Microsoft Security, Compliance, and Identity Fundamentals SC-900 Practice Question
Your organization hosts a public-facing web application on Azure App Service behind an Application Gateway. To guard the site against common exploits such as SQL injection and cross-site scripting without modifying the application code, which Azure security service should you enable?
Enable Azure DDoS Protection Standard for the web app.
Deploy Azure Firewall in the virtual network.
Use Azure Bastion to connect securely to the App Service.
Enable Web Application Firewall (WAF) on the Application Gateway.
Web Application Firewall (WAF) provides layer-7 protection for HTTP/S traffic passing through Application Gateway. It automatically inspects requests and blocks signatures associated with SQL injection, cross-site scripting, and other OWASP Top 10 threats. Azure Firewall focuses on network-level filtering and does not inspect application-layer payloads, Azure DDoS Protection mitigates volumetric attacks but does not analyze individual web requests, and Azure Bastion offers secure remote management rather than traffic inspection.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is the Web Application Firewall (WAF) and how does it protect web applications?
Open an interactive chat with Bash
Can Azure Firewall be used to replace Web Application Firewall (WAF)?
Open an interactive chat with Bash
How does Azure DDoS Protection differ from Web Application Firewall (WAF)?
Open an interactive chat with Bash
Microsoft Security, Compliance, and Identity Fundamentals SC-900
Describe the capabilities of Microsoft security solutions
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .