Practice for the Microsoft Azure Fundamentals (AZ-900) exam with 16 exam-style practice questions, instant answer reveals, and concise explanations of every correct answer. Topics include: Which of the following is an example of an Infrastructure-as-a-Service (IaaS) offering in Azure?. Follow @CertPunch and visit certpunch.com for more certification practice exams and study content.
Prefer hands-on? Take this round as an interactive practice test — answer every question, get instant feedback, and see your score: Start the Microsoft Azure Fundamentals (AZ-900) practice test →
What you will practice
- Which of the following is an example of an Infrastructure-as-a-Service (IaaS) offering in Azure?
- Which of the following is a characteristic of cloud computing?
- Fill in the blank: __________ is a physical device that allows you to transfer large amounts of data to and f…
- A resource can be said to "belong to" one and only one resource group. What does a resource group belong to?
- Which of the following is NOT a common use case for Azure Policy?
- If two networks are peered in different regions, which network does the data between them travel over?
Answers and explanations
Tap a question to expand the answer and the exam reasoning. Try to commit to your own pick first.
Q1. Which of the following is an example of an Infrastructure-as-a-Service (IaaS) offering in Azure?
Answer: D. Azure Virtual Machines
Azure Virtual Machines is an Infrastructure as a Service offering because you manage the operating system and applications while the provider handles the physical hardware. SQL Database and Logic Apps are higher-level services. Remember that IaaS gives you the most control over the OS.
Q2. Which of the following is a characteristic of cloud computing?
Answer: B. Computing resources are available on-demand and can be rapidly provisioned.
Cloud computing relies on rapid provisioning and on-demand resource availability. Users can deploy services quickly without long waits. Options suggesting manual scaling or private restrictions misrepresent the flexible nature of public cloud services.
Q3. Fill in the blank: __________ is a physical device that allows you to transfer large amounts of data to and from Azure. It's particularly useful for transferring data that is too large or too slow to transfer over the internet.
Answer: B. Azure Data Box
Azure Data Box is a physical appliance used to migrate massive datasets to the cloud when internet bandwidth is limited. It provides a secure alternative to online transfers. Azure Migrate handles assessments rather than physical shipping.
Q4. A resource can be said to "belong to" one and only one resource group. What does a resource group belong to?
Answer: C. Subscription
Resource groups are logical containers that exist within a single Azure subscription. Subscriptions serve as the primary boundary for billing and access management. Management groups sit above subscriptions to organize multiple subscriptions together.
Q5. Which of the following is NOT a common use case for Azure Policy?
Answer: C. Denying access to resources to a specific individual
Denying access to a specific individual requires role-based access control, not Azure Policy. Azure Policy enforces compliance by evaluating resource properties and blocking non-compliant deployments. Use Policy for rules and access control for users.
Q6. If two networks are peered in different regions, which network does the data between them travel over?
Answer: B. Microsoft global network
Global virtual network peering routes traffic over the Microsoft global network backbone. This keeps your data off the public internet, providing lower latency and a more secure path, which is exactly what the exam expects you to identify.
Q7. What is a major benefit of using serverless computing for applications with unpredictable workloads?
Answer: C. Reduced operational costs
Serverless computing reduces operational costs for unpredictable workloads because you only pay for execution time. There is no charge for idle resources. Fixed pricing structures are rarely part of serverless architectures. Look for the consumption billing model.
Q8. Which Azure storage type is specifically designed to be block-level storage volumes managed by Azure for use with VMs?
Answer: C. Azure Disks
Azure Disks delivers block-level storage explicitly designed to attach to virtual machines. This provides essential persistent storage for operating systems and data. Blob storage is optimized for unstructured data like text files instead.
Q9. What is the primary purpose of multi-factor authentication (MFA)?
Answer: B. To add an extra layer of security to user accounts by requiring multiple forms of verification.
Multi-factor authentication adds a critical security layer by demanding multiple verification forms. This ensures that a compromised password alone does not grant account access. It does not necessarily eliminate passwords entirely.
Q10. Which cloud model is often used by government agencies or organizations with strict compliance requirements?
Answer: D. Private Cloud
A private cloud delivers dedicated hardware and isolated networking for a single organization. This model provides the strict control and security necessary for compliance. Public clouds are shared, while hybrid clouds mix environments.
Q11. Which of the following is the highest level of organization within the Azure hierarchy?
Answer: D. Management group
Management groups sit above subscriptions in the Azure resource hierarchy, allowing you to manage access, policies, and compliance across multiple subscriptions efficiently. Remember the hierarchy: root management group, management groups, subscriptions, resource groups, and resources.
Q12. What is the primary purpose of Azure B2C?
Answer: D. To enable your organization to provide identity and access management for your customers.
Azure Active Directory B2C provides business-to-consumer identity management, letting external customers log into applications using their preferred social or enterprise credentials. This differs from standard Azure AD, which focuses on internal employee identities.
Q13. Which Azure service is used to host Azure App Services?
Answer: D. App Service Plan
An App Service Plan defines the compute resources and pricing tier used to host your web applications. It dictates the region, operating system, and instance size. Resource groups are logical containers, not compute hosts.
Q14. What is the primary difference between PaaS and IaaS?
Answer: C. The level of control over the infrastructure
The primary difference between Platform as a Service and Infrastructure as a Service is the level of management control you retain. IaaS gives you control over operating systems and applications, while PaaS abstracts the underlying infrastructure entirely.
Q15. Which of the following best describes the concept of governance in Azure?
Answer: D. Establishing policies and processes to manage and control Azure resources effectively.
Governance in Azure involves establishing policies and processes to manage and control your resources effectively. This ensures compliance and security. Tools like Azure Policy help enforce these organizational rules across your subscriptions.
Q16. Fill in the blank: The ___________ model is a framework that outlines the division of responsibilities between a cloud provider and its customers.
Answer: D. Shared responsibility
The shared responsibility model defines which security and maintenance tasks are handled by the cloud provider and which are handled by the customer. Responsibilities shift depending on the service type, from IaaS to SaaS.
More Microsoft Azure Fundamentals (AZ-900) drills and other practice exams are on @CertPunch. New rounds drop every few days at certpunch.com.