AZ-500 Exam Question 41

You have an Azure subscription named Subscription1 that contains a resource group named RG1 and the users shown in the following table.

You perform the following tasks:
* Assign User1 the Network Contributor role for Subscription1.
* Assign User2 the Contributor role for RG1.
To Subscription1 and RG1, you assign the following policy definition: External accounts with write permissions should be removed from your subscription.
What is the Compliance State of the policy assignments?
  • AZ-500 Exam Question 42

    You need to meet the technical requirements for VNetwork1.
    What should you do first?
  • AZ-500 Exam Question 43

    You have an Azure subscription named Sub1 that contains the resource groups shown in the following table.

    You create the Azure Policy definition shown in the following exhibit.

    You assign the policy to Sub1.
    You plan to create the resources shown in the following table.

    For each of the following statements, select Yes if the statement is true. Otherwise, select No.
    NOTE: Each correct selection is worth one point.

    AZ-500 Exam Question 44

    You have an Azure subscription that uses Microsoft Defender for Cloud.
    You need to use Defender for Cloud to review regulatory compliance with the Azure CIS 1.4,0 standard. The solution must minimize administrative effort.
    What should you do first?
  • AZ-500 Exam Question 45

    You have an Azure subscription that contains a virtual machine named VM1.
    You create an Azure key vault that has the following configurations:
    * Name: Vault5
    * Region: West US
    * Resource group: RG1
    You need to use Vault5 to enable Azure Disk Encryption on VM1. The solution must support backing up VM1 by using Azure Backup.
    Which key vault settings should you configure?