Microsoft Certified:Azure Security Engineer Associate
Domain 4Objective 1
Implement and Manage Enforcement of Cloud Governance Policies AZ-500 Practice Questions (Page 1)
Part of the Secure Azure using Microsoft Defender for Cloud and Microsoft Sentinel domain, which accounts for 30–35% of the AZ-500 exam. Microsoft does not publish an official question count, but from its 100-minute exam (~40–65 total, ~12–23 in this domain), expect 3–6 from this objective — we provide 47 practice questions to prepare you well beyond it. (estimate)
47questions here
10free pages
15concepts
30–35%of the exam
Questions 1–5
- 1
You need to protect the backup blobs of Key Vault items from unauthorized access. Which security control should you implement?
Select an answer first - 2
You need to assign an Azure Policy to enforce a governance rule for all resources in a specific resource group. Which scope should you specify in the assignment?
Select an answer first - 3
You need to configure automatic rotation for a key in Azure Key Vault. What should you define?
Select an answer first - 4
You need to create a new RSA key in Azure Key Vault for use in encryption. Which operation should you perform?
Select an answer first - 5
A security admin needs to back up a Key Vault secret to protect against accidental deletion. They plan to restore it later if needed. What should they do?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Microsoft. “AZ-500” is a trademark of its owner, used for identification only.