AZ-500 Exam Question 1

You have an Azure subscription.
You plan to map an online infrastructure and perform vulnerability scanning for the following:
* ASNs
* Hostnames
* IP addresses
* SSL certificates
What should you use?
  • AZ-500 Exam Question 2

    You have an Azure subscription that contains a user named Adminl1 and a virtual machine named VM1. VM1 runs Windows Server 2019 and was deployed by using an Azure Resource Manager template. VM1 is the member of a backend pool of a public Azure Basic Load Balancer.
    Admin1 reports that VM1 is listed as Unsupported on the Just in time VM access blade of Azure Security Center.
    You need to ensure that Admin1 can enable just in time (JIT) VM access for VM1.
    What should you do?
  • AZ-500 Exam Question 3

    You have an Azure subscription that contains the following resources:
    * An Azure key vault
    * An Azure SQL database named Database1
    * Two Azure App Service web apps named AppSrv1 and AppSrv2 that are configured to use system-assigned managed identities and access Database1 You need to implement an encryption solution for Database1 that meets the following requirements:
    * The data in a column named Discount in Database1 must be encrypted so that only AppSrv1 can decrypt the data.
    * AppSrv1 and AppSrv2 must be authorized by using managed identities to obtain cryptographic keys.
    How should you configure the encryption settings fa Database1 To answer, select the appropriate options in the answer area.
    NOTE: Each correct selection is worth one point

    AZ-500 Exam Question 4

    You have an Azure subscription that contains the users shown in the following table.

    Which users can enable Azure AD Privileged Identity Management (PIM)?
  • AZ-500 Exam Question 5

    You are configuring an Azure Kubernetes Service (AKS) cluster that will connect to an Azure Container Registry.
    You need to use the auto-generated service principal to authenticate to the Azure Container Registry.
    What should you create?