Question 211

You have an Azure subscription that contains an Azure key vault named Vault1.
In Vault1, you create a secret named Secret1.
An application developer registers an application in Azure Active Directory (Azure AD).
You need to ensure that the application can use Secret1.
What should you do?
  • Question 212

    Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
    After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
    You have an Azure subscription. The subscription contains 50 virtual machines that run Windows Server 2012 R2 or Windows Server 2016.
    You need to deploy Microsoft Antimalware to the virtual machines.
    Solution: You connect to each virtual machine and add a Windows feature.
    Does this meet the goal?
  • Question 213

    You are evaluating the security of the network communication between the virtual machines in Sub2.
    For each of the following statements, select Yes if the statement is true. Otherwise, select No.
    NOTE: Each correct selection is worth one point.

    Question 214

    You have an Azure Active Directory (Azure AD) tenant that contains the users shown in the following table.

    You create and enforce an Azure AD Identity Protection sign-in risk policy that has the following settings:
    * Assignments: Include Group1, exclude Group2
    * Conditions: Sign-in risk level: Medium and above
    * Access Allow access, Require multi-factor authentication
    You need to identify what occurs when the users sign in to Azure AD.
    What should you identify for each user? To answer, select the appropriate options in the answer area.
    NOTE: Each correct selection is worth one point.

    Question 215

    You have an Azure subscription named Subscription1.
    You need to view which security settings are assigned to Subscription1 by default.
    Which Azure policy or initiative definition should you review?