Become Microsoft Certified with updated SC-500 exam questions and correct answers
Note: This section contains one or more sets of questions with the same scenario and problem. Each questionpresents a unique solution to the problem. You must determine whether the solution meets the stated goals.More than one solution in the set might solve the problem. It is also possible that none of the solutions in theset solve the problem.After you answer a question in this section, you will NOT be able to return. As a result, these questions do notappear on the Review Screen.You have an Azure subscription that contains two virtual machines named VM1 and VM2. Each virtualmachine has system-assigned managed identity enabled.You have an Azure Storage account named storage1. Public access from all networks is enabled for storage1.You need to ensure that VM1 and VM2 can access storage1.Solution: You add each virtual machine to a security group, and then add the security group to a role onstorage1.Does this meet the goal?
You use Azure Virtual Network Manager to manage multiple virtual networks in a network group namedGroup1You discover that the virtual machines in Group1 are accessible from the internet by using TCP port 3389.You need to block inbound TCP 3389 from the internet across all the virtual networks in Group1 The solutionmust minimize administrative effort.What should you use?
You have an Azure subscription named Sub1 that contains multiple virtual machines.You have a Microsoft 365 E5 subscription that contains devices onboarded to Microsoft Defender forEndpoint.You have an on-premises datacenter that contains multiple servers.You plan to onboard all existing and future on-premises servers to Azure Arc.You need to ensure that the Azure Arc-enabled servers are protected by using the same security features as theMicrosoft 365 devices immediately after the servers are onboarded. The solution must minimizeadministrative effort.What should you do?
You have an Azure subscription named Sub1 that contains an Azure Kubernetes Service (AKS) cluster named cluster1 and an Azure container registry named ACR1 Sub1 has Microsoft Defender for Containers enabled, and runtime protection is active on cluster!The developers at your company deploy pods that have elevated privileges, and the deployments are createdin cluster1You need to prevent pods with elevated privileges from being accepted by cluster!What should you do?
You use Azure Virtual Network Manager to manage multiple virtual networks in a network group namedGroup1You discover that the virtual machines in Group1 are accessible from the internet by using TCP port 3389.You need to block inbound TCP 3389 from the internet across all the virtual networks in Group1 The solutionmust minimize administrative effort.What should you use?
© Copyrights DumpsCertify 2026. All Rights Reserved
We use cookies to ensure your best experience. So we hope you are happy to receive all cookies on the DumpsCertify.