Professional Standards & Competencies Flashcards
7 cards from real AZ-301 practice questions. Tap to flip, then mark Knew It or Still Learning — missed cards come back until you master them.
Read the first 7 Professional Standards & Competencies flashcards as text
An architect must ensure a multi-region Azure deployment meets a 99.99% SLA. Which combination best achieves this?
Answer: Active-active across two regions with Traffic Manager
Active-active across two regions with Traffic Manager provides geographic redundancy and automatic failover to meet 99.99% composite SLA.
A solutions architect is reviewing a design where application secrets are stored in app configuration files committed to a Git repository. What is the correct recommendation?
Answer: Use Azure Key Vault with managed identity access
Azure Key Vault with managed identity eliminates secret exposure in code and provides centralized, audited secret management.
During a design review, a stakeholder requests that all data at rest be encrypted with customer-managed keys. Which Azure service handles this requirement?
Answer: Azure Key Vault with customer-managed keys (CMK)
Azure Key Vault with CMK lets customers control and rotate their own encryption keys for data at rest across Azure services.
An architect needs to validate that a proposed solution meets enterprise governance standards before deployment. What is the recommended Azure-native approach?
Answer: Apply Azure Policy with deny effects and use Compliance dashboard
Azure Policy with deny effects prevents non-compliant resources from being created and the Compliance dashboard tracks organizational standards proactively.
A company requires that only approved VM SKUs be deployed across all subscriptions. Which approach enforces this at scale?
Answer: Apply an Azure Policy definition at the Management Group level
Azure Policy at the Management Group level applies governance rules across all child subscriptions in a consistent, auditable manner.
An architect documents that a workload requires RPO of 15 minutes. Which DR strategy aligns with this requirement?
Answer: Warm standby with continuous async replication
A warm standby with continuous async replication maintains a near-current replica, enabling recovery within 15 minutes (RPO).
A design review reveals that an API exposes internal microservice endpoints directly to the internet. What architectural correction should the architect recommend?
Answer: Place Azure API Management in front of all microservices
Azure API Management abstracts internal microservice endpoints, providing authentication, rate limiting, and a single public facade.