Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
Microsoft logo

Microsoft Certified:Cybersecurity Architect Expert

Domain 1Objective 2

Design Solutions That Align with the Microsoft Cybersecurity Reference Architectures (MCRA) and Microsoft Cloud Security Benchmark (MCSB) SC-100 Practice Questions (Page 2)

Part of the Design solutions that align with security best practices and priorities domain, which accounts for 20–25% of the SC-100 exam. Microsoft does not publish an official question count, but from its 120-minute exam (~50–80 total, ~10–20 in this domain), expect 3–7 from this objective — we provide 42 practice questions to prepare you well beyond it. (estimate)

42questions here
9free pages
6concepts
20–25%of the exam

Questions 6–10

  1. 6application · medium

    A technology company is building a new application that will be deployed using containers and managed through a CI/CD pipeline. The security architect must design a solution aligned with the MCRA to protect the application from supply chain attacks. The company wants to ensure that only trusted container images are deployed. Which approach should the architect recommend?

    Select an answer first
  2. 7expert · hard

    A research organization is deploying an AI model that uses sensitive research data. The security architect must align with the Microsoft Cloud Security Benchmark (MCSB). The organization has a requirement to ensure that the AI model's outputs are not biased and that the data is protected. Which combination of MCSB controls should be applied?

    Select an answer first
  3. 8expert · hard

    A healthcare organization is implementing a security strategy aligned with the MCRA. The security architect must design a solution that protects patient data from both external attacks and insider threats. The organization has a limited security team and wants to automate as much as possible. Which approach should the architect recommend?

    Select an answer first
  4. 9expert · hard

    A software company uses a third-party CI/CD pipeline that has been compromised in the past. The security architect is aligning with the MCRA supply chain attack mitigation guidance. The company wants to ensure that only code reviewed and approved by security is deployed. Which control should be implemented to enforce this requirement?

    Select an answer first
  5. 10application · medium

    A technology company is designing a defense-in-depth strategy against external attacks, aligned with the MCRA. The company has a public-facing web application and uses Azure AD for authentication. The architect wants to implement controls at multiple layers. Which combination of controls best aligns with MCRA external attack defense?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Microsoft. “SC-100” is a trademark of its owner, used for identification only.