AZ-900 Practice Test 4 - Q1-55 - NEW
A company is planning on setting up a solution on the Azure Platform. The solution has the following main key requirements: + Be able to collect events from multiple sources and then relay them to an application. Which of the following would be best suited for this requirement? A. Azure Event Grid B. Azure DevOps C. Azure Kubernetes D. Azure DevTest Labs
A. Azure Event Grid. Use Event Grid to power your event-driven and serverless apps.
You are planning on deploying an Azure virtual machine. Which of the following storage service is used to store the data disks for the virtual machine? A. Blob B. Files C. Tables D. Queues
A Blob, the data disks are stored in the Blob service of Azure storage accounts.
A company is currently planning on setting up resources as part of their Azure subscription. They are looking at different security options that can be used to secure their Azure environment. Which of the following could be used for the following requirement? "Provide a store that can be used to secure store secrets" A. Azure Key Vault B. Azure Network Security Groups C. Azure Multi-Factor Authentication D. Azure DDoS Protection
A. Azure Key Vault, helps solve the following problems: Secrets Management, Key Management, Certificate Management, Store secrets backed by Hardware Security Models.
A company has just setup an Azure subscription and an Azure tenant. They want to implement strict policies when it comes to the security of Azure resources. They want to implement the following requirements: +Ensure that the Virtual Machine Administrator team can only deploy virtual machines of a particular size. +Ensure that the Virtual Machine Administrator team can only deploy virtual machines and their dependent resources. +Ensure that no one can accidentally delete the virtual machines deployed by the Virtual Machine Administrator team. Which of the following could be used to fulfill the below requirement? *Ensure that the Virtual Machine Administrator team can only deploy virtual machines and their dependent resources" A. Azure Role-Based Access Control B. Azure Identity Protection C. Azure Policies D. Azure Locks
A. Azure Role-Based Access Control, RBAC helps you manage who has access ti Azure resources, what they can do with those resources, and what areas they have access to. RBAC is an authorization system built on Azure Resource Manager that provides fine-grained access management of Azure resources..
A company wants to start using Azure services. They have several departments that would need to make use of Azure services. They want to give the ability for each department to use a different payment option for the amount of Azure services they consume. Which of the following should each department use to fulfill this requirement? A. A resource group B. A subscription C. An Azure policy D. A reservation
B. A subscription, the billing for Azure resources is tagged to a subscription. Hence to segregate the billing for each department, each of them can have a different subscription.
A company has just started using Azure. They have just acquired a subscription and created an Azure tenant. Where do they have to go to create users and groups for their Azure AD tenant? A. App Services B. Azure Active Directory C. Advisor D. Cost Management + Billing
B. Azure Active Directory, you can create users and groups in Azure Active Directory.
A company is planning on setting up a solution on the Azure platform. The solution has the following main key requirement: +Provide a continuous Integration and Delivery toolset that could work with a variety of languages. Which of the following would be best suited for this requirement? A. Azure Event Grid B. Azure DevOps C. Azure Kubernetes D. Azure DevTest Labs
B. Azure DevOps, Use all of the DevOps services or choose jsut what you need to complement your existing workflows.
A company is currently planning on setting up resources as part of their Azure subscription. They are looking at different security options that can be used to secure their Azure environment. Which of the following could be used for the following requirement? *Provide the ability to restrict traffic into Azure virtual machines* A. Azure Key Vault B. Azure Network Security Groups C. Azure Multi-Factor Authentication D. Azure DDoS Protection
B. Azure Network Security Groups, A network security group contains security rules that allow or deny inbound network traffic to, or outbound network traffic from, several types of Azure resources.
A company has just setup an Azure subscription and an Azure tenant. They want to start deploying resources on the Azure platform. They want to implement a way to logically group the resources. Which of the following could be used for this requirement? A. Availability Zones B. Azure Resource Groups C. Azure Resource Manager D. Azure Regions
B. Azure Resource Groups, A resource group is simply a logical construct that groups multiple resources together so they can be managed as a single entity.
A company is planning on moving some of their on-premise resources to Azure. They have to provide a business justification for moving to Azure. They have to classify expenses as part of the business justification. Which category would the following expenses come under? "New On-premise performance cluster to host a Big Data solution" A. Primary Expenditure B. Capital Expenditure C. Secondary Expenditure D. Operating Expenditure
B. Capital Expenditure, capital expenses are driven by refresh cycles or datacenter expansion.
A company has just setup an Azure subscription and an Azure tenant. Which of the following can the company use to create an Azure support request? A. The Knowledge Center B. The Azure Portal C. Support.microsoft.com D. The Security and Compliance admin center
B. The Azure Portal, you can create a request in the Azure portal.
You are trying to understand the different cloud models. Which of the following are advantages of using the hybrid cloud model? Choose 2 from below. A. Better Control B. Higher costs C. More Flexibility D. Less Maintenance
Better control and more flexibility.
You are trying to understand the different cloud models. Which of the following are advantages of using the private cloud? Choose 2 from below. A. Less Flexibility B. Better security C. High scalability D. Less costs
Better security and high scalability.
A company is planning on setting up a solution on the Azure platform. The solution has the following main key requirement: +Provide a managed toolset that could be used to manage a scale and container-based applications. Which of the following would be best suited for this requirement? A. Azure Event Grid B. Azure DevOps C. Azure Kubernetes D. Azure DevTest Labs
C. Azure Kubernetes, AKS makes deploying and managing containerized applications easy.
A company is currently planning on setting up resources as part of their Azure subscription. They are looking at different security options that can be used to secure their Azure environment. Which of the following could be used for the following requirement? "Provide an extra level of security when users log into the Azure Portal* A. Azure Key Vault B. Azure Network Security Groups C. Azure Multi-Factor Authentication D. Azure DDoS Protection
C. Azure Multi-Factor Authentication, the security of two-step verification lies in its layered approach.
A company has just setup an Azure subscription and an Azure tenant. They want to implement strict policies when it comes to the security of Azure resources. They want to implement the following requirements: +Ensure that the Virtual Machine Administrator team can only deploy virtual machines of a particular size. +Ensure that the Virtual Machine Administrator team can only deploy virtual machines and their dependent resources. +Ensure that no one can accidentally delete the virtual machines deployed by the Virtual Machine Administrator team. Which of the following could be used to fulfill the below requirement? *Ensure that the Virtual Machine Administrator team can only deploy virtual machines of a particular size.* A. Azure Role-Based Access Control B. Azure Identity Protection C. Azure Policies D. Azure Locks
C. Azure Policies, you can accomplish this with the help of policies. There is an in-built policy also available for this purpose. A is wrong since this is used to given authorization to use Azure resources. B is wrong since this is used to protect Azure AD identities. D is wrong since this is used to protect Azure resources from users accidentally updating or deleting Azure resources.
A company has just setup an Azure subscription and an Azure tenant. They want to start deploying resources on the Azure platform. They want to use a platform that could be used to create and update the resources within the Azure subscription. Which of the following could be used for this requirement? A. Availability Zones B. Azure Resource Groups C. Azure Resource Manager D. Azure Regions
C. Azure Resource Manager, ARM is the deployment and management service for Azure. It provides a management layer that enables you to create, update and delete resources in you Azure subscription.
A company is currently planning on setting up resources as part of their Azure subscription. They are looking at different security options that can be used to secure their Azure environment. Which of the following could be used for the following requirement? "Provide Protection against distributed denial of service attacks" A. Azure Key Vault B. Azure Network Security Groups C. Azure Multi-Factor Authentication D. Azure DDoS Protection
D. Azure DDoS Protection, Protect your Azure resources from Distributed Denial of Service attacks.
A company is planning on setting up a solution on the Azure platform. The solution has the following main key requirements: +Provide a service that could be used to quickly provision development and test environments. + Minimize waste on resources with the help of quotas and policies. Which of the following would be best suited for this requirement? A. Azure Event Grid B. Azure DevOps C. Azure Kubernetes D. Azure DevTest Labs
D. Azure DevTest Labs. Quickly provision development and test environments, minimize waste with quotas and policies, set automated shutdowns to minimize costs, build Windows and Linus environments.
A company has just setup an Azure subscription and an Azure tenant. They want to implement strict policies when it comes to the security of Azure resources. They want to implement the following requirements: +Ensure that the Virtual Machine Administrator team can only deploy virtual machines of a particular size. +Ensure that the Virtual Machine Administrator team can only deploy virtual machines and their dependent resources. +Ensure that no one can accidentally delete the virtual machines deployed by the Virtual Machine Administrator team. Which of the following could be used to fulfill the below requirement? "Ensure that no one can accidentally delete the virtual machines deployed by the Virtual Machine Administrator team" A. Azure Role-Based Access Control B. Azure Identity Protection C. Azure Policies D. Azure Locks
D. Azure Locks, lock resources to prevent unexpected changes.
A company has just setup an Azure subscription and an Azure tenant. They want to start deploying resources on the Azure platform. They want to implement a way to deploy the resources so that they would be located closest to the users accessing those resources. Which of the following could be used for this requirement? A. Availability Zones B. Azure Resource Groups C. Azure Resource Manager D. Azure Regions
D. Azure Regions, you can make use of Azure Regions and deploy the resources to the region that is closest to the user.
A company is planning on moving some of their on-premise resources to Azure. They have to provide a business justification for moving to Azure. They have to classify expenses as part of the business justification. Which category would the following expenses come under? "Cooling expenses" A. Primary Expenditure B. Capital Expenditure C. Secondary Expenditure D. Operating Expenditure
D. Operating Expenditure, reoccurring expenses required to operate a business are often called operating expenses.
A company is planning on moving some of their on-premise resources to Azure. They have to provide a business justification for moving to Azure. They have to classify expenses as part of the business justification. Which category would the following expenses come under? "Software License renewals" A. Primary Expenditure B. Capital Expenditure C. Secondary Expenditure D. Operating Expenditure
D. Operating Expenditure, the expense comes under the operational expense category, reason we need to purchase the licenses while working at on-premises and when we move to cloud, we have the facility of using the same licenses.
You are trying to understand the different cloud models. Which of the following are advantages of using the public cloud? Choose 2 from below. A. Lower costs B. Higher maintenance C. High reliability D. Higher costs
Lower costs and High reliability.
Your company is planning on setting up an Azure subscription and an Azure tenant using Azure Active Directory. Would the company need to implement domain controllers on Azure virtual machines to use the Azure AD service?
No, Azure Active Directory is a completely managed service. You don't need to provision any infrastructure to implement Azure Active Directory.
Your company has just set up an Azure subscription and an Azure tenant. They want to use recommendations given by the Azure Advisor tool. If your company starts implementing the recommendations given by the Azure Advisor tool, would the company's security score decrease?
No, If you Improve the security stance of your resources, your security score will increase. The security score is maintained in Azure Security Center.
Your company has just setup Azure subscription and an Azure tenant. Is it mandatory for the company to implement all Azure security recommendations within a period of 30 days in order to maintain Microsoft sport.
No, Microsoft Provides the required controls for the customer to implement secure practices for their Azure account. There is no constraint which mentions that you need to implement all security recommendations to maintain Microsoft Support.
A company is planning on using Network Security Groups. Could network security groups be used to encrypt all network traffic sent from Azure to the Internet?
No, Network Security Groups are used to restrict Inbound and Outbound traffic. It can't be used to encrypt traffic.
A company is planning on using the Azure Firewall service. Would the Azure Firewall service encrypt all network traffic sent from Azure to the internet>
No, The Azure Firewall service is primarily used to protect your network infrastructure.
You are planning on setting up an Azure Free Account. By setting up an an Azure Free Account, would you only get access to a subset of Services?
No, The Azure Free Account gives access to all services in Azure.
Your company wants to provision a set of Azure virtual machines. An application will be installed on these virtual machines. The company wants to ensure that the user traffic is distributed across the virtual machines. You decide to use the Azure HDInsight service for traffic distribution. Would this fulfill the requirement?
No, The Azure HDInsight service is used for implementing Big Data related open source frameworks.
A company currently has the following unused resources as part of their subscription: +10 User Accounts in Azure AD +5 User Groups in Azure AD +10 Public IP address +10 network Interfaces They want to reduce the costs for resources hosted in Azure. They decide to remove the user accounts from Azure AD. Would this fulfill the requirement?
No, When you look at the pricing for Azure Active Directory you can create 5,00,000 objects as part of the free version. These objects include both users and groups.
A company currently has the following unused resources as part of their subscription: +10 User Accounts in Azure AD +5 User Groups in Azure AD +10 Public IP address +10 network Interfaces They want to reduce the costs for resources hosted in Azure. They decide to remove the user groups from Azure AD. Would this fulfill the requirement?
No, When you look at the pricing for Azure Active Directory you can create 5,00,000 objects as part of the free version. These objects include both users and groups.
A company is planning on setting up an Azure subscription and an Azure tenant using Azure Active Directory. When assigning product licenses to Azure Active Directory users; would a user be limited to the assignment of a single product license only.
No, You can assign multiple licenses for a user in Azure Active Directory.
A company is planning on setting up a string of Azure Storage Accounts. Is the transfer of data between Azure storage accounts in different Azure regions free of cost?
No, all services that do cross regional data transfers are subjected to a cost.
A company is planning on setting up an Azure SQL database. Would the company administrative team have full control over the underlying server hosting the Azure SQL database?
No, the Azure SQL database service is a PaaS. The underlying infrastructure is completely managed by Azure.
A company is planning on deploying a web application to the Azure Web App service. Would the company administrative team have full control over the underlying machine hosting the web application.
No, the Azure Web App service is a PaaS. Here the underlying infrastructure is completely managed by Azure.
A company is planning on using an Azure storage account. They are planning on provisioning an Axure storage account of the kind "General Purpose V2". Would the company be charged only for the amount of data stored and not foe the amount of read and write operations?
No, the cost of Azure storage depends on several factors, and one of them includes the number of read and write operations.
A company currently has the following unused resources as part of their subscription: +10 User Accounts in Azure AD +5 User Groups in Azure AD +10 Public IP address +10 network Interfaces They want to reduce the costs for resources hosted in Azure. They decide to remove the network interfaces from Azure AD. Would this fulfill the requirement?
No, there is no price for network interfaces, so this would not help reduce the cost.
A company has just started using Azure. They have setup resources as part of their subscription. They want to get the current costs being incurred. They decide to use the TCO calculator to get this information. Would this fulfill the requirement?
No, this is used to realize the costs when you move your current infrastructure to Azure.
Your company wants to provision a set of Azure virtual machines. An application will be installed on these virtual machines. The company wants to ensure that the user traffic is distributed across the virtual machines. You decide to use the Azure VPN Gateway service for traffic distribution. Would this fulfill the requirement?
No, this service is used to help connect an on-premise data center to an Azure virtual Network
A company has just started using Azure. They have setup resources as part of their subscription. They want to get the current costs being incurred. They decide to use the Pricing Calculator to get this information. Would this fulfill the requirement?
No, this tool is used as a cost estimator tool.
A company is planning on storing 1 TB of data in Azure BLOB storage. Would the cost of data storage be the same regardless of the region the data is stored in.
No, when you look at the pricing for Azure BLOB storage, there is a selector for the region. The cost depends on the region the BLOB is located in.
Your company has just setup an Azure subscription and Azure tenant with VM's in place. They want to have recommendations given by the Azure Advisor tool. Is it possible for the Azure Advisor tool to give a list of Azure virtual machines that are currently not enabled by Azure Backup?
Yes, Advisory identifies virtual machines where backup is not enabled, and it recommends enabling backup. For more information on the high availability requirements provides by the Azure Advisor Tool.
You are planning on setting up an Azure Free Account. Would the credit in the Azure Free Account expire after a specific period of time?
Yes, After a duration of 30 days or if the 200 USD credit gets over, then you have to convert your Free subscription to a Pay-As-You-Go subscription.
Your company wants to provision a set of Azure virtual machines. An application will be installed on these virtual machines. The company wants to ensure that the user traffic is distributed across the virtual machines. You decide to use the Azure Load Balancer service for traffic distribution. Would this fulfill the requirement?
Yes, The Azure Load Balancer is the ideal service to use for this scenario. It can be used to distribute traffic to the backend virtual machines.
A company is planning on deploying an Azure Windows Server 2016 virtual machine. Could a VPN be used to encrypt all traffic from the virtual machine itself to a host on the internet?
Yes, You can install roles such as the Remote Access Server for VPN to ensure traffic is encrypted when it flows out of the server.
Your company is planning on setting up an Azure subscription and an Azure tenant using Azure Active Directory. Does Azure Active Directory provide authentication services for services hosted in Azure and Microsoft Office 365.
Yes, You can use Azure Active Directory to authenticate to both Azure based resources and also to Microsoft office 365.
A company is planning on setting up an Azure Virtual machine. Would the company administrative team have full control over the underlying virtual machine to install an application?
Yes, the Azure virtual machine service is an IaaS. Here you can install applications on the underlying virtual machine.
A company currently has the following unused resources as part of their subscription: +10 User Accounts in Azure AD +5 User Groups in Azure AD +10 Public IP address +10 network Interfaces They want to reduce the costs for resources hosted in Azure. They decide to remove the public IP addresses. Would this fulfill the requirement?
Yes, this can reduce the cost since there is a price for Public IP addressing.
A company has just started using Azure. They have setup resources as part of their subscription. They want to get the current costs being incurred. They decide to use Azure Cost Management to get this information. Would this fulfill the requirement?
Yes, this would give a cost breakdown for the resources being used in Azure.