Microsoft

AZ-900 Free Practice Questions — Page 18

Question 174

You need to purchase a third-party virtual security appliance that you will deploy to an Azure subscription. What should you use?

A. Azure subscriptions
B. Azure Security Center
C. Azure Marketplace
D. Microsoft Store
Show Answer
Correct Answer: C
Explanation:
Azure Marketplace is the catalog for purchasing and deploying third-party virtual appliances, including network and security appliances, into Azure subscriptions. Azure subscriptions provide billing and resource boundaries, Azure Security Center (Microsoft Defender for Cloud) is a security management service rather than a marketplace, and Microsoft Store is unrelated to Azure virtual appliances.

Question 175

What can you use to identify underutilized or unused Azure virtual machines?

A. Azure Advisor
B. Azure Cost Management + Billing
C. Azure reservations
D. Azure Policy
Show Answer
Correct Answer: A
Explanation:
Azure Advisor analyzes resource utilization and provides recommendations to identify underutilized or unused virtual machines, including suggestions to shut down or resize low-utilization VMs. Azure Cost Management focuses on spending and usage costs rather than utilization-based optimization recommendations. Azure Reservations are for discounted capacity purchases, and Azure Policy is for governance and compliance, not identifying idle VMs.

Question 177

Your company plans to migrate all on-premises data to Azure. You need to identify whether Azure complies with the company's regional requirements. What should you use?

A. the Knowledge Center
B. Azure Marketplace
C. the MyApps portal
D. the Trust Center
Show Answer
Correct Answer: D
Explanation:
The Microsoft Trust Center provides information about Azure's compliance, regulatory certifications, data residency, privacy, and regional requirements. It is the appropriate resource to verify whether Azure meets an organization's regional and compliance needs. The Knowledge Center, Azure Marketplace, and MyApps portal do not serve this purpose.

Question 178

You have an Azure Sentinel workspace. You need to automate responses to threats detected by Azure Sentinel. What should you use?

A. adaptive network hardening in Azure Security Center
B. Azure Service Health
C. Azure Monitor workbooks
D. adaptive application controls in Azure Security Center
Show Answer
Correct Answer: C
Explanation:
The question is flawed. In Microsoft Sentinel, automated responses are implemented with Playbooks (Azure Logic Apps), which is not among the options. Of the provided choices, Azure Monitor Workbooks is the only Sentinel feature referenced in some older AZ-900 learning material alongside monitoring/responding workflows, whereas the other options are unrelated to Sentinel response automation. Therefore the expected exam answer is C, even though the technically correct feature would be Playbooks.

Question 179

What is the most severe failure from which an Azure Availability Zone can be used to protect access to Azure service?

A. a physical server failure
B. an Azure region failure
C. a storage failure
D. an Azure data center failure
Show Answer
Correct Answer: D
Explanation:
Azure Availability Zones are separate physical locations within the same Azure region, each with independent power, cooling, and networking. They are designed to protect applications and services from the failure of an entire datacenter (or zone), but not from the failure of an entire Azure region. Therefore, the most severe failure an Availability Zone is intended to protect against is an Azure data center failure.

Question 180

HOTSPOT - For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point. Hot Area:

Illustration for AZ-900 question 180
Show Answer
Correct Answer: Yes Yes No
Explanation:
Azure PowerShell (Az module) is supported on macOS via PowerShell. Azure Cloud Shell is browser-based and can be accessed from Linux. The Azure portal is web-based and is not limited to Windows devices.

Question 182

HOTSPOT - For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point. Hot Area:

Illustration for AZ-900 question 182
Show Answer
Correct Answer: No No Yes
Explanation:
You cannot extend into the public cloud by adding your own physical servers; public cloud uses the provider’s infrastructure. A private cloud does not have to be disconnected from the internet. A hybrid cloud includes a public cloud component combined with private/on-premises resources.

Question 183

HOTSPOT - Select the answer that correctly completes the sentence. Hot Area:

Illustration for AZ-900 question 183
Show Answer
Correct Answer: Azure China is a distinct separate instance of Microsoft Azure.
Explanation:
Azure China is operated independently by 21Vianet to meet Chinese regulatory requirements. It is a separate Azure instance and does not have full feature parity with Azure Global.

Question 184

DRAG DROP - Match the serverless solution to the correct characteristic. To answer, drag the appropriate serverless solution from the column on the left to its characteristic on the right. Each serverless solution may be used once, more than once, or not at all. NOTE: Each correct match is worth one point. Select and Place:

Illustration for AZ-900 question 184
Show Answer
Correct Answer: Executes code: Azure Functions Is always stateful: Azure Logic Apps Runs only in the cloud: Azure Logic Apps
Explanation:
Azure Functions are designed to execute code. Logic Apps are workflow orchestration services commonly described in AZ-900 as stateful, and Logic Apps are an Azure cloud service, whereas Azure Functions can also run outside Azure (for example via containers/Azure Arc).

Question 185

HOTSPOT - For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point. Hot Area:

Illustration for AZ-900 question 185
Show Answer
Correct Answer: No No Yes
Explanation:
Microsoft Trust Center is separate from Azure Security Center (now Microsoft Defender for Cloud). The Trust Center is publicly accessible and does not require an Azure subscription to view. It provides information about Microsoft's compliance offerings, including Azure compliance.

$19

Get all 427 questions with detailed answers and explanations

  • Instant download HTML + PDF delivered the moment payment clears.
  • Secure Stripe checkout we never see or store your card details.
  • 7-day refund if files are defective see our refund policy.