Official Bank 0/2

Microsoft Azure Fundamentals Exam (AZ-900) - Microsoft Exam Questions

Last updated on June 20, 2026

97% Exam Compliance
2 Total Questions
1
Question
A company is planning to deploy its suite of enterprise applications to Microsoft Azure, where each application has several dependencies and subcomponents. The company must also control and manage the patching activities of the underlying operating system of the servers.

What type of cloud deployment solution should you recommend?

1. 2. 3. 4. Infrastructure as a Service (laaS)
Platform as a Service (PaaS) Software as a Service (SaaS) Functions as a service (FaaS) Infrastructure as a service (IaaS) is an instant computing infrastructure, provisioned, and managed over the internet. It's one of the types of cloud services, along with software as a service (SaaS), platform as a service (PaaS), and serverless. IaaS quickly scales up and down with demand, letting you pay only for what you use. It helps you avoid the expense and complexity of buying and managing your own physical servers and other datacenter https://portal.tutorialsdojo.com/ 12 Tutorials Dojo Study Guide and Cheat Sheets - AZ-900 Microsoft Azure Fundamentals by Jon Bonso and Gerome Pagatpatan infrastructure. Each resource is offered as a separate service component, and you only need to rent a particular one for as long as you need it. A cloud computing service provider, such as Azure, manages the infrastructure, while you purchase, install, configure, and manage your own software — operating systems, middleware, and applications. You can also use the Azure Virtual Machines, which is an Infrastructure as a Service (IaaS), to host the suite of enterprise applications and manage the patching activities of the underlying operating system of the servers. Therefore, the correct answer is: Infrastructure as a Service (laaS). Platform as a Service (PaaS) is incorrect because this is a type of cloud service that allows you to focus on developing your applications and services by letting the cloud service provider handle the administrative tasks of the underlying application infrastructure. It doesn't allow the customers to control and manage the patching activities of the underlying operating system of the servers. Software as a Service (SaaS) is incorrect because this cloud service type just allows customers to connect to and use its cloud-based apps over the Internet, and not deploy their custom applications. Just like PaaS, it doesn't allow the customers to control and manage the patching activities of the underlying operating system of the servers that you use. Function as a Service (FaaS) is incorrect because this is simply an event-driven serverless compute platform. The underlying servers are abstracted and not accessible to the end-user.
Reveal Only
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

2
Question
Which of the following is a cloud-based security solution that leverages your on-premises Active Directory signals to identify, detect, and investigate advanced threats, compromised identities, and malicious insider actions directed at your organization?

1. Microsoft Entra Connect Health

2. Azure Advanced Threat Protection (ATP)

3. Azure Information Protection

4. Azure Service Health
https://portal.tutorialsdojo.com/ 13 Tutorials Dojo Study Guide and Cheat Sheets - AZ-900 Microsoft Azure Fundamentals by Jon Bonso and Gerome Pagatpatan Azure Advanced Threat Protection (ATP) is a cloud-based security solution that leverages your on-premises Active Directory signals to identify, detect, and investigate advanced threats, compromised identities, and malicious insider actions directed at your organization. Azure ATP enables SecOp analysts and security professionals struggling to detect advanced attacks in hybrid environments to: ● Monitor users, entity behavior, and activities with learning-based analytics ● Protect user identities and credentials stored in Active Directory ● Identify and investigate suspicious user activities and advanced attacks throughout the kill chain ● Provide clear incident information on a simple timeline for fast triage Azure ATP monitors and analyzes user activities and information across your network, such as permissions and group membership, creating a behavioral baseline for each user. Azure ATP then identifies anomalies with adaptive built-in intelligence, giving you insights into suspicious activities and events, revealing the advanced threats, compromised users, and insider threats facing your organization. Azure ATP's proprietary sensors monitor organizational domain controllers, providing a comprehensive view for all user activities from every device. Azure ATP provides you invaluable insights on identity configurations and suggested security best-practices. Through security reports and user profile analytics, Azure ATP helps dramatically reduce your organizational attack surface, making it harder to compromise user credentials and advance an attack. Azure ATP's visual Lateral Movement Paths help you quickly understand exactly how an attacker can move laterally inside your organization to compromise sensitive accounts and assists in preventing those risks in advance. Azure ATP security reports help you identify users and devices that authenticate using clear-text passwords and provide additional insights to improve your organizational security posture and policies. Hence, the correct answer is: Azure Advanced Threat Protection (ATP). Microsoft Entra Connect Health is incorrect because this is simply a Microsoft tool designed to meet and accomplish your hybrid identity goals, such as password hash synchronization, pass-through authentication, federation integration, synchronization, and health monitoring. It doesn't leverage on your on-premises Active Directory signals either. Azure Information Protection is incorrect because this is just a service that is primarily used to helps organizations label and classify their sensitive documents and emails. Azure Service Health is incorrect because this service only provides personalized guidance and support when issues in Azure services affect your resources. This is not a cloud-based security solution that leverages your https://portal.tutorialsdojo.com/ 14 Tutorials Dojo Study Guide and Cheat Sheets - AZ-900 Microsoft Azure Fundamentals by Jon Bonso and Gerome Pagatpatan on-premises Active Directory signals to identify, detect, and investigate advanced threats, compromised identities, and malicious insider actions directed at your organization.
Reveal Only
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

Finish Practice?

Are you sure you want to finish? This will end your practice session.