Microsoft AZ-900 Practice Test Questions and Exam Dumps Part1 Q1-20

View Full Microsoft AZ-900 Exam Dumps and Practice Test Dumps.

 

Question 1

Which Azure service provides virtual machines that allow organizations to run Windows or Linux operating systems in the cloud?

  1. Azure Functions
  2. Azure Virtual Machines
  3. Azure Logic Apps
  4. Azure Storage

Correct Answer: 2

Explanation

Azure Virtual Machines provides on-demand computing resources that run Windows or Linux operating systems in Microsoft Azure. Organizations can select virtual machine sizes, operating systems, storage configurations, and networking options based on workload requirements. Virtual machines provide more control over the operating system and installed software than many higher-level cloud services. Azure Functions is designed for serverless workloads, while Azure Logic Apps focuses on workflow automation. Azure Storage provides storage capabilities rather than serving as a general-purpose virtual machine hosting service.

Question 2

Which cloud computing model provides computing resources over the internet without requiring an organization to own the underlying physical infrastructure?

  1. Private cloud
  2. On-premises computing
  3. Public cloud
  4. Dedicated hosting

Correct Answer: 3

Explanation

A public cloud provides computing resources through a cloud provider’s infrastructure over the internet. Microsoft Azure is an example of a public cloud platform, allowing customers to use services without purchasing and maintaining the underlying physical servers and facilities. The cloud provider manages the physical infrastructure, while customers typically manage their applications and configurations according to the selected service model. Public cloud services can offer scalability, flexibility, and consumption-based pricing compared with maintaining equivalent infrastructure in an organization’s own data center.

Question 3

Which Azure service is designed specifically for storing objects such as documents, images, videos, and backups?

  1. Azure Blob Storage
  2. Azure Virtual Network
  3. Azure DNS
  4. Azure Functions

Correct Answer: 1

Explanation

Azure Blob Storage is an object storage service designed for large amounts of unstructured data. It can store items such as images, videos, documents, logs, backups, and other binary data. Blob Storage is highly scalable and can be accessed through Azure services, applications, and supported protocols. Azure Virtual Network provides private networking, Azure DNS manages domain name resolution, and Azure Functions provides serverless compute. Choosing Blob Storage is appropriate when an application needs scalable storage for objects rather than traditional virtual machine disks.

Question 4

What is a key characteristic of Platform as a Service (PaaS)?

  1. Customers must maintain physical servers
  2. Customers manage the building where servers are located
  3. Customers purchase all networking hardware
  4. The cloud provider manages much of the underlying infrastructure and platform

Correct Answer: 4

Explanation

Platform as a Service, or PaaS, provides a managed platform on which customers can develop, deploy, and run applications without managing much of the underlying infrastructure. The cloud provider typically handles physical servers, networking, storage, and other platform components. This allows development teams to focus more on application code and business functionality. PaaS generally requires less infrastructure management than Infrastructure as a Service. However, customers still remain responsible for their applications, configurations, and other components according to the specific service.

Question 5

Which Azure service provides centralized identity and access management for Azure resources and applications?

  1. Azure Monitor
  2. Microsoft Entra ID
  3. Azure Storage
  4. Azure Advisor

Correct Answer: 2

Explanation

Microsoft Entra ID provides identity and access management capabilities for users, applications, and resources. It supports authentication and authorization scenarios and helps organizations control who can access services and resources. Azure resources can also use role-based access control to assign appropriate permissions. Azure Monitor focuses on monitoring and telemetry, Azure Storage provides data storage, and Azure Advisor provides recommendations for improving Azure environments. Identity management is a fundamental part of cloud security because it helps organizations control access and protect resources from unauthorized use.

Question 6

Which Azure pricing benefit allows an organization to avoid purchasing physical servers before workloads are deployed?

  1. Capital expenditure can be reduced by using consumption-based cloud services
  2. Every Azure service is provided free of charge
  3. Azure requires customers to purchase hardware
  4. Cloud services eliminate all operational expenses

Correct Answer: 1

Explanation

Cloud computing can reduce the need for large upfront capital expenditures because organizations can consume Azure resources without first purchasing physical servers and related infrastructure. Many Azure services use consumption-based pricing, allowing customers to pay according to usage or selected pricing arrangements. This can provide greater financial flexibility compared with buying hardware before workloads are deployed. However, cloud computing does not eliminate all costs. Organizations still pay for the Azure services they consume, and careful resource management is necessary to control ongoing operational expenses.

Question 7

Which Azure service provides a managed relational database based on SQL Server technologies?

  1. Azure Cosmos DB
  2. Azure Blob Storage
  3. Azure SQL Database
  4. Azure Queue Storage

Correct Answer: 3

Explanation

Azure SQL Database is a fully managed relational database service based on the Microsoft SQL Server database engine. It allows organizations to run relational database workloads without managing the underlying operating system, physical hardware, or many traditional database infrastructure tasks. Azure SQL Database supports features such as scalability, high availability, security, and automated management capabilities. Azure Cosmos DB is a globally distributed NoSQL database service, while Blob Storage and Queue Storage are designed for object and message storage respectively rather than relational database workloads.

Question 8

Which cloud service model generally gives customers the greatest control over operating systems and virtual machine configurations?

  1. SaaS
  2. PaaS
  3. Serverless
  4. IaaS

Correct Answer: 4

Explanation

Infrastructure as a Service, or IaaS, generally provides customers with the greatest control over virtual machines, operating systems, networking configurations, and related infrastructure components. Customers are responsible for managing many aspects of the operating environment while the cloud provider manages the underlying physical infrastructure. PaaS provides a more managed application platform, while SaaS delivers complete software applications to users. Serverless services abstract infrastructure management even further. IaaS is therefore suitable when organizations need significant control over the computing environment.

Question 9

What is the primary purpose of an Azure region?

  1. To provide a geographic location containing one or more Azure datacenters
  2. To replace all Azure subscriptions
  3. To define an individual user account
  4. To store only Microsoft source code

Correct Answer: 1

Explanation

An Azure region represents a geographic area that contains one or more Azure datacenters and provides access to Azure services. Regions allow organizations to deploy workloads closer to users, help address data residency requirements, and support availability and disaster recovery strategies. Azure has many regions around the world, and service availability can vary by region. A region is not an individual user account or subscription. Selecting an appropriate region is an important architectural consideration when deploying applications and services in Microsoft Azure.

Question 10

Which Azure feature allows resources to be grouped logically so that access, management, and deployment can be handled together?

  1. Availability zone
  2. Resource group
  3. Azure region
  4. Management group

Correct Answer: 2

Explanation

An Azure resource group is a logical container for related Azure resources. Resources in a group can be managed together, including activities such as deployment, monitoring, access control, and lifecycle management. Resource groups are commonly used to organize resources that belong to the same application or workload. An availability zone provides physical separation within an Azure region, while a management group organizes subscriptions. Resource groups therefore provide an important organizational and management boundary for Azure resources.

Question 11

Which Azure service is primarily used to monitor application performance, availability, and resource activity?

  1. Azure Monitor
  2. Azure Policy
  3. Azure Key Vault
  4. Azure DNS

Correct Answer: 1

Explanation

Azure Monitor is a monitoring service that collects and analyzes metrics, logs, and other telemetry from Azure resources and applications. It helps organizations understand resource performance, detect issues, investigate operational problems, and create alerts based on defined conditions. Azure Monitor can provide visibility across different components of an environment. Azure Policy is focused on governance and compliance, Key Vault manages secrets and cryptographic material, and Azure DNS provides domain name resolution. Monitoring is essential for maintaining reliable and observable cloud workloads.

Question 12

Which Azure service provides recommendations to help optimize resources for cost, performance, reliability, and security?

  1. Azure DevOps
  2. Azure Virtual Network
  3. Azure Advisor
  4. Azure Storage

Correct Answer: 3

Explanation

Azure Advisor provides personalized recommendations that can help improve Azure environments across areas such as cost, performance, reliability, and security. It analyzes resource configurations and usage information to identify opportunities for optimization. For example, Advisor may recommend resizing underutilized resources or improving certain configurations. Azure DevOps supports development and delivery practices, Virtual Network provides networking capabilities, and Azure Storage provides storage services. Advisor is particularly useful for organizations seeking practical recommendations to improve the efficiency and management of their Azure resources.

Question 13

What does the consumption-based pricing model generally mean in Azure?

  1. Customers pay based on the Azure resources and services they consume
  2. Customers pay one fixed price regardless of usage
  3. Customers must purchase physical servers before using Azure
  4. Customers receive unlimited resources without charges

Correct Answer: 1

Explanation

Consumption-based pricing means customers generally pay according to the amount of Azure services or resources they use. This model allows organizations to scale usage according to workload requirements rather than purchasing a fixed amount of physical infrastructure in advance. Actual pricing depends on the specific Azure service, configuration, region, usage level, and applicable pricing model. Consumption-based pricing can provide flexibility, but organizations should monitor resource usage and apply cost management practices to prevent unexpected expenses.

Question 14

Which Azure service helps enforce organizational rules and evaluate resources for compliance with defined requirements?

  1. Azure Storage
  2. Azure Policy
  3. Azure Virtual Machines
  4. Azure Load Balancer

Correct Answer: 2

Explanation

Azure Policy helps organizations create and enforce governance rules for Azure resources. Policies can evaluate resource configurations and determine whether they comply with organizational requirements. They can also support activities such as auditing, denying noncompliant configurations, or automatically applying certain supported effects. Azure Policy is useful for maintaining consistency and compliance across an Azure environment. It differs from Azure RBAC, which primarily controls who can perform actions on resources. Policy focuses on whether resource configurations and behaviors meet defined organizational standards.

Question 15

Which Azure service is designed to protect secrets, keys, and certificates used by applications?

  1. Azure Monitor
  2. Azure Advisor
  3. Azure Key Vault
  4. Azure Bastion

Correct Answer: 3

Explanation

Azure Key Vault is a managed service designed to securely store and manage sensitive information such as secrets, cryptographic keys, and certificates. Applications can retrieve protected information from Key Vault rather than embedding credentials directly into application code or configuration files. This approach can improve security and simplify the management of sensitive values. Azure Monitor focuses on monitoring, Advisor provides recommendations, and Azure Bastion provides secure management access to virtual machines. Key Vault is therefore an important service for protecting application secrets and cryptographic assets.

Question 16

Which Azure capability allows an application to automatically increase or decrease resources according to workload demand?

  1. Autoscale
  2. Azure Policy
  3. Azure Resource Lock
  4. Azure DNS

Correct Answer: 1

Explanation

Azure autoscaling capabilities allow supported resources and services to increase or decrease capacity based on workload demand or defined conditions. Scaling out can add instances to handle increased demand, while scaling in can reduce resources when demand decreases. This can help applications maintain performance while avoiding unnecessary resource consumption during quieter periods. Autoscale behavior depends on the Azure service and configuration being used. It is an important cloud capability because workloads can change over time and may not require constant maximum capacity.

Question 17

What is the main purpose of Azure Resource Manager (ARM)?

  1. To provide email hosting for Azure users
  2. To manage and organize Azure resources through a consistent management layer
  3. To replace Microsoft Entra ID
  4. To provide physical network cables between datacenters

Correct Answer: 2

Explanation

Azure Resource Manager provides a management layer for creating, updating, organizing, and deleting Azure resources. It supports consistent management through tools such as the Azure portal, command-line tools, APIs, and templates. Resource Manager also supports concepts such as resource groups, role-based access control, tags, and resource locks. It does not replace Microsoft Entra ID or provide physical networking infrastructure. ARM helps create a consistent approach to managing Azure resources and is fundamental to how Azure deployments are organized.

Question 18

Which statement best describes Software as a Service (SaaS)?

  1. Customers manage physical servers and networking hardware
  2. Customers receive only raw storage capacity
  3. Customers use a complete application managed largely by the cloud provider
  4. Customers must install and maintain the cloud provider’s datacenter

Correct Answer: 3

Explanation

Software as a Service, or SaaS, provides users with a complete software application that is hosted and managed largely by the cloud provider. Customers generally focus on using the application and configuring available settings rather than managing servers, operating systems, or underlying infrastructure. Microsoft 365 is an example of a SaaS offering. SaaS typically requires less infrastructure management than IaaS or PaaS. The exact division of responsibilities depends on the service, but the provider manages most of the underlying technology.

Question 19

Which Azure feature can help prevent an important resource from being accidentally deleted?

  1. Resource lock
  2. Azure DNS
  3. Availability set
  4. Azure Blob lifecycle management

Correct Answer: 1

Explanation

Azure resource locks can help protect resources from accidental deletion or modification. A lock can be applied at an appropriate scope, such as a resource, resource group, or subscription, depending on the required protection. Locks are useful when administrators need an additional safeguard against unintended changes. They do not replace role-based access control or other security mechanisms. Availability sets are related to virtual machine availability, Azure DNS manages domain resolution, and Blob lifecycle management controls data movement or deletion according to defined rules.

Question 20

Which Azure concept provides physically separate locations within an Azure region to improve application availability?

  1. Resource groups
  2. Management groups
  3. Availability zones
  4. Azure subscriptions

Correct Answer: 3

Explanation

Availability zones are physically separate locations within an Azure region, each with independent power, cooling, and networking infrastructure. They allow supported workloads to be distributed across separate locations to reduce the impact of certain datacenter-level failures. Applications designed for zone redundancy can improve availability by avoiding dependence on a single physical location. Resource groups and subscriptions are management constructs, while management groups organize subscriptions. Availability zones are therefore an important Azure architecture feature for designing resilient applications and services.