Microsoft Azure Security Engineer Associate AZ-500 Practice Question
Your organization groups 20 production subscriptions in Azure under a management group named Contoso-Prod. You are asked to start measuring compliance with the CIS Microsoft Azure Foundations Benchmark for all current and future subscriptions while keeping administrative overhead as low as possible. In Microsoft Defender for Cloud, what should you do first?
Deploy the built-in CIS compliance workbook from the Azure Monitor Gallery to the management group.
Add the CIS Microsoft Azure Foundations Benchmark standard at the Contoso-Prod management-group level.
Add the CIS Microsoft Azure Foundations Benchmark standard separately to each subscription.
Create a custom Azure Policy initiative that contains the CIS controls and assign it to the management group.
When you add a built-in regulatory compliance standard at a management-group scope in Microsoft Defender for Cloud, the assignment is automatically inherited by every existing subscription in that hierarchy and by any new subscriptions that are later added. Adding the standard at each subscription would work but requires repeated effort, and creating an Azure Policy initiative manually is unnecessary because Defender for Cloud already links the benchmark's policy definitions to the standard. Workbooks provide only visualization and do not onboard the benchmark.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is the CIS Microsoft Azure Foundations Benchmark?
Open an interactive chat with Bash
Why is assigning the compliance standard at the management group level recommended?
Open an interactive chat with Bash
Why is creating a custom Azure Policy initiative not the best choice for this use case?
Open an interactive chat with Bash
Microsoft Azure Security Engineer Associate AZ-500
Secure Azure using Microsoft Defender for Cloud and Microsoft Sentinel
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .