Microsoft Security, Compliance, and Identity Fundamentals SC-900 Practice Question
Your company hosts a customer-facing web application on Azure. You must prevent SQL injection and cross-site scripting attacks by inspecting HTTP/S requests at the application layer, and you do not want to modify the application's code. Which Azure service should you use?
Azure Web Application Firewall (WAF) provides centralized, application-layer protection for web apps that are published through Azure Application Gateway, Azure Front Door, or Azure CDN. WAF applies the Open Web Application Security Project (OWASP) Core Rule Set to incoming HTTP or HTTPS traffic and can automatically block common exploits such as SQL injection or cross-site scripting without requiring any changes to the application itself.
Azure Firewall offers stateful packet inspection and egress filtering but does not provide OWASP-based Layer 7 attack mitigation. Network security groups filter traffic by IP address, port, and protocol at the subnet or NIC level and cannot interpret web requests. Azure DDoS Protection Standard focuses on absorbing large-scale volume or protocol attacks at the network edge, not inspecting individual web requests for malicious payloads. Therefore, Azure Web Application Firewall is the correct choice.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is OWASP and why is it significant for WAF?
Open an interactive chat with Bash
How does Azure WAF differ from Network Security Groups (NSGs)?
Open an interactive chat with Bash
What web vulnerabilities can Azure WAF protect against?
Open an interactive chat with Bash
Microsoft Security, Compliance, and Identity Fundamentals SC-900
Describe the capabilities of Microsoft security solutions
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .