All practice questions
65 questions
An enterprise architect is designing an identity and access management strategy for a multinational corporation. The strategy must incorporate Microsoft Entra ID hybrid authentication, identity protection, and granular access controls. Match each corporate security and technical requirement on the left to the most appropriate Microsoft Entra ID or Conditional Access feature on the right that satisfies the requirement.
Click a left item, then click its matching right item
Items
Matches
You are designing an Azure migration strategy for several legacy databases. Match each workload scenario on the left with the correct Azure Cosmos DB API on the right to ensure the migration requires minimal application refactoring while meeting performance and architectural requirements.
Click a left item, then click its matching right item
Items
Matches
You are designing an identity solution for an organization. Match each business and technical requirement to the most appropriate Microsoft Entra ID hybrid or multi-tenant identity technology.
Click a left item, then click its matching right item
Items
Matches
A conglomerate has an on-premises Active Directory Domain Services (AD DS) forest and three Microsoft Entra ID tenants. You are designing a hybrid and multi-tenant identity solution that must satisfy constraints regarding hybrid synchronization footprints, external collaboration types, self-service governance, and multi-tenant synchronization. Match each business and technical requirement to the most appropriate Microsoft Entra ID technology.
Click a left item, then click its matching right item
Items
Matches
You are designing a monitoring and log routing solution for an enterprise Azure environment. Match each log ingestion or routing requirement to its most appropriate Azure Monitor destination or configuration component.
Click a left item, then click its matching right item
Items
Matches
Contoso Pharmaceuticals has an on-premises Active Directory Domain Services (AD DS) environment and multiple Microsoft Entra ID tenants. The company needs to design a hybrid and multi-tenant identity solution to satisfy various connectivity, security, and partnership requirements. Match each operational requirement to the most appropriate Microsoft Entra ID synchronization or collaboration feature.
Click a left item, then click its matching right item
Items
Matches
Solas Renewable Solutions is designing a hybrid and multi-tenant identity solution to support its growing infrastructure. The company has an on-premises Active Directory Domain Services (AD DS) forest and has recently acquired a subsidiary with its own Microsoft Entra ID tenant.
Solas has the following identity and access management requirements:
- Ensure that users from the corporate office can sign in to Microsoft Entra ID services even if the on-premises datacenter goes offline.
- Enable automatic account lifecycle management and Global Address List (GAL) visibility for users from the acquired subsidiary's tenant.
- Allow external suppliers to securely access internal resources using their existing corporate credentials.
- Ensure that certain security-sensitive on-premises users have their login credentials validated in real-time against on-premises domain controllers, without storing password hashes in the cloud.
You need to recommend the appropriate identity technology for each requirement.
Match the identity requirements on the left with the correct Microsoft Entra feature or configuration on the right.
Click a left item, then click its matching right item
Items
Matches
An enterprise is designing a centralized monitoring and log routing architecture for their Azure workloads. The architecture must satisfy specific storage, analytics, and cost requirements. Match each log source and business requirement on the left to its correct Azure destination or configuration on the right.
Click a left item, then click its matching right item
Items
Matches
You are designing the identity security strategy for a Microsoft Entra ID tenant. You need to map specific identity requirements to their correct Microsoft Entra ID configurations. Match each Microsoft Entra ID feature to its correct primary function.
Click a left item, then click its matching right item
Items
Matches
You are designing a hybrid and multi-tenant identity solution for an organization that has an on-premises Active Directory Domain Services (AD DS) forest and a Microsoft Entra ID tenant. Match each technical requirement on the left to the correct identity technology or configuration on the right. Each technology or configuration may be used once, more than once, or not at all.
Click a left item, then click its matching right item
Items
Matches
An enterprise is designing a monitoring and log routing architecture for its Azure workloads to meet various operational and compliance requirements. Match each logging scenario to the most appropriate Azure Monitor routing configuration.
Click a left item, then click its matching right item
Items
Matches
An enterprise is designing a comprehensive monitoring and log routing architecture for various workloads across Azure subscriptions. You need to match the administrative and operational requirements with the most appropriate Azure Monitor destination or feature to minimize costs and administrative overhead.
Match the requirements on the left to their corresponding destinations or features on the right.
Click a left item, then click its matching right item
Items
Matches
An organization is designing a hybrid identity architecture to connect their on-premises Active Directory Domain Services (AD DS) environment to Microsoft Entra ID. How should you match each security or authentication requirement to the correct Microsoft Entra ID authentication or Conditional Access feature?
Click a left item, then click its matching right item
Items
Matches
Apex Orion Logistics is designing a hybrid identity and multi-tenant access solution to integrate their on-premises Active Directory Domain Services (AD DS) forest, apex-orion.internal (containing 8,400 users), with a new Microsoft Entra ID tenant. The design must satisfy the following constraints:
- Authentication: Users must log in to cloud resources using their on-premises credentials. Under normal conditions, password validation must occur on-premises, and passwords or password hashes must not be stored in the cloud.
- Business Continuity: The authentication solution must support an automated standby mechanism that allows cloud logins to succeed even if the on-premises domain controllers or network connections become completely unavailable.
- Self-Service: Hybrid users must be able to reset their own passwords using self-service password reset (SSPR) in the cloud, and the changes must immediately update the on-premises AD DS.
- External Collaboration: Users from partner organizations who use their own Microsoft Entra ID tenants must be able to access internal resources securely, governed by granular inbound and outbound trust policies.
Match each business or technical requirement of the Apex Orion Logistics hybrid architecture to the most appropriate Microsoft Entra ID feature.
Click a left item, then click its matching right item
Items
Matches
A financial services firm is designing its hybrid identity infrastructure using Microsoft Entra ID. The firm has an on-premises Active Directory Domain Services (AD DS) environment and requires a secure, resilient access management design. Which Microsoft Entra ID authentication methods and Conditional Access features should you select to meet each business and security requirement?
Click a left item, then click its matching right item
Items
Matches
Obsidian Systems is designing a hybrid identity and multi-tenant collaboration solution to integrate their on-premises Active Directory Domain Services (AD DS) forest, obsidian.local, with multiple Microsoft Entra ID tenants. The solution must adhere to strict authentication, provisioning, and business continuity requirements. Match each business requirement on the left to the most appropriate Microsoft Entra ID technology or configuration on the right.
Click a left item, then click its matching right item
Items
Matches
You are designing a data storage solution using Azure Cosmos DB for a multi-region retail application. The application requires global distribution across three Azure regions, a 99.999% availability SLA for both reads and writes, and a 90/10 read-to-write ratio. Match each application workload to the most appropriate Azure Cosmos DB API.
Click a left item, then click its matching right item
Items
Matches
An enterprise is designing a secure identity and access management infrastructure. You are tasked with mapping specific access control requirements to their corresponding Microsoft Entra ID or Conditional Access configuration. Match each requirement on the left to the most appropriate configuration on the right to satisfy the requirement.
Click a left item, then click its matching right item
Items
Matches
An educational technology provider is designing a monitoring and audit log routing architecture for its multi-tenant platform. You need to match each workload telemetry source or monitoring requirement to its most appropriate Azure destination or storage configuration to optimize cost, performance, and capability.
Click a left item, then click its matching right item
Items
Matches
An enterprise is designing a hybrid and multi-tenant identity solution to integrate their on-premises Active Directory Domain Services (AD DS) forest with Microsoft Entra ID. The solution must support various user populations, access control policies, and authentication methods. Match each business and security requirement on the left to the most appropriate Microsoft Entra identity technology or feature on the right that satisfies it.
Click a left item, then click its matching right item
Items
Matches