Microsoft Certified:Azure Security Engineer Associate
Domain 3Objective 2
Plan and Implement Security for Storage AZ-500 Practice Questions (Page 8)
Part of the Secure compute, storage, and databases domain, which accounts for 20–25% of the AZ-500 exam. Microsoft does not publish an official question count, but from its 100-minute exam (~40–65 total, ~8–16 in this domain), expect 3–5 from this objective — we provide 37 practice questions to prepare you well beyond it. (estimate)
37questions here
8free pages
7concepts
20–25%of the exam
Questions 36–37
- 36
A company has a storage account that hosts a legacy application. The application uses the account key to access blobs. The security team wants to move to Azure AD authentication, but the application vendor has stated that the application only supports connection strings with account keys. The application runs on an Azure VM. You need to minimize the risk of key compromise while keeping the application functional. What should you do?
Select an answer first - 37
A company has an Azure Storage account with a container that stores sensitive reports. The reports are accessed by a legacy application that only supports shared key authentication. The security team wants to restrict access to a specific IP range and also wants to rotate the account key every 30 days. The application team is concerned about downtime during key rotation. What should you recommend?
Select an answer first
Finished these 2 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to AZ-500
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Microsoft. “AZ-500” is a trademark of its owner, used for identification only.