Summer Sale Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: buysanta

Exact2Pass Menu

Microsoft Certified: Cloud and AI Security Engineer Associate

Last Update 21 hours ago Total Questions : 68

The Microsoft Certified: Cloud and AI Security Engineer Associate content is now fully updated, with all current exam questions added 21 hours ago. Deciding to include SC-500 practice exam questions in your study plan goes far beyond basic test preparation.

You'll find that our SC-500 exam questions frequently feature detailed scenarios and practical problem-solving exercises that directly mirror industry challenges. Engaging with these SC-500 sample sets allows you to effectively manage your time and pace yourself, giving you the ability to finish any Microsoft Certified: Cloud and AI Security Engineer Associate practice test comfortably within the allotted time.

Question # 1

You have a Microsoft Sentinel workspace named Workspace1

You have 100 on-premises servers that run Linux and have the Azure Monitor Agent installed.

You need to collect Syslog events from the Linux servers. The solution must meet the following requirements:

•Ensure that filtering occurs before data is written to Workspace1

•Reduce ingestion costs by excluding low value Syslog messages.

What should you include in the solution?

A.

An Advanced Security Information Model (ASIM) parser

B.

A data collection rule (DCR)

C.

An analytics rule

D.

A table-level filter and split transformation

Question # 2

You are configuring a new Microsoft Sentinel workspace named Workspace1.

You have an external IT Service Management (ITSM) system that is NOT supported by any Microsoft Sentinel solutions in Azure Marketplace.

You need to ensure that Workspace1 creates service tickets in the ITSM system for all new security incidents.

What should you create?

A.

A playbook

B.

A workbook

C.

A watchlist

D.

An analytics rule

Question # 3

You have an Azure SQL Database logical server named Server1 that contains multiple databases.

The databases contain legacy SQL authentication logins that must no longer be usable for sign-in but must NOT be removed from the databases.

You need to ensure that SQL authentication is denied for connections.

What should you do?

A.

Run CREATE USER ... FROM EXTERNAL PROVIDER on each database.

B.

Create a Conditional Access policy.

C.

Enable Microsoft Entra-only authentication for Server1.

D.

Assign the SQL Server Contributor role to Server1.

Question # 4

You have an Azure subscription named Sub1 that contains an Azure Database for PostgreSQL instance Sub1 has Microsoft Defender for Cloud enabled.

You need to configure Microsoft Defender for Databases to minimize costs.

Which Defender plan should you enable?

A.

Microsoft Defender for Servers

B.

Microsoft Defender for Open-Source Relational Databases

C.

Microsoft Defender for SQL Servers on Machines

D.

Microsoft Defender for Azure SQL Databases

E.

Microsoft Defender for Storage

Question # 5

You have an Azure virtual network named VNet1 that contains three subnets named Subnet1, Subnet2 and Subnet3. A single network security group (NSG) named NSG1 is associated with all the subnets. You have the following virtual machines:

•VM1 on Subnet1

•VM2 on Subnet2

VM3 on Subnet3

You create two application security groups named ASG1 and ASG2. VM2 is a member of ASG1, and VM3 is a member of ASG2.

You need to ensure that only VM2 can connect to VM3. The solution must continue to work if the private IP address of VM2 changes.

How should you configure the inbound rule on NSG1 ? To answer, drag the settings to the correct configurations. Each setting may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.

NOTE: Each correct selection is worth one point.

Question # 6

You have a hybrid environment that contains the following servers:

•50 Azure virtual machines that run Windows Server 2019

•20 physical, on premises servers that run Windows Server 2019

All the servers use a third-party antivirus solution that must remain active during a phased security rollout

You need to onboard all the servers to Microsoft Defender for Endpoint by using a centralized deployment method. The solution must meet the following requirements:

•Endpoint detection and response (EDR) capabilities must be enabled.

•Antivirus conflicts must be prevented during onboarding.

What should you do on the servers?

A.

Set the Microsoft Defender for Endpoint service to Disabled.

B.

Disable Microsoft Defender Antivirus real-time protection by using Set-MpPreference.

C.

Configure the ForceDefenderPassiveMode registry value.

D.

Enable EDR in block mode.

Question # 7

You have an Azure subscription named Sub1 that contains multiple virtual machines.

You have a Microsoft 365 E5 subscription that contains devices onboarded to Microsoft Defender for Endpoint.

You have an on-premises datacenter that contains multiple servers.

You plan to onboard all existing and future on-premises servers to Azure Arc.

You need to ensure that the Azure Arc-enabled servers are protected by using the same security features as the Microsoft 365 devices immediately after the servers are onboarded. The solution must minimize administrative effort.

What should you do?

A.

Onboard each server to Microsoft Defender for Endpoint by using Group Policy.

B.

Onboard each server to Microsoft Defender for Endpoint by using a local installation script.

C.

For Sub1, enable the Microsoft Defender for Servers plan in Microsoft Defender for Cloud.

D.

Configure an Azure Policy assignment.

Question # 8

You have a Microsoft Sentinel workspace named Workspace1.

You hire a security consultant. You provide the consultant with a guest account named User1 in your Microsoft Entra tenant

You need to enable User1 to assign incidents in Workspace1.

Which roles should you assign to User1? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Question # 9

You have an Azure subscription.

You need to deploy an Azure virtual WAN to meet the following requirements:

•Create three secured virtual hubs located in the East US. West US, and North Europe Azure regions.

•Ensure that security rules sync between the regions.

What should you use?

A.

Azure Network Function Manager

B.

Azure Firewall Manager

C.

Azure Virtual Network Manager

D.

Azure Front Door

Question # 10

You have an Azure subscription named Sub1 that contains a storage account named storage1. Sub1 has Microsoft Defender for Storage enabled. Defender for Storage has malware scanning enabled.

You need to configure a solution that automates the remediation of malware detected in storage1.

What should you include in the solution?

A.

Application Insights

B.

Azure Event Hubs

C.

Azure Event Grid

D.

Azure Policy

Go to page: