell.

286. Several support engineers plan to manage Azure by using the Computer3-MacOS Mojave. You need to
can be used.
a) The Azure CLI and the Azure portal.
b) The Azure portal and Azure PowerShell.
c) The Azure CLI and Azure PowerShell.
d) The Azure CLI, the Azure portal, and Azure PowerShell.

287. You can access Compliance Manager from the […].


a) Azure Active Directory admin center.
b) Azure portal.
c) Microsoft 365 Admin Center.
d) Microsoft Service Trust Portal.

288. An Azure administrator plans to run a PowerShell script that creates Azure resources. You need to reco
use to run the script. Which three computers can run the script?
a) A computer that runs macOS and has PowerShell Core 6.0 installed.
b) A computer that runs Windows 10 and has the Azure PowerShell module installed.
c) A computer that runs Linux and has the Azure PowerShell module installed.
d) A computer that runs Linux and has the Azure CLI tools installed.
e) A computer that runs Chrome OS and uses Azure Cloud Shell.

289. Azure Firewall will encrypt all the network traffic sent from Azure to the Internet.
a) Yes.
b) b.

290. A Network Security Group (NSG) will encrypt all the network traffic sent from Azure to the Internet.
a) Yes.
b) No.

291. Azure virtual machines that run Windows Server 2016 can encrypt network traffic sent to the Internet.
a) Yes.
b) No.

292. Azure Security Center can monitor Azure resources and on-premises resources.
a) Yes.
b) No.

293. All Azure Security Center features are free.


a) Yes.
b. No

294. From Azure Security Center, you can download a Regulatory Compliance report.
a) Yes.
b) No.

295. You plan to implement several security services for an Azure environment. You need to identify
which Azure services must be used to meet the following security requirements : Monitor threats by using sen
a) Azure Monitor.
b) Azure Security Center.
c) Azure Active Directory (Azure AD) Identity Protection.
d) Azure Advanced Threat Protection (ATP).

296. You plan to implement several security services for an Azure environment. You need to identify which
following security requirements: Enforce Azure Multi-Factor Authentication (MFA) based on a condition.

a) Azure Monitor.
b) Azure Security Center.
c) Azure Active Directory (Azure AD) Identity Protection.
d) Azure Advanced Threat Protection (ATP).

297. Your Azure environment contains multiple Azure virtual machines. You need to ensure that a
virtual machine named VM1 is accessible from the Internet over HTTP. What are two possible solutions?
a) Modify an Azure Traffic Manager profile.
b) Modify a Network Security Group (NSG).
c) Modify a DDoS protection plan.
d) Modify an Azure firewall.
298. You can enable Just In Time (JIT) VM access by using […].
a) Azure Bastion.
b) Azure Firewall.
c) Azure Front Door.
d) Azure Security Center.

299. You can associate a Network Security Group (NSG) to a virtual network subnet.
a) Yes.
b) No.

300. You can associate a Network Security Group (NSG) to a virtual network.
a) Yes.
b) No.

301. You can associate a Network Security Group (NSG) to a network interface.
a) Yes.
b) No.

302. After you create a virtual machine, you need to modify to allow connections to TCP port 8080
on the virtual machine […].
a) Network Security Group (NSG).
b) Virtual network gateway.
c) Virtual network.
d) Route table.

303. You can create custom Azure roles to control access to resources.
a) Yes.
b) No.

304. A user account can be assigned to multiple Azure roles.


a) Yes.
b) No.

305. A resource group can have the Owner role assigned to multiple users.
a) Yes.
b) No.

306. You need to collect and automatically analyze security events from Azure Active Directory (Azure AD).
What should you use?
a) Azure Sentinel.
b) Azure Synapse Analytics.
c) Azure AD Connect.
d) Azure Key Vault.

307. From […] you can view which user turned off a specific virtual machine during the last 14 days.
a) Azure Access Control IAM.
b) Azure Event Hubs.
c) Azure Activity Log.
d) Azure Service Health.

308. Which Azure service can you use as a security information and event management (SIEM) solution?
a) Azure Analysis Services.
b) Azure Sentinel.
c) Azure Information Protection.
d) Azure Cognitive Services.

309. Your company implements [Azure policies] to automatically add a watermark to Microsoft Word documents th
card information.
a) No change is needed.
b) DDoS protection.
c) Azure Information Protection.
d) Azure Active Directory (Azure AD) Identity Protection.

310. You have an Azure virtual network named VNET1 in a resource group named RG1. You assign the Azure Policy
Allowed Resource Type and specify that virtual networks are not an allowed resource type in RG1. VNET1 […].
a) Is deleted automatically.
b) Is moved automatically to another resource group.
c) Continues to function normally.
d) Is now a read-only object.

311. You can create Group Polices in Azure Active Directory (Azure AD).
a) Yes.
b) No.

312. You can join Windows 10 devices to Azure Active Directory (Azure AD).
a) Yes.
b) No.

313. You can join Android devices to Azure Active Directory (Azure AD).
a) Yes.
b) No.
314. The […] explains what data Microsoft processes, how Microsoft processes the data, and the purpose of proces
a) The Microsoft Online Services Privacy Statement.
b) Microsoft Online Services Terms.
c) Microsoft Online Service Level Agreement.
d) Online Subscription Agreement for Microsoft Azure.

315. An Azure Policy initiative definition is a […].


a) Collection of policy definitions.
b) Collection of Azure Policy definition assignments.
c) Group of Azure Blueprints definitions.
d) Group of role-based access control (RBAC) role assignments.

316. […] provide organizations with the ability to manage the compliance of Azure resources across multiple subscr
a) Resource groups.
b) Management groups.
c) Azure policies.
d) Azure App Service plans.

317. General Data Protection Regulation (GDPR) defines data protection and privacy rules.
a) Yes.
b) No.

318. General Data Protection Regulation (GDPR) applies to companies that offer goods or services to individuals in t
a) Yes.
b) No.

319. Azure can be used to build a General Data Protection Regulation (GDPR)-compliant infrastructure.
a) Yes.
b) No.

320. You can add an Azure Resource Manager template to an Azure blueprint.
a) Yes.
b) No.

321. You can assign an Azure blueprint to a resource group.


a) Yes.
b) No.

322. You can use Azure Blueprints to grant permissions to a resource.


a) Yes.
b) No.

323. Azure China is operated by Microsoft.


a) Yes.
b) No.

324. Azure Government is operated by Microsoft.


a) Yes.
b) No.

325. Azure Government is available only to US government agencies and their partners.
a) Yes.
b) No.

326. An Azure resource can have multiple Delete locks.


a) Yes.
b) No.

327. An Azure resource inherits locks from its resource group.


a) Yes.
b) No.

328. If an Azure resource has a Read-only lock, you can add a Delete lock to the resource.
a) Yes.
b) No.

329. Authorization to access Azure resources can be provided only to Azure Active Directory (Azure AD) users.
a) Yes.
b) No.

330. Identities stored in Azure Active Directory (Azure AD), third-party cloud services, and on-premises Active Direc
access Azure resources.
a) Yes.
b) No.

331. Azure has built-in authentication and authorization services that provide secure access to Azure resources.
a) Yes.
b) No.
332. Identities stored in an on-premises Active Directory can be synchronized to Azure Active Directory (Azure AD)
a) Yes.
b) No.

333. You can view your company regulatory compliance report from […].
a) Azure Advisor.
b) Azure Analysis Services.
c) Azure Monitor.
d) Azure Security Center.

334. Your company has an Azure subscription that contains resources in several regions. You need to ensure that
administrators can only create resources in those regions. What should you use?
a) A read-only lock.
b) An Azure policy.
c) A management group.
d) A reservation.

335. Azure Active Directory (Azure AD) requires the implementation of domain controllers on
Azure virtual machines.
a) Yes.
b) No.

336. Azure Active Directory (Azure AD) provides authentication services for resources hosted in Azure
and Microsoft 365.
a) Yes.
b) No.

337. Each user account in Azure Active Directory (Azure AD) can be assigned only one license.
a) Yes.
b) No.

338. To implement an Azure Multi-Factor Authentication (MFA) solution, you must sync on-premises identities to t
a) Yes.
b) No.

339. Two valid methods for Azure Multi-Factor Authentication (MFA) are picture identification and a passport num
a) Yes.
b) No.
340. You can configure the Azure Active Directory (Azure AD) activity logs to appear in Azure Monitor.
a) Yes.
b) No.

341. From Azure Monitor, you can monitor resources across multiple Azure subscriptions.
a) Yes.
b) No.

342. From Azure Monitor, you can create alerts.


a) Yes.
b) No.

343. You create a resource group named RG1 in Azure Resource Manager. You need to prevent the accidental dele
a) Quickstart.
b) Resource costs.
c) Deployments.
d) Policies.
e) Properties.
f) Locks.
g) Automation script.

344. You have a resource group named RG1. You need to prevent the creation of virtual machines only in RG1.
The solution must ensure that other objects can be created in RG1. What should you use?
a) A lock.
b) An Azure role.
c) A tag.
d) An Azure policy.

345. You have an Azure subscription and 100 Windows 10 devices. You need to ensure that only users whose devi
(Azure AD)-integrated applications. What should you implement?
a) A conditional access policy.
b) Azure Bastion.
c) Azure Firewall.
d) Azure Policy.

346. […] enables users to authenticate to multiple applications by using single sign-on (SSO).
a) Application security groups in Azure.
b) Azure Active Directory (Azure AD).
c) Azure Key Vault.
d) Azure Security Center.
347. You deploy an Azure resource. The resource becomes unavailable for an extended period due to a service ou
a) Refund your bank account.
b) Migrate the resource to another subscription.
c) Credit your Azure account.
d) Send you a coupon code that you can redeem for Azure credits.

348. Which task can you perform by using Azure Advisor?


a) Integrate Active Directory and Azure Active Directory (Azure AD).
b) Estimate the costs of an Azure solution.
c) Confirm that Azure subscription security follows best practices.
d) Evaluate which on-premises resources can be migrated to Azure.

349. If your company uses an Azure free account, you will only be able to use a subset of Azure services.
a) Yes.
b) No.

350. All Azure free accounts expire after a specific period.


a) Yes.
b) N0.

351. You can create up to 10 Azure free accounts by using the same Microsoft account.
a) Yes.
b) No.

352. All Azure services in private preview must be accessed by using a separate Azure portal.
a) Yes.
b) No.

353. Azure services in public preview can be used in production environments.


a) Yes.
b) No.

354. Azure services in public preview are subject to a Service Level Agreement (SLA).
a) Yes.
b) No.

355. A Standard support plan is included in an Azure free account.


a) Yes.
b) No.
356. Match the Azure services to the appropriate descriptions.
Extends on-premises networks to the Microsoft cloud via a private connection
a) VPN gateway.
b) ExpressRoute.
c) Virtual network peering.
Combines two or more Azure virtual networks into a single logical virtual network
a) ExpressRoute.
b) VPN gateway.
c) Virtual network peering.
Provides an encrypted connection from on-premises networks to Azure via a public network
a) Virtual network peering.
b) VPN gateway.
c) ExpressRoute.

Extends on-premises networks to the Microsoft cloud via a private connection


Combines two or more Azure virtual networks into a single logical virtual network
Provides an encrypted connection from on-premises networks to Azure via a public network

357. Support from MSDN forums is only provided to companies that have a pay-as-you-go subscription.
a) Yes.
b) No.

358. A user who is assigned the Owner role can transfer ownership of an Azure subscription.
a) Yes.
b) No.

359. You can convert the Azure subscription of your company from Free Trial to Pay-As-You-Go.
a) Yes.
b) No.

360. With Azure Reservations, you pay less for virtual machines than with pay-as-you-go pricing.
a) Yes.
b) No.

361. Two Azure virtual machines that use the B25 size have the same monthly costs.
a) Yes.
b) No.

362. When an Azure virtual machine is stopped, you continue to pay storage costs for the virtual machine.
a) Yes.
b) No.
363. How should you calculate the monthly uptime percentage? […] ÷ Maximum Available Minutes × 100.
a) Downtime in Minutes.
b) Maximum Available Minutes.
c) (Maximum Available Minutes Downtime in Minutes).

364. How should you calculate the monthly uptime percentage? (Maximum Available Minutes Downtime in Minu
a) Maximum Available Minutes.

365. How should you calculate the monthly uptime percentage?


(Maximum Available Minutes Downtime in Minutes) ÷ Maximum Available Minutes × […].
a) 99.99.
b) 1.440.

366. By creating additional resource groups in an Azure subscription, additional costs are incurred.
a) Yes.
b) No.

367. By copying several gigabits of data to Azure from an on-premises network over a VPN, additional data transf
a) Yes.
b) No.

368. An Azure service is available to all Azure customers when it is in […].


a) Public preview.
b) Private preview.
c) Development.
d) Development an Enterprise Agreement (EA) subscription.

369. Most Azure services are introduced in private preview before being introduced in public preview,
and then in general availability.
a) Yes.
b) No.

370. Azure services in public preview can be managed only by using the Azure CLI.
a) Yes.
b) No.

371. The cost of an Azure service in private preview decreases when the service becomes generally available.
a) Yes.
b) No.
372. Your Azure trial account expired last week. You are now unable to […].
a) Create additional Azure Active Directory (Azure AD) user accounts.
b) Start an existing Azure virtual machine.
c) Access your data stored in Azure.
d) Access the Azure portal.

373. Your company plans to purchase an Azure subscription. The company has support policy states that the Azu
phone or email. You need to recommend which support plan meets the support policy requirement. Solution
a) Yes.
b) No.

374. Your company has 10 departments. The company plans to implement an Azure environment. You need to e
Azure services it consumes. What should you create for each department?
a) A reservation.
b) A subscription.
c) A resource group.
d) A container instance.

375. An Azure free account has a spending limit.


a) Yes.
b) No.

376. An Azure free account has a limit of 2TB of data that can be uploaded to Azure.
a) Yes.
b) No.

377. An Azure free account can contain an unlimited number of web apps.
a) Yes.
b) No.

378. An Azure service in private preview is released to all Azure customers.


a) Yes.
b) No.

379. An Azure service in public preview is released to all Azure customers.


a) Yes.
b) No.

380. An Azure service in general availability is released to a subset of Azure customers.


a) Yes.
b) No.

381. With a consumption-based plan, you pay a fixed rate for all data sent to or from virtual machines hosted in t
a) Yes.
b) No.

382. With a consumption-based plan, you reduce overall costs by paying only for extra capacity when it is require
a) Yes.
b) No.

383. Serverless computing is an example of a consumption-based plan.


a) Yes.
b) No.

384. The cost of Azure resources can vary between regions.


a) Yes.
b) No.

385. An Azure Reservation is used to reserve server capacity at a specific data center.
a) Yes.
b) No.

386. You can stop an Azure SQL Database instance to decrease costs.
a) Yes.
b) No.

387. You have an application that is comprised of an Azure web app that has a Service Level Agreement (SLA) of 9
The composite SLA for the application is […].
a) The product of both SLAS, which equals 99.94 percent.
b) The lowest SLA associated to the application, which is 99.95 percent.
c) The highest SLA associated to the application, which is 99.99 percent.
d) The difference between the two SLAS, which is 0.05 percent.

388. The Service Level Agreement (SLA) guaranteed uptime for paid Azure services is at least 99.9 percent.
a) Yes.
b) No.

389. Companies can increase the Service Level Agreement (SLA) guaranteed uptime by adding Azure resources
to multiple regions.
a) Yes.
b) No.

390. Companies can increase the Service Level Agreement (SLA) guaranteed uptime by purchasing multiple subsc
a) Yes.
b) No.

391. Match the Azure Services service to the correct description.


A managed service that provides bidirectional communication between IoT devices and Azure
a) IoT Hub.
b) Azure Sphere.
c) IoT Central.
A fully managed software as a service (SaaS) solution to connect, monitor, and manage IoT devices at scale
a) IoT Hub.
b) Azure Sphere.
c) IoT Central.
A software and hardware solution that provides communication and security features for IoT devices
a) IoT Hub.
b) Azure Sphere.
c) IoT Central.

A managed service that provides bidirectional communication between IoT devices and Azure
A fully managed software as a service (SaaS) solution to connect, monitor, and manage IoT devices at scale
A software and hardware solution that provides communication and security features for IoT devices

392. You need to request that Microsoft increase a subscription quota limit for your company. Which blade shou
a) Create a resource.
b) All services.
c) Favorites.
d) Dashboard.
e) All resources.
f) Resource groups.
g) App Services.
h) Function Apps.
i) SQL databases.
j) Azure Cosmos DB.
k) Virtual machines.
l) Load balancers.
m) Help + support.

393. You can use in Azure to send email alerts when the cost of the current billing period for an Azure subscriptio
a) Advisor recommendations.
b) Access control (IAM).
c) Budget alerts.
d) Compliance.

394. From the Azure portal, you can distinguish between services that are generally available and services
that are in public preview.
a) Yes.
b) No.

395. After an Azure service becomes generally available, the service is no longer updated with new features.
a) Yes.
b) No.

396. When you create Azure resources for a service in public preview, you must recreate the resources once the
a) Yes.
b) No.

397. When using an Azure ExpressRoute connection, inbound data traffic from an on-premises network
to Azure is always free.
a) Yes.
b) No.

398. Outbound data traffic from Azure to an on-premises network is always free.
a) Yes.
b) No.

399. Data traffic between Azure services within the same Azure region is always free.
a) Yes.
b) No.

400. Your company has an Azure subscription that contains the following unused resources
a) The network interfaces.
b) The public IP addresses.
c) The groups.
d) The user accounts.

401. If an Azure virtual machine has a status of Stopped (deallocated), you will continue to pay for.
a) Compute capacity.
b) I/O operations.
c) Networking.
d) Storage.
402. Storing 1 TB of data in Azure Blob storage will always cost the same, regardless of the Azure region in which
a) Yes.
b) No.

403. When you use a general-purpose v2 Azure Storage account,


you are only charged for the amount of data that is stored. All read and write operations are free.
a) Yes.
b) No.

404. Transferring data between Azure Storage accounts in different Azure regions is free.
a) Yes.
b) No.

405. In Azure Active Directory Premium P2, at least 99.9 percent availability is guaranteed.
a) Yes.
b) No.

406. The Service Level Agreement (SLA) for Azure Active Directory Premium P2 is the same as the
SLA for Azure Active Directory Free.
a) Yes.
b) No.

407. All paying Azure customers receive a credit if their monthly uptime percentage is below the
guaranteed amount in the Service Level Agreement (SLA).
a) Yes.
b) No.

408. Adding resource groups in an Azure subscription generates additional costs.


a) Yes.
b) No.

409. Copying 10 GB of data to Azure from an on-premises network over a VPN generates
additional Azure data transfer costs.
a) Yes.
b) No.

410. Copying 10 GB of data from Azure to an on-premises network over a VPN generates additional Azure data t
a) Yes.
b) No.
411. Each Azure subscription can contain multiple account administrators.
a) Yes.
b) No.

412. Each Azure subscription can be managed by using a Microsoft account only.
a) Yes.
b) No.

413. An Azure resource group contains multiple Azure subscriptions.


a) Yes.
b) No.

414. Data that is stored in the Archive access tier of an Azure Storage account […].
a) Can be accessed at any time by using azcopy.exe.
b) Can only be read by using Azure Backup.
c) Must be restored before the data can be accessed.
d) Must be rehydrated before the data can be accessed.

415. You deploy an Azure resource. The resource becomes unavailable for an extended period due to a service o
bank account].
a) No change is needed.
b) Automatically migrate the resource to another subscription.
c) Automatically credit your account.
d) Send you a coupon code that you can redeem for Azure credits.

416. When you need to delegate permissions to several Azure virtual machines simultaneously, you must deplo
region].
a) No change is needed.
b) By using the same Azure Resource Manager template.
c) To the same resource group.
d) To the same availability zone.

417. Azure Cosmos DB is an example of a […] offering.


a) Platform as a Service (PaaS).
b) Infrastructure as a service (IaaS).
c) Serverless.
d) Software as a service (SaaS).

418. The Microsoft Service Trust Portal can be accessed by using a Microsoft cloud services account.
a) Yes.
b) No.

419. Compliance Manager can be used to track your company regulatory compliance activities related to Micros
a) Yes.
b) No.

420. The My Library feature can be used to save Microsoft Service Trust Portal documents and resources in a sin
a) Yes.
b) No.

421. Your company plans to migrate all its data and resources to Azure. The company migration plan states that
used in Azure. You need to deploy an Azure environment that supports the planned migration. Solution
a) Yes.
b) No.

422. Data that is stored in the Archive access tier of an Azure Storage account [can be accessed at any time by u
a) No change is needed.
b) Can only be read by using Azure Backup.
c) Must be restored before the data can be accessed.
d) Must be rehydrated before the data can be accessed.

423. To implement a hybrid cloud model, a company must always migrate from a private cloud model.
a) Yes.
b) No.

424. A company can extend the computing resources of its internal network by using the public cloud.
a) Yes.
b) No.

425. Azure DevOps Services allows developers to deploy or update applications to Azure using Continuous Integ
a) Yes.
b) No.

426. Azure DevOps Services includes a Git repository for developers to store code.
a) Yes.
b) No.

427. Azure DevOps Services can be used to build and host web apps.
a) Yes.
b) No.

428. You plan to deploy 20 virtual machines to an Azure environment. To ensure that a virtual machine named V
VM1 must [be deployed to a separate virtual network].
a) No change is needed.
b) Run a different operating system than the other virtual machines.
c) Be deployed to a separate resource group.
d) Have two network interfaces.

429. You plan to extend your company network to Azure. The network contains a VPN appliance that uses an IP
Azure resource that identifies the VPN appliance. Which Azure resource should you create?
a) Virtual networks.
b) Load balancers.
c) Virtual networks gateways.
d) DNS zones.
e) Traffic Manager profiles.
f) Network Watcher.
g) Virtual networks (classic).
h) Application gateways.
i) Local network gateways.
j) CDN profiles.
k) ExpressRoute circuits.
l) Network security groups.

430. You have several virtual machines in an Azure subscription. You create a new subscription. [The virtual mac
a) No change is needed.
b) The virtual machines can be moved to the new subscription.
c) The virtual machines can be moved to the new subscription only if they are all in the same resource group.
d) The virtual machines can be moved to the new subscription only if they run Windows Server 2016.

431. […] is the process of verifying a user credentials.


a) Authorization.
b) Authentication.
c) Federation.
d) Ticketing.

432. If a resource group named RG1 has a delete lock, […] can delete RG1.
a) Only a member of the global administrators group.
b) The delete lock must be removed before an administrator.
c) An Azure policy must be modified before an administrator.
d) An Azure tag must be added before an administrator.

433. A Platform as a Service (PaaS) solution that hosts web apps in Azure provides full control of the operating
a) Yes.
b) No.

434. A Platform as a Service (PaaS) solution that hosts web apps in Azure can be provided
with additional memory by changing the pricing tier.
a) Yes.
b) No.

435. A Platform as a Service (PaaS) solution that hosts web apps in Azure can be configured to automatically sc
a) Yes.
b) No.

436. You have an Azure environment. You need to create a new Azure virtual machine from an
Android laptop. Solution
a) Yes.
b) No.

437. You plan to deploy 20 virtual machines to an Azure environment.


To ensure that a virtual machine named VM1 cannot connect to the other virtual machines, VM1 must […].
a) Be deployed to a separate virtual network.
b) Run a different operating system than the other virtual machines.
c) Be deployed to a separate resource group.
d) Have two network interfaces.

438. From Azure Service Health, an administrator can view the health of all the services deployed to an Azure e
Azure.
a) Yes.
b) No.

439. Match the Azure Services service to the correct descriptions.


Analyze security log files from Azure virtual machines
a) Azure Security Center.
b) Azure Sentinel.
c) Azure Lighthouse.
Display the secure score for an Azure subscription
a) Azure Key Vault.
b) Azure Lighthouse.
c) Azure Security Center.
Store passwords for use by Azure Function applications
a) Azure Key Vault.
b) Azure Active Directory (Azure AD).
c) Azure Security Center.
Analyze security log files from Azure virtual machines
Display the secure score for an Azure subscription
Store passwords for use by Azure Function applications

440. [Azure policies provide] a common platform for deploying objects to a cloud infrastructure and for implem
a) No change is needed.
b) Resource groups provide.
c) Azure Resource Manager provides.
d) Management groups provide.

441. All the Azure resources deployed to a single resource group must share the same Azure region.
a) Yes.
b) No.

442. If you set permissions to a resource group, all the Azure resources in that resource group inherit the perm
a) Yes.
b) No.

443. If you create two Azure virtual machines that use the B2S size, each virtual machine will always generate t
a) Yes.
b) No.

444. When an Azure virtual machine is stopped, you continue to pay storage costs associated to the virtual ma
a) Yes.
b) No.

445. An Azure Policy initiative is a […].


a) Collection of policy definitions.
b) Collection of Azure Policy definition assignments.
c) Group of Azure Blueprints definitions.
d) Group of rolebased access control (RBAC) role assignments.

446. Your company has a Software Assurance agreement that includes Microsoft SQL Server licenses. You plan
should you do to minimize licensing costs for the deployment?
a) Use Azure Reservations.
b) Use Azure Hybrid Benefit.
c) Deallocate the virtual machines during off hours.
d) Configure Azure Cost Management budgets.

447. If your company uses an Azure free account you can only deploy Azure virtual machines and Azure storag
a) Yes.
b) No.

448. You have an Azure environment. You need to create a new Azure virtual machine from an Android laptop
a) Yes.
b) No.

449. You need to create a new Azure virtual machine from an Android laptop. Solution
a) Yes.
b) No.

450. Which Azure service should you use to correlate events from multiple resources into a centralized reposit
a) Azure Event Hubs.
b) Azure Analysis Services.
c) Azure Monitor.
d) Azure Log Analytics.

451. When planning to migrate a public website to Azure, you must plan to [pay monthly usage costs].
a) No change is needed.
b) Deploy a VPN.
c) Pay to transfer all the website data to Azure.
d) Reduce the number of connections to the website.

452. When you are implementing a Software as a Service (SaaS) solution, you are responsible for [configuring
a) No change is needed.
b) Defining scalability rules.
c) Installing the SaaS solution.
d) Configuring the SaaS solution.

453. Azure provides flexibility between capital expenditure (CapEx) and operational expenditure (OpEx).
a) Yes.
b) No.

454. Your company plans to deploy an Artificial Intelligence (AI) solution in Azure. What should the company
solutions?
a) Azure Logic Apps.
b) Azure Machine Learning Designer.
c) Azure Batch.
d) Azure Cosmos DB.

455. Your company plans to purchase Azure. The company support policy states that the Azure environment
phone or email. You need to recommend which support plan meets the support policy requirement. Solution
a) Yes.
b) No.

456. You have an Azure environment that contains 10 web apps. To which URL should you connect [1] to man
a) admin.
b) portal.
c) www.

457. You have an Azure environment that contains 10 web apps. To which URL should you connect [2] to man
a) azure.
b) azurewebsites.
c) microsoft.

458. You plan to create an Azure virtual machine. You need to identify which storage service must be used to
should you identify?
a) Blobs (RESTbased object storage for unstructured data).
b) Files (File shares that use the standard rd SMB 3.0 protocol).
c) Tables (Tabular data storage).
d) Queues (Effectively scale apps according to traffic).

459. You have an Azure environment. You need to create a new Azure virtual machine from an Android lapto
a) Yes.
b) No.

460. To implement an Azure MultiFactor Authentication (MFA) solution, you must deploy a federation solutio
a) Yes.
b) No.

461. Azure MultiFactor Authentication (MFA) can be required for administrative and nonadministrative user a
a) Yes.
b) No.

462. You need to view a list of planned maintenance events that can affect the availability of an Azure subscri
portal?
a) Dashboard.
b) All resources.
c) Resource groups.
d) App Services.
e) Function Apps.
f) SQL databases.
g) Azure Cosmos DB.
h) Virtual machines.
i) Load balancers.
j) Storage accounts.
k) Virtual networks.
l) Azure Active Directory.
m) Monitor.
n) Advisor.
o) Security Center.
p) Help + support.

463. A company can extend the capacity of its internal network by using the public cloud.
a) Yes.
b) No.

464. You plan to deploy several Azure virtual machines. You need to ensure that the services running on the v
fails. Solution
a) Yes.
b) No.

465. […] a common platform for deploying objects to a cloud infrastructure and for implementing consistency
a) Azure policies provide.
b) Resource groups provide.
c) Azure Resource Manager templates provide.
d) Management groups provide.

466. Which cloud deployment solution is used for Azure virtual machines and Azure SQL databases?
a) Infrastructure as a service (IaaS).
b) Platform as a service (PaaS).
c) Software as a service (SaaS).

467. When planning to migrate a public website to Azure, you must plan to […].
a) Deploy a VPN.
b) Pay monthly usage costs.
c) Pay to transfer all the website data to Azure.
d) Reduce the number of connections to the website.

468. Azure PayAsYouGo pricing is an example of CapEx.


a) Yes.
b) No.

469. Azure Reserved VM Instances are an example of OpEx.


a) Yes.
b) No.

470. Deploying your own datacenter is an example of CapEx.


a) Yes.
b) No.

471. A company can extend a private cloud by adding its physical servers to the public cloud.
a) Yes.
b) No.

472. To build a hybrid cloud, you must deploy resources to the public cloud.
a) Yes.
b) No.

473. A private cloud must be disconnected from the internet.


a) Yes.
b) No.

474. You plan to deploy several Azure virtual machines. You need to ensure that the services running on the v
fails. Solution
a) Yes.
b) No.

475. You plan to deploy several Azure virtual machines. You need to ensure that the services running on the v
fails. Solution
a) Yes.
b) No.

476. When you are implementing a Software as a Service (SaaS) solution, you are responsible for […].
a) Configuring high availability.
b) Defining scalability rules.
c) Installing the Saas solution.
d) Configuring the SaaS solution.
477. You plan to deploy several Azure virtual machines. You need to ensure that the services running on the v
fails. Solution
a) Yes.
b) No.

478. Azure resources can only access other resources in the same resource group.
a) Yes.
b) No.

479. If you delete a resource group, all the resources in the resource group will be deleted.
a) Yes.
b) No.

480. A resource group can contain resources from multiple Azure regions.
a) Yes.
b) No.

481. Data that is copied to an Azure Storage account is maintained automatically in at least three copies.
a) Yes.
b) No.

482. Your company has an onpremises network that contains multiple servers. The company plans to reduce
network administrators
a) Replacing failed server hardware.
b) Backing up application data.
c) Managing physical server security.
d) Updating server operating systems.
e) Managing permissions to shared documents.

483. Azure Cosmos DB is an example of a [Platform as a Service (PaaS)] offering.


a) No change is needed.
b) Infrastructure as a service (IaaS).
c) Serverless.
d) Software as a service (SaaS).

484. [Authorization] is the process of verifying a user credentials.


a) No change is needed.
b) Authentication.
c) Federation.
d) Ticketing.

485. You plan to migrate several servers from an onpremises network to Azure. You need to identify the prim
servers. What should you identify?
a) The public cloud is owned by the public, NOT a private corporation.
b) All public cloud resources can be freely accessed by every member of the public.
c) The public cloud is a crowdsourcing solution that provides corporations with the ability to enhance the clo
d) The public cloud is a shared entity whereby multiple corporations each use a portion of the resources in th

You might also like