Microsoft Certified:Azure Security Engineer Associate
Domain 3Objective 1
Plan and Implement Advanced Security for Compute AZ-500 Practice Questions (Page 8)
Part of the Secure compute, storage, and databases domain, which accounts for 20–25% of the AZ-500 exam. Microsoft does not publish an official question count, but from its 100-minute exam (~40–65 total, ~8–16 in this domain), expect 3–5 from this objective — we provide 39 practice questions to prepare you well beyond it. (estimate)
39questions here
8free pages
10concepts
20–25%of the exam
Questions 36–39
- 36
Which Azure Security Center / Microsoft Defender for Cloud feature allows you to temporarily open specific ports on a VM for a limited time when a user requests access?
Select an answer first - 37
Your company has a virtual machine that hosts a custom application. The application writes temporary files to the OS disk. You need to encrypt the OS disk and the temp files at rest, and you want to use a customer-managed key stored in Azure Key Vault. The VM is running Windows. What should you do?
Select an answer first - 38
Your team uses Azure Container Registry (ACR) to store images for Azure Container Instances. You need to ensure that only the CI/CD pipeline's service principal can push images, while developers can only pull images. You also want to block all public network access to the registry. What should you configure?
Select an answer first - 39
What is the main security benefit of enabling just-in-time (JIT) VM access for Azure virtual machines?
Select an answer first
Finished these 4 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to AZ-500
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Microsoft. “AZ-500” is a trademark of its owner, used for identification only.