โ† All AZ-900 Flashcard Decks

Azure Identity and Security Flashcards

7 cards from real AZ-900 practice questions. Tap to flip, then mark Knew It or Still Learning โ€” missed cards come back until you master them.

Read the first 7 Azure Identity and Security flashcards as text
  1. What is the core principle of the Zero Trust security model?

    Answer: Never trust, always verify

    Zero Trust assumes breach and verifies every request as though it originates from an untrusted network.

  2. Which Azure feature provides centralized, secure storage for secrets, keys, and certificates?

    Answer: Azure Key Vault

    Azure Key Vault securely stores and manages secrets, encryption keys, and certificates.

  3. What allows an Azure resource like a VM to authenticate to other services without storing credentials in code?

    Answer: Managed identities

    Managed identities let Azure resources authenticate to services automatically without managing credentials.

  4. Which concept describes one of the three pillars of Zero Trust regarding limiting user access?

    Answer: Use least privilege access

    Least privilege access grants users only the permissions they need to perform their tasks.

  5. What defense strategy uses multiple layers of security controls throughout an environment?

    Answer: Defense in depth

    Defense in depth applies layered security controls so that if one layer fails, others still protect resources.

  6. In the defense in depth model, which layer focuses on controlling access to applications and data through identity?

    Answer: Identity and access layer

    The identity and access layer ensures only authenticated and authorized users reach resources.

  7. Which principle assumes that a breach has already occurred and limits its impact through segmentation?

    Answer: Assume breach

    'Assume breach' is a Zero Trust principle that minimizes blast radius through segmentation and verification.