Question 176

Your company develops several applications that are accessed as custom enterprise applications in Azure Active Directory (Azure AD). You need to recommend a solution to prevent users on a specific list of countries from connecting to the applications. What should you include in the recommendation?
  • Question 177

    Your on-premises network contains an e-commerce web app that was developed in Angular and Node.js. The web app uses a MongoDB database. You plan to migrate the web app to Azure. The solution architecture team proposes the following architecture as an Azure landing zone.

    You need to provide recommendations to secure the connection between the web app and the database. The solution must follow the Zero Trust model.
    Solution: You recommend implementing Azure Front Door with Azure Web Application Firewall (WAF).
    Does this meet the goal?
  • Question 178

    You have an Azure subscription that has Microsoft Defender for Cloud enabled. You need to enforce ISO
    2700V2013 standards for the subscription. The solution must ensure that noncompliant resources are remediated automatically What should you use?
  • Question 179

    You have an Azure subscription that contains a resources group named RG1. RG1 contains multiple Azure Files shares.
    You need to recommend a solution to deploy a backup solution for the shares. The solution must meet the following requirements:
    * Prevent the deletion of backups and the vault used to store the backups.
    * Prevent privilege escalation attacks against the backup solution.
    * Prevent the modification of the backup retention period.
    Which three actions should you recommend be performed in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.

    Question 180

    Hotspot Question
    You have an Azure SQL database named DB1 that contains customer information.
    A team of database administrators has full access to DB1.
    To address customer inquiries, operators in the customer service department use a custom web app named App1 to view the customer information.
    You need to design a security strategy for DB1. The solution must meet the following requirement:
    - When the database administrators access DB1 by using SQL management
    tools, they must be prevented from viewing the content of the
    CreditCard attribute of each customer record.
    - When the operators view customer records in App1, they must view only the last four digits of the CreditCard attribute.
    What should you include in the design? To answer, select the appropriate options in the answer area.
    NOTE: Each correct selection is worth one point.