Microsoft Azure Security Technologies (AZ-500) Certification Sample Questions

Microsoft AZ-500 Sample Questions:

01. With the _____ feature, you can tailor an alert's appearance to its content.
a) Azure Functions
c) CLI
d) Key Vault
e) Alert details
02. What is the key difference between Azure Front Door and Azure Application Gateway?
a) There is no difference
b) Front Door is a global service, whereas Application Gateway is a regional service
c) Front Door is a regional service, whereas Application Gateway is a global service
d) None of the above
03. In Azure, without _____ assigned to the Virtual Machines, or the Subnets in the Virtual Network, the expected network traffic flow is all traffic inbound and outbound is allowed.
a) Firewall
b) Tunnel
c) Link
d) NSG
e) SG
04. Which of the following are the new standards for enabling passwordless authentication?
a) WebAuthN
b) FIDO2
c) PKI
d) SSL
e) All of the above
05. Azure Key Vault Certificates support provides for management of _______ certificates.
b) RFC2440
c) RFC4212
d) x509
e) None of the above
06. Platform Metrics are collected by default and typically stored in the _____ database.
a) Azure Managed SQL Server
b) Azure CosmosDB
c) Azure Synapse
d) Azure Monitor Metrics
07. Which of the following are valid architecture options for Azure Firewall Manager?
a) Hub virtual network
b) Virtual network
c) Virtual WAN Hub
d) Secured virtual hub
08. How can applications obtain a service principle in order to authenticate with Azure Key Vault?
a) Access policies
b) Using password vault
c) Using system-assigned managed identity
d) Registering the application with Azure identity platform
09. Which property controls who can create, delete, update, or view the custom role?
a) Assignments
b) Scopes
c) AssignableScopes
d) Permissions
e) AssignableRoles
10. You manage an Azure subscription named Sub1 that is currently associated with an Azure AD tenant named Sub1 contains a key vault named kv1 and four system-assigned managed identities named m1, m2, m3, and m4.
The subscription's billing administrator is kent@companylcom. You need to migrate Sub1 and the key vault to a new Azure AD tenant named You start by transferring Sub1 to
What should you do next?
a) Change the tenant ID of kv1.
b) Update the billing administrator.
c) Recreate the system-assigned managed identities.
d) Re-register all resource providers.


Question: 01
Answer: e
Question: 02
Answer: b
Question: 03
Answer: d
Question: 04
Answer: a, b
Question: 05
Answer: d
Question: 06
Answer: d
Question: 07
Answer: a, d
Question: 08
Answer: c, d
Question: 09
Answer: c
Question: 10
Answer: a

