Microsoft Azure Developer Associate AZ-204 Practice Question

Your team is developing an Azure Function app that uses the Azure.Identity library with DefaultAzureCredential to retrieve a secret from an Azure Key Vault at runtime. The Function app is deployed with a system-assigned managed identity. You need to ensure that the code can successfully call GetSecretAsync without storing any credentials or certificates in the code or configuration. What should you do?

  • Add a Key Vault reference in the Function app settings that uses the secret's URI.

  • Assign the managed identity the Contributor role on the resource group that contains the Key Vault.

  • Create a Key Vault access policy that grants the Function app's managed identity the Get permission for secrets.

  • Enable soft-delete and purge protection on the Key Vault.

Microsoft Azure Developer Associate AZ-204
Implement Azure security
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot