Topic 4: Mix Questions
You have an Azure subscription named Sub1 that contains the resources shown in the
following table.
You need to enable Microsoft Defender for Cloud for storage accounts and virtual
machines.
At which levels can you enable Defender for Cloud for the storage accounts and the virtual
machines? To answer, select the appropriate options in the answer area
NOTE: Each correct selection is worth one point
You have an Azure subscription and the computers shown in the following table.
You need to perform a vulnerability scan of the computers by using Microsoft Defender for
Cloud. Which computers can you scan?
A. VM1 only
B. VM1 and VM2 only
C. Server1 and VMSS1.0 only
D. VM1, VM2, and Server1 only
E. VM1, VM2, Server1, and VMSS1.0
You have an Azure subscription that contains the virtual machines shown in the following
table.
Answer: see the answer below in explanation.
You have an on-premises server named Server1.
You have an Azure subscription that contains a Microsoft Sentinel workspace named
Sentinel 1.
You install the Windows Firewall solution in Sentinel1.
You need to use Microsoft Sentinel to monitor Windows Defender Firewall on Server1.
What should you install on Server1, and what should you create in the Azure subscription?
To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
You have an Azure subscription that contains the Azure Active Directory (Azure AD)
resources shown in the following table.
Which resources can you add to Group5 and Group6? To answer, select the appropriate
options in the answer area.
NOTE: Each correct selection is worth one point.
You have an Azure Subscription that is connected to an on-premises datacenter and
contains the resources shown in the following table.
You need to configure virtual network service endpoints for VNet1 and VNet2. The solution
must meet the following requirements:
• The virtual machines that connect to the subnet of VNet1 must access storage1,
storage2, and Azure AD by using the Microsoft backbone network.
• The virtual machines that connect to the subnet of VNet2 must access storage1 and
KeyVault1 by using the Microsoft backbone network.
• The virtual machines must use the Microsoft backbone network to communicate between
VNet1 and VNet2.
How many service endpoints should you configure for each virtual network? To answer,
select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
You have an Azure App Service web app named App1 as shown in the following exhibit.
Subnet 2 contains a virtual machine named VM1.
Use the drop-down menus to select the answer choice that completes each statement
based on the information presented in the graphic
NOTE: Each correct selection is worth one point.
You have a Microsoft Entra tenant named contoso.com.
You collaborate with a partner organization that has a Microsoft Entra tenant named
fabrikam.com. Fabrikam.com has multi-factor authentication (MFA) enabled for all users.
Contoso.com has the Cross-tenant access settings configured as shown in the Crosstenant
access settings exhibit. (Click the Cross-tenant access settings:
You create a Conditional Access policy that has the following settings:
• Name: CAPolicy1
• Assignments
o Guest or external users: B2B collaboration guest users
o Target resources
Include: All cloud apps o Access controls
Grant access
Require device to be marked as compliant
Require multi-factor authentication
Enable policy: On
For each of the following statements, select Yes if the statement is true, otherwise select
No.
NOTE: Each correct section is worth one point.
You have an Azure subscription that contains 100 virtual machines. Azure Diagnostics is
enabled on all the virtual machines.
You are planning the monitoring of Azure services in the subscription.
You need to retrieve the following details:
Identify the user who deleted a virtual machine three weeks ago.
Query the security events of a virtual machine that runs Windows Server 2016.
What should you use in Azure Monitor? To answer, drag the appropriate configuration
settings to the correct details. Each configuration setting may be used once, more than
once, or not at all. You may need to drag the split bar between panes or scroll to view
content.
NOTE: Each correct selection is worth one point.
You have two Azure subscriptions named Sub1 and Sub2. Sub1 contains a resource group
named RG1 and an Azure policy named Policy1.
You need to remediate the non-compliant resources in Sub1 based on Policy1.
How should you complete the PowerShell script? To answer, drag the appropriate values
to the correct targets. Each value may be used once, more than once,
or not at all. You may need to drag the split bar between panes or scroll to view content.
NOTE: Each correct selection is worth one point.
| Page 13 out of 50 Pages |