Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
Microsoft logo

Microsoft Certified:Azure Security Engineer Associate

Domain 4Objective 2

Manage Security Posture by Using Microsoft Defender for Cloud AZ-500 Practice Questions (Page 8)

Part of the Secure Azure using Microsoft Defender for Cloud and Microsoft Sentinel domain, which accounts for 30–35% of the AZ-500 exam. Microsoft does not publish an official question count, but from its 100-minute exam (~40–65 total, ~12–23 in this domain), expect 3–6 from this objective — we provide 47 practice questions to prepare you well beyond it. (estimate)

47questions here
10free pages
9concepts
30–35%of the exam

Questions 36–40

  1. 36expert · hard

    Your security team is overwhelmed by the number of recommendations in Defender for Cloud. You need to prioritize remediation efforts to improve the Secure Score most efficiently, but you also need to ensure that critical vulnerabilities are addressed first. What should you do?

    Select an answer first
  2. 37application · medium

    Your security team has a policy that all high-severity recommendations must be remediated within 30 days. You have a recommendation 'SQL databases should have vulnerability findings resolved' that affects 20 SQL databases. You have already remediated 15 of them, but the Secure Score has not changed. What is the most likely reason?

    Select an answer first
  3. 38foundation · easy

    In Microsoft Defender for Cloud, what is the purpose of the 'Remediate' action on a security recommendation?

    Select an answer first
  4. 39application · medium

    A company has an on-premises Hyper-V environment with 50 servers that they want to monitor in Microsoft Defender for Cloud. They have already installed Azure Arc on all servers and connected them to Azure. The servers appear in the Inventory, but they are not contributing to the Secure Score. What should the administrator do first?

    Select an answer first
  5. 40application · medium

    Your organization has discovered that an unknown subdomain of your main domain is hosting a phishing page. You want to use Microsoft Defender External Attack Surface Management (EASM) to proactively identify such assets. What should you configure in EASM to ensure this subdomain is discovered?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Microsoft. “AZ-500” is a trademark of its owner, used for identification only.