Microsoft Azure Solutions Architect Expert AZ-305 Practice Question

Your company hires external vendors to apply monthly security patches in several Azure subscriptions. Security policy states that vendors cannot have standing permissions, can activate permissions only during the approved maintenance window for no more than eight hours, must obtain approval from the subscription owner for each activation, and all activation activity must be automatically audited without custom scripts. With minimal administrative effort, which Azure-native solution satisfies all requirements?

  • Create an access package in Azure AD entitlement management that adds vendors to the required role.

  • Apply an Azure Policy initiative that blocks role actions outside the maintenance window.

  • Assign vendors to a custom RBAC role that has an expiration date set to the next maintenance window.

  • Configure Azure AD Privileged Identity Management and assign vendors as eligible for the required Azure RBAC role.

Microsoft Azure Solutions Architect Expert AZ-305
Design identity, governance, and monitoring solutions
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot