Microsoft Azure Security Engineer Associate AZ-500 Practice Question
You manage an Azure Kubernetes Service (AKS) cluster that runs line-of-business workloads. Compliance policy requires that you receive automatic security alerts when a container in the cluster attempts crypto-mining or performs privilege escalation at runtime. The solution must integrate with Microsoft Defender for Cloud and should not require you to manually maintain DaemonSets. Which action should you perform first?
Turn on Azure Monitor Container insights for the AKS cluster.
Enable the Microsoft Defender for Containers plan for the subscription that hosts the AKS cluster.
Create an AKS diagnostic setting that streams Kubernetes audit logs to Log Analytics.
Deploy the Azure Policy add-on for AKS and assign the Pod Security Standards initiative.
Microsoft Defender for Cloud provides runtime threat detection for AKS through the Defender for Containers plan. When you enable this plan for the subscription or resource group that contains the AKS cluster, Defender automatically deploys an extension that adds the necessary sensor DaemonSet to every node. The sensor continuously monitors container activity and sends alerts such as crypto-mining or privilege-escalation attempts to Defender for Cloud. Streaming Kubernetes audit logs, enabling Azure Monitor Container insights, or enforcing Pod Security Standards with Azure Policy improve visibility or posture but do not supply the required runtime threat detection alerts.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is Microsoft Defender for Containers?
Open an interactive chat with Bash
How does the sensor DaemonSet work in runtime threat detection?
Open an interactive chat with Bash
Why are Kubernetes audit logs and Azure Policy insufficient for runtime threat detection?
Open an interactive chat with Bash
Microsoft Azure Security Engineer Associate AZ-500
Secure compute, storage, and databases
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .