Microsoft Certified:Cybersecurity Architect Expert
Domain 1Objective 3
Design Solutions That Align with the Microsoft Cloud Adoption Framework for Azure (CAF) and the Azure Well-Architected Framework SC-100 Practice Questions (Page 5)
Part of the Design solutions that align with security best practices and priorities domain, which accounts for 20–25% of the SC-100 exam. Microsoft does not publish an official question count, but from its 120-minute exam (~50–80 total, ~10–20 in this domain), expect 3–7 from this objective — we provide 41 practice questions to prepare you well beyond it. (estimate)
41questions here
9free pages
7concepts
20–25%of the exam
Questions 21–25
- 21
Which Azure service is commonly recommended by the Microsoft Cloud Adoption Framework for centralizing security monitoring and threat detection?
Select an answer first - 22
A multinational company is migrating its first workloads to Azure. The security team has drafted a governance strategy that assigns a single subscription for all production workloads and relies on network security groups (NSGs) at the subnet level for segmentation. The company plans to expand to multiple business units over the next year. Which CAF-aligned recommendation should the security architect make?
Select an answer first - 23
A company is implementing an Azure landing zone for a regulated industry. The security architect must ensure that all resources are compliant with industry regulations, but the business units have different compliance requirements. The architect needs to balance centralized compliance with business unit autonomy. Which approach should the architect recommend?
Select an answer first - 24
A security architect is evaluating an existing workload that uses Azure Kubernetes Service (AKS). The workload is mission-critical and requires high availability. The current design uses a single node pool in a single availability zone. The architect is reviewing the design against the Azure Well-Architected Framework. Which recommendation should the architect make?
Select an answer first - 25
A company is deploying a new application using a CI/CD pipeline. The security architect is reviewing the workload against the Azure Well-Architected Framework. The team wants to ensure that security vulnerabilities are identified early in the development process. Which practice should the architect recommend?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Microsoft. “SC-100” is a trademark of its owner, used for identification only.