Microsoft Certified Azure Fundamentals · Free Practice Question Medium
Question 43
A company has just setup an Azure subscription and an Azure tenant. They want to implement strict policies when it comes to the security of Azure resources. They want to implement the following requirements
Ensure that the Virtual Machine Administrator team is restricted to the usage of the available regions for the deployment of new resources.
Ensure that the Virtual Machine Administrator team can only deploy virtual machines and their dependent resources.
Ensure that no one can accidently delete the virtual machines deployed by the Virtual Machine Administrator team
Which of the following could be used to fulfil the below requirement?
“Ensure that the Virtual Machine Administrator team is restricted to the usage of the available regions for the deployment of new resources”
-
A
D. Azure Locks
-
B
C. Azure Policies
-
C
B. Azure Identity Protection
-
D
A. Azure Role-Based Access Control
Reveal correct answer
Correct answer: B
Explanation
Answer: C
You can accomplish this with the help of policies. There is an in-built policy also available for this purpose

Option A is incorrect since this is used to given authorization to use Azure resources
Option B is incorrect since this is used to protect Azure AD identities
Option D is incorrect since this is used to protect Azure resources from users accidentally updating or deleting Azure resources
For more information on Azure policies, please visit the below URL
Discussion
Think the marked answer is wrong, or have a better explanation? Share it below — comments appear after review.
