Developing Microsoft Azure Solutions Free Sample Questions

20 free sample questions229 in the full practice test Other version: AZ-204(297)

Try simulator

70-532 Sample Questions

  1. Question 1

    A financial services company is developing a new loan processing application on Azure. The application must support user sign-ups using social identity providers like Google and Facebook, as well as traditional email-based accounts. The solution must provide a fully managed service for user registration, sign-in, profile management, and password reset, with the ability to customize the user interface. Which Azure service is specifically designed to meet these requirements for a consumer-facing application?

    Answer and explanation

    Correct answer: B

    Azure Active Directory (AD) B2C is a customer identity and access management (CIAM) solution designed for consumer-facing applications. It allows users to sign up and sign in using social accounts or local accounts and provides customizable user flows for these processes. Azure AD B2B is for partner collaboration, standard Azure AD is for organizational identities, and AD Domain Services is for managed domain services for VMs.

  2. Question 2

    A development team is building a solution that ingests high-volume telemetry data from IoT devices. The data must be stored durably and cost-effectively for long-term archival and occasional batch analysis. Individual data points are small (less than 1KB), and the primary write pattern involves appending new data to existing logs. Which type of Azure Storage blob is optimized for this append-only workload?

    Answer and explanation

    Correct answer: C

    Append Blobs are optimized for append operations, making them ideal for logging and telemetry scenarios where data is continuously added to the end of a file. Block Blobs are for general-purpose storage of discrete objects, and Page Blobs are designed for random read/write access, such as virtual hard disk files.

  3. Question 3

    You are designing the storage for a new application that will run on multiple Azure VMs. The application requires a shared file system that can be mounted simultaneously by these VMs using the Server Message Block (SMB) protocol. The solution should not require you to set up and manage a separate file server VM. Which Azure Storage service provides this capability?

    Answer and explanation

    Correct answer: D

    Azure File Storage (Azure Files) provides fully managed file shares in the cloud that are accessible via the industry-standard Server Message Block (SMB) protocol. This allows multiple Azure VMs to mount and access the same file share concurrently, providing a shared file system without the need for a dedicated file server.

  4. Question 4

    A developer needs to create a lightweight, event-driven background task that runs in response to a new message being added to an Azure Storage Queue. The task involves minimal processing and should be implemented with the least amount of boilerplate code and infrastructure management. Which Azure PaaS compute service is the most suitable choice for this scenario?

    Answer and explanation

    Correct answer: B

    Azure Functions is a serverless compute service designed for running small pieces of code in response to events (triggers). It has built-in triggers for services like Azure Storage Queues, abstracting away the infrastructure and allowing developers to focus solely on the business logic. WebJobs are a valid alternative but typically involve more setup within an App Service Plan, while VMs and Web Apps are overkill for this simple, event-driven task.

  5. Question 5

    You are configuring an Azure App Service Web App that hosts a critical e-commerce site. To ensure high availability and resilience against single-rack hardware failures within a datacenter, you deploy multiple instances of the Web App. Which Azure concept automatically distributes these instances across different hardware units to achieve this?

    Answer and explanation

    Correct answer: C

    In the context of Azure App Service Plans and Virtual Machine Availability Sets, a Fault Domain is a group of virtual machines that share a common power source and network switch. When you deploy multiple instances, the Azure platform automatically distributes them across different Fault Domains to mitigate the risk of a localized hardware failure (e.g., a rack failure) taking down all instances. Update Domains relate to planned maintenance, and Availability Zones provide datacenter-level redundancy, which is a broader concept.

  6. Question 6

    A developer is creating a custom retry policy for an application that interacts with Azure Table Storage. The policy must retry an operation only if a 'Conflict' (HTTP status code 409) is returned and the maximum number of retries has not been exceeded. All other HTTP status codes or exception types should cause the operation to fail immediately. Which condition correctly implements the logic to stop retrying if the status code is NOT a conflict?

    Answer and explanation

    Correct answer: B

    The goal of a custom retry policy is to define the conditions under which it should retry. The method should return true to retry and false to fail. The requirement is to retry ONLY on a 409 Conflict. Therefore, if the status code is anything OTHER than Conflict, the method should return false to stop the retry loop.

  7. Question 7

    You are architecting a solution that requires a messaging service for decoupling a front-end web application from a set of back-end processing services. Multiple, independent back-end services need to receive copies of the same message published by the front end. For example, when a new order is placed, one service should handle invoicing, another should update inventory, and a third should notify shipping. Each service must process the message independently. Which Azure messaging service provides this publish/subscribe functionality?

    Answer and explanation

    Correct answer: B

    Azure Service Bus Topics and Subscriptions are designed for the publish/subscribe (pub/sub) pattern. The front-end publishes a single message to a topic. Multiple back-end services each listen on their own subscription to that topic, and each subscription receives a copy of the message. This allows for one-to-many message distribution. Service Bus Queues are for one-to-one delivery, and Event Hubs are for high-throughput event streaming, not individual message processing by distinct consumers.

  8. Question 8

    You are tasked with securing an Azure VM that hosts a web server. The VM must be accessible from the internet on TCP port 443 (HTTPS), but all other inbound traffic from the internet should be denied. However, the VM must be able to communicate with other VMs in the same virtual network on all ports. Which Network Security Group (NSG) rule configuration is required to meet these requirements?

    Answer and explanation

    Correct answer: B

    NSGs have default rules. One default rule allows all traffic from the 'VirtualNetwork' source. Another default rule with a high priority number (65500) denies all inbound traffic from the 'Internet'. To meet the requirements, you only need to add one new inbound rule with a lower priority number (e.g., 100) that allows traffic on port 443 from the 'Internet' source. This rule will be processed before the default deny rule, allowing HTTPS traffic while the default rules correctly handle VNet traffic and deny all other internet traffic.

  9. Question 9

    A developer needs to provide temporary, read-only access to a specific blob in an Azure Storage account for an external client application. The access should expire in 24 hours. The main storage account keys must not be shared with the client. Which security mechanism should be generated and provided to the client?

    Answer and explanation

    Correct answer: B

    A Shared Access Signature (SAS) provides delegated access to resources in a storage account. It allows for granular control over permissions (read, write, delete), expiry time, and the specific resource (e.g., a single blob). This is the standard and secure way to grant temporary, limited access without exposing the account keys.

  10. Question 10

    You are deploying a multi-tier application to Azure. The web tier consists of four VMs, and the business logic tier consists of two VMs. You need to ensure that a planned maintenance event by Microsoft does not cause an entire tier to become unavailable. How should you configure the VMs to achieve this goal?

    Answer and explanation

    Correct answer: B

    The best practice for multi-tier applications is to place the VMs for each tier into their own separate Availability Set. An Availability Set distributes VMs across Update Domains and Fault Domains. By using separate sets, you ensure that planned maintenance (which targets one Update Domain at a time) will only affect a subset of VMs within a single tier, not across different tiers simultaneously. This maintains the availability of the entire application.

Register free to unlock 10 more sample questions

Lifetime One

Own this practice test forever.

$79.99
$75.99
one-time
  • Full access to 526 questions
  • Study, Timed & Flashcard Modes
  • All past and future versions i
  • Detailed Explanations
  • Study Tracking & Past Attempts
  • Brainy AI Assistant
  • Lifetime updates

Two

Any 2 exams per month.

$20.00/exam
$39.99
/month
  • 2 active exam slots
  • Study, Timed & Flashcard Modes
  • All past and future versions i
  • Detailed Explanations
  • Study Tracking & Past Attempts
  • 1,000 Brainy AI Credits
  • Cancel anytime

Premium Twelve

Any 12 exams over 3 months.

$15.00/exam
$179.99
/3 months
  • 4 active exam slots
  • Study, Timed & Flashcard Modes
  • All past and future versions i
  • Detailed Explanations
  • Study Tracking & Past Attempts
  • 15,000 Brainy AI Credits
  • Dedicated support
  • Friend seat included — full access

Trusted by professionals at

NvidiaSupabaseGitHubOpenAITursoClerkClaude AIAmazon