Microsoft Certified:Azure Security Engineer Associate
Domain 2Objective 1
Plan and Implement Security for Virtual Networks AZ-500 Practice Questions (Page 2)
Part of the Secure networking domain, which accounts for 20–25% of the AZ-500 exam. Microsoft does not publish an official question count, but from its 100-minute exam (~40–65 total, ~8–16 in this domain), expect 3–5 from this objective — we provide 35 practice questions to prepare you well beyond it. (estimate)
35questions here
7free pages
11concepts
20–25%of the exam
Questions 6–10
- 6
In an NSG rule, how do you specify an Application Security Group as the destination?
Select an answer first - 7
Which of the following is a requirement for establishing virtual network peering?
Select an answer first - 8
You have an Azure Firewall in a hub VNet. You need to allow outbound HTTPS traffic from a specific subnet to a specific FQDN, but deny all other outbound traffic from that subnet. What should you configure?
Select an answer first - 9
What is the primary purpose of virtual network peering?
Select an answer first - 10
You have a hub-and-spoke topology with Azure Firewall in the hub. You need to ensure that traffic between two spoke VNets (Spoke-A and Spoke-B) is inspected by the firewall. You have already peered both spokes to the hub. What else must you configure?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Microsoft. “AZ-500” is a trademark of its owner, used for identification only.