SC-100 Exam Question 16

Your company is preparing for cloud adoption.
You are designing security for Azure landing zones.
Which two preventative controls can you implement to increase the secure score? Each NOTE: Each correct selection is worth one point.
  • SC-100 Exam Question 17

    You have an Azure subscription.
    You plan to implement Azure Synapse Analytics SQL dedicated pools and SQL serverless pools.
    You need to recommend a solution to provide additional encryption-at-rest security for each type of pool. The solution must use customer-managed keys, whenever possible.
    What should you recommend for each pool type? To answer, drag the appropriate recommendations to the correct pool types. Each recommendation may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.
    NOTE: Each correct selection is worth one point.

    SC-100 Exam Question 18

    You have two Azure subscriptions named Sub1 and Sub2 that contain the vaults shown in the following table.

    You need to design a multi-user authorization (MUA) solution for security operations on the vaults. The solution must meet the following requirements:
    * RSVault1 and RSVault2 must require MUA for disabling soft delete, removing MUA protection, and disabling immutability.
    * BackupVault1 and BackupVault2 must require MUA for disabling soft delete and removing MUA protection.
    What is the minimum number of Resource Guard resources required?
  • SC-100 Exam Question 19

    Your company plans to apply the Zero Trust Rapid Modernization Plan (RaMP) to its IT environment.
    You need to recommend the top three modernization areas to prioritize as part of the plan.
    Which three areas should you recommend based on RaMP? Each correct answer presents part of the solution.
    NOTE: Each correct selection is worth one point.
  • SC-100 Exam Question 20

    Your company plans to provision blob storage by using an Azure Storage account The blob storage will be accessible from 20 application sewers on the internet. You need to recommend a solution to ensure that only the application servers can access the storage account. What should you recommend using to secure the blob storage?