Microsoft Certified:Cybersecurity Architect Expert
Domain 1Objective 2
Design Solutions That Align with the Microsoft Cybersecurity Reference Architectures (MCRA) and Microsoft Cloud Security Benchmark (MCSB) SC-100 Practice Questions (Page 7)
Part of the Design solutions that align with security best practices and priorities domain, which accounts for 20–25% of the SC-100 exam. Microsoft does not publish an official question count, but from its 120-minute exam (~50–80 total, ~10–20 in this domain), expect 3–7 from this objective — we provide 42 practice questions to prepare you well beyond it. (estimate)
42questions here
9free pages
6concepts
20–25%of the exam
Questions 31–35
- 31
A software company develops a web application that uses several open-source libraries and a third-party CI/CD pipeline. The security architect is aligning with the MCRA supply chain attack mitigation guidance. The company wants to ensure that only vetted code is deployed to production. Which control should the architect implement?
Select an answer first - 32
A university is implementing a Zero Trust strategy aligned with the MCRA. The security architect must design a solution that protects research data accessed by faculty, students, and external collaborators. The university wants to enforce least privilege and continuously verify access. Which approach should the architect recommend?
Select an answer first - 33
A retail company is adopting a Zero Trust model and wants to align with the MCRA. The company has a mix of cloud and on-premises resources. The security architect needs to implement a solution that provides a unified view of user risk across all resources. Which approach aligns with the Zero Trust adoption framework?
Select an answer first - 34
How does the Zero Trust adoption framework influence the design of a security solution according to the MCRA?
Select an answer first - 35
A software company is developing a new application that uses several open-source libraries and third-party APIs. The security architect must design a solution aligned with the MCRA to protect the software supply chain. The company wants to automate the detection of vulnerabilities and ensure that only approved code is deployed. Which approach should the architect recommend?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Microsoft. “SC-100” is a trademark of its owner, used for identification only.