Escrito por estudiantes que aprobaron Inmediatamente disponible después del pago Leer en línea o como PDF ¿Documento equivocado? Cámbialo gratis 4,6 TrustPilot
logo-home
Document preview thumbnail
Vista previa 4 fuera de 65 páginas
Examen

AZURE ADMINISTRATOR ASSOCIATE RENEWAL STUDY GUIDE 2026 QUESTIONS WITH ANSWERS GRADED A+

Document preview thumbnail
Vista previa 4 fuera de 65 páginas

AZURE ADMINISTRATOR ASSOCIATE RENEWAL STUDY GUIDE 2026 QUESTIONS WITH ANSWERS GRADED A+

Vista previa del contenido

AZURE ADMINISTRATOR ASSOCIATE
RENEWAL STUDY GUIDE 2026
QUESTIONS WITH ANSWERS GRADED A+

● Azure Security Center tiers: Answer: Free
Standard - $15 a month per node


● Authentication (AuthN) Answer: Process of establishing identity of
a person or service. Includes act of challenging party for their creds.
Establishes they ARE who they say they are.


● Authorization (AuthZ) Answer: Establishes what access you are
allowed


● Azure MFA for global admins is: Answer: Free


● Azure MFA for non-global admins is: Answer: Not free. Requires
specific license


● Identity Answer: A thing that can be authenticated: Users, Servers,
Services, Apps


● Principle Answer: An identity with certain roles: Sudo or CMD as
an admin. Role changes even with identity staying the same. Groups
are another example or principles

,● Service Principle Answer: Identity used by a service or application.
Can be assigned roles.


● Role-Based Access Control (RBAC) Answer: Roles are sets of
permissions, users are assigned to roles; users are assigned to groups
and the group are assigned to roles. Like editor or read only. Can be
granted to access an Azure service instance


● Privileged Identity Management (PIM) Answer: A paid for service
that provides oversight of role assignments, self-service and just in
time role activation


● Symmetric encryption Answer: Uses a single key to encrypt and
decrypt data.


● Asymmetric encryption Answer: Two keys are used; one key
encodes the message, and the other key decodes the message. Used
for Transport Layer Security (TLS) which is used for HTTPS and data
signing


● Azure Storage Service Encryption Answer: Data at rest encryption.
Used for Blob storage, Azure files, etc


● Azure Disk Encryption Answer: Encrypts windows or linux IaaS
VM disks. Uses bitlocker feature of Windows and the dm-crypt
feature of Linux to provide encryption for the OS and data disk.
Integrated into Azure Key Vault

,● Transport Data Encryption (TDE) Answer: Helps protect Azure
SQL database and Azure Data Warehouse. Enabled by default. You
can use Azure Key Vault key or bring your own key (BYOK)


● Azure Key Vault Answer: - Secret management, tokens, passwords,
certs, API keys etc.
- Key management, encryption keys
- Certificate management, manage and use your SSL/TLS certs for
your Azure and internally connected services
- Store secrets backed by hardware security modules (HSM). Can use
software or FIPS HSM


● Benefits of Azure Key Vault include Answer: - Centralized app
secrets
- Securely stored secrets and keys
- Monitor access and use
- Simplify admin of app secrets
- Integrate with other Azure services


● X.509 v3 Answer: Certs used in Azure


● Firewall Answer: Grants access based on IP. Can check port and
protocol also


● Azure Firewall Answer: Managed. Cloud based. Fully stateful.
Built with high availability and unrestricted cloud scalability. Protects
against inbound non-HTTP/S protocols like RDP, SSH and FTP.

, Also provides outbound network level protection for all ports and
protocols and application level protection for outbound HTTP/S


● Azure App Gateway Answer: A load balancer that includes a Web
App Firewall (WAF) that protects against common known
vulnerabilities in websites. Designed for HTTP traffic


● Network Virtual Appliance (NVA) Answer: Ideal options for non-
HTTP services on advanced configurations. Similar to hardware
firewalls


● Azure DDoS protection Answer: Monitors traffic at the Azure
network edge before it effects availability.
It identifies DDoS traffic and blocks it while allowing legit traffic


● Azure DDoS Protection: Basic tier Answer: Auto enabled in Azure.
Always on monitoring. Real time monitoring/mitigation of common
network level attacks.


● Azure DDoS protection: Standard tier Answer: Additional
mitigation capabilities tuned specifically to Azure Virtual Network
resources. Requires no app changes. Dedicated traffic monitoring.
Machine learning. Mitigate against: volumetric attacks, protocol
attacks, resource layer attacks


● Volumetric Attacks Answer: Attackers goal is to flood network
layer with a substantial amount of seemingly legit traffic

Información del documento

Subido en
23 de julio de 2026
Número de páginas
65
Escrito en
2025/2026
Tipo
Examen
Contiene
Preguntas y respuestas
$12.99

¿Documento equivocado? Cámbialo gratis Dentro de los 14 días posteriores a la compra y antes de descargarlo, puedes elegir otro documento. Puedes gastar el importe de nuevo.
Escrito por estudiantes que aprobaron
Inmediatamente disponible después del pago
Leer en línea o como PDF

Seller avatar
Los indicadores de reputación están sujetos a la cantidad de artículos vendidos por una tarifa y las reseñas que ha recibido por esos documentos. Hay tres niveles: Bronce, Plata y Oro. Cuanto mayor reputación, más podrás confiar en la calidad del trabajo del vendedor.
Vendido
32
Seguidores
1
Artículos
14355
Última venta
3 días hace


Por qué los estudiantes eligen Stuvia

Creado por compañeros estudiantes, verificado por reseñas

Calidad en la que puedes confiar: escrito por estudiantes que aprobaron y evaluado por otros que han usado estos resúmenes.

¿No estás satisfecho? Elige otro documento

¡No te preocupes! Puedes elegir directamente otro documento que se ajuste mejor a lo que buscas.

Paga como quieras, empieza a estudiar al instante

Sin suscripción, sin compromisos. Paga como estés acostumbrado con tarjeta de crédito y descarga tu documento PDF inmediatamente.

Student with book image

“Comprado, descargado y aprobado. Así de fácil puede ser.”

Alisha Student

Preguntas frecuentes