Microsoft Azure Solutions Architect Expert AZ-305 Practice Question

Contoso Ltd has three Azure subscriptions in a single management group. The company must prove ongoing ISO 27001 compliance, view a consolidated compliance score for all subscriptions, automatically deploy the Log Analytics agent to any virtual machine that is missing it, and let resource owners request time-bound documented waivers for individual controls when justified. You need to recommend the Azure-native approach that best meets all these requirements. Which approach should you recommend?

  • Publish an ISO 27001 Azure Blueprint and lock the blueprint assignments for all subscriptions.

  • Assign the built-in ISO 27001 initiative in Azure Policy at the management-group level, using DeployIfNotExists policies and policy exemptions.

  • Enable Microsoft Defender for Cloud's regulatory compliance dashboard and create custom ISO 27001 recommendations for each subscription.

  • Use Azure Advisor to generate ISO 27001 scorecards and apply resource locks to prevent configuration drift.

Microsoft Azure Solutions Architect Expert AZ-305
Design identity, governance, and monitoring solutions
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot