Microsoft

AZ-900 Free Practice Questions — Page 20

Question 208

HOTSPOT - For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point. Hot Area:

Illustration for AZ-900 question 208
Show Answer
Correct Answer: Yes Yes Yes
Explanation:
Azure Cost Management supports cost analysis at management group and resource group scopes, and provides usage and cost data for resources such as virtual machines over selectable time ranges, including the last three months.

Question 209

What is the first stage in the Microsoft Cloud Adoption Framework for Azure?

A. Adopt the cloud.
B. Make a plan.
C. Ready your organization.
D. Define your strategy.
Show Answer
Correct Answer: D
Explanation:
In the Microsoft Cloud Adoption Framework for Azure, the lifecycle begins with **Define your strategy**, which establishes business outcomes, motivations, and success metrics before planning, readiness, and adoption activities.

Question 210

Your developers have created a portal web app for users in the Miami branch office. The web app will be publicly accessible and used by the Miami users to retrieve customer and product information. The web app is currently running in an on-premises test environment. You plan to host the web app on Azure. You need to determine which Azure web tier plan to host the web app. The web tier plan must meet the following requirements: ✑ The website will use the miami.weyland.com URL. ✑ The website will be deployed to two instances. ✑ SSL support must be included. ✑ The website requires 12 GB of storage. ✑ Costs must be minimized. Which web tier plan should you use?

A. Standard
B. Basic
C. Free
D. Shared
Show Answer
Correct Answer: A
Explanation:
The Standard Azure App Service plan is the lowest-cost tier that meets all requirements: it supports custom domains (miami.weyland.com), SSL, scaling out to two instances, and provides sufficient storage (≈50 GB). Free and Shared tiers lack required features, and Basic is limited to ~10 GB storage, which is insufficient for the 12 GB requirement.

Question 211

DRAG DROP - You need to complete the defense-in-depth strategy used in a datacenter. What should you do? To answer, drag the appropriate layers to the correct positions in the model. Each layer may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. NOTE: Each correct selection is worth one point. Select and Place:

Illustration for AZ-900 question 211
Show Answer
Correct Answer: Top outer layer: Physical Security Layer above Network (inside Identity & Access): Perimeter Layer above Data (inside Compute): Application
Explanation:
In the Azure defense-in-depth model, Physical Security is the outermost layer. Perimeter protection sits just inside Identity & Access to protect network boundaries. Application security is placed above the Data layer to protect data access through secure applications.

Question 212

Your company plans to start using Azure and will migrate all its network resources to Azure. You need to start the planning process by exploring Azure. What should you create first?

A. a subscription
B. a resource group
C. a virtual network
D. a management group
Show Answer
Correct Answer: A
Explanation:
An Azure subscription is the fundamental billing and access boundary. You must have a subscription before you can create resource groups, virtual networks, or management groups, making it the first thing to create when starting to explore Azure.

Question 213

DRAG DROP - Your company intends to subscribe to an Azure support plan. The support plan must allow for new support requests to be opened. Which of the following are support plans that will allow this? Answer by dragging the correct option from the list to the answer area. Select and Place:

Illustration for AZ-900 question 213
Show Answer
Correct Answer: Basic Developer Standard Professional Direct
Explanation:
Azure allows opening support requests under Basic (non-technical like billing/quota) and all paid plans (Developer, Standard, Professional Direct). Premier is not opened directly and is not applicable here.

Question 214

Your company has an on-premises network that contains multiple servers. The company plans to reduce the following administrative responsibilities: ✑ Backing up application data ✑ Replacing failed server hardware ✑ Managing physical server security ✑ Updating server operating systems ✑ Managing permissions to shared documents The company plans to migrate servers to Azure virtual machines. You need to identify which administrative responsibilities will be eliminated after the planned migration. Which two responsibilities should you identify? Each correct answer presents a complete solution. NOTE: Each correct selection is worth one point.

A. Replacing failed server hardware
B. Backing up application data
C. Managing physical server security
D. Updating server operating systems
E. Managing permissions to shared documents
Show Answer
Correct Answer: A, C
Explanation:
Azure virtual machines are an IaaS offering. Under the shared responsibility model, Microsoft manages the underlying physical infrastructure, including datacenter security and server hardware. Customers are still responsible for the guest OS, data backups, and access permissions. Therefore, replacing failed server hardware and managing physical server security are eliminated.

Question 215

DRAG DROP - The company would like to develop a cloud solution by making use of Azure Government. Azure Government can only be used by certain types of clients to develop cloud solutions. Which of the following are the types of customers that can make use of Azure Government in this situation? Answer by dragging the correct option from the list to the answer area. Select and Place:

Illustration for AZ-900 question 215
Show Answer
Correct Answer: A United States government contractor. A United States government entity.
Explanation:
Azure Government is a dedicated cloud environment restricted to U.S. federal, state, local, and tribal government entities and their approved U.S.-based contractors. It is not available to non-U.S. governments or contractors.

Question 216

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements. You have been informed by your superiors of the company's intentions to automate server deployment to Azure. There is, however, some concern that administrative credentials could be uncovered during this process. You are required to make sure that during the deployment, the administrative credentials are encrypted using a suitable Azure solution. Solution: You recommend the use of Azure Multi-Factor Authentication (MFA). Does the solution meet the goal?

A. Yes
B. No
Show Answer
Correct Answer: B
Explanation:
The requirement is to ensure administrative credentials are encrypted and protected during automated Azure deployments. Azure Multi-Factor Authentication only strengthens the authentication process at sign-in time; it does not encrypt, store, or safeguard credentials used in deployment automation. Azure Key Vault (or similar secret management solutions) is designed for securely storing and encrypting credentials. Therefore, the proposed solution does not meet the goal.

Question 217

HOTSPOT - To complete the sentence, select the appropriate option in the answer area. Hot Area:

Illustration for AZ-900 question 217
Show Answer
Correct Answer: Perimeter layer
Explanation:
In Azure’s Defense-in-Depth model, DDoS protection is implemented at the perimeter layer to detect and filter large-scale attacks before they reach internal network or application resources.

$19

Get all 428 questions with detailed answers and explanations

  • Instant download HTML + PDF delivered the moment payment clears.
  • Secure Stripe checkout we never see or store your card details.
  • 7-day refund if files are defective see our refund policy.