Microsoft Security, Compliance, and Identity Fundamentals Free Sample Questions

17 free sample questions203 in the full practice test Other version: 98-367(49)

Try simulator

SC-900 Sample Questions

  1. Question 1

    Which score measures an organization's progress in completing actions that help reduce risks associated to data protection and regulatory standards?

    Answer and explanation

    Correct answer: D

  2. Question 2

    What do you use to provide real-time integration between Azure Sentinel and another security source?

    Answer and explanation

    Correct answer: D

  3. Question 3

    Which Microsoft portal provides information about how Microsoft cloud services comply with regulatory standard, such as International Organization forStandardization (ISO)?

    Answer and explanation

    Correct answer: C

  4. Question 4

    In the shared responsibility model for an Azure deployment, what is Microsoft solely responsible for managing?

    Answer and explanation

    Correct answer: D

  5. Question 5

    A global financial institution is re-evaluating its security posture after a recent audit. The Chief Information Security Officer (CISO) wants to adopt a strategy that assumes every access request is a potential breach, regardless of where the request originates. Which security model should the CISO implement to meet this requirement?

    Answer and explanation

    Correct answer: B

    The Zero Trust model is built on the guiding principles of 'Verify explicitly', 'Use least privileged access', and 'Assume breach'. It assumes that no traffic is trusted by default, regardless of whether it is inside or outside the network perimeter.

  6. Question 6

    A cloud architect is designing a solution hosted on Azure Platform as a Service (PaaS). According to the shared responsibility model, which of the following responsibilities is retained solely by the customer?

    Answer and explanation

    Correct answer: C

    In all cloud deployment models (IaaS, PaaS, SaaS), the customer is always responsible for their information and data, as well as the devices (endpoints) and accounts/identities.

  7. Question 7

    A security analyst is reviewing the organization's encryption strategy. They need to ensure that data stored in Azure Blob Storage cannot be read if the physical disks are stolen from the datacenter. Which type of encryption addresses this specific threat?

    Answer and explanation

    Correct answer: B

    Encryption at rest protects data that is stored on physical media (like disks). It ensures that even if the physical media is accessed or stolen, the data remains unreadable without the decryption key.

  8. Question 8

    True or False: In a modern security posture, the network is considered the primary security perimeter.

    Answer and explanation

    Correct answer: B

    False. In modern cloud computing, identity is the primary security perimeter. Users access resources from various networks and locations, making the traditional network perimeter less effective as the primary control point.

Register free to unlock 9 more sample questions

Lifetime One

Own this practice test forever.

$79.99
$75.99
one-time
  • Full access to 252 questions
  • Study, Timed & Flashcard Modes
  • All past and future versions i
  • Detailed Explanations
  • Study Tracking & Past Attempts
  • Brainy AI Assistant
  • Lifetime updates

Two

Any 2 exams per month.

$20.00/exam
$39.99
/month
  • 2 active exam slots
  • Study, Timed & Flashcard Modes
  • All past and future versions i
  • Detailed Explanations
  • Study Tracking & Past Attempts
  • 1,000 Brainy AI Credits
  • Cancel anytime

Premium Twelve

Any 12 exams over 3 months.

$15.00/exam
$179.99
/3 months
  • 4 active exam slots
  • Study, Timed & Flashcard Modes
  • All past and future versions i
  • Detailed Explanations
  • Study Tracking & Past Attempts
  • 15,000 Brainy AI Credits
  • Dedicated support
  • Friend seat included — full access

Trusted by professionals at

NvidiaSupabaseGitHubOpenAITursoClerkClaude AIAmazon