Microsoft Certified: Azure Fundamentals (AZ-900) Practice Exam

Disable ads (and more) with a membership for a one time $4.99 payment

Prepare for the Microsoft Certified: Azure Fundamentals (AZ-900) Practice Exam with our comprehensive quiz. Study with flashcards, multiple choice questions, and detailed explanations to ace your exam!

Practice this question and more.


Which of the following is an Azure encryption service?

  1. Azure Storage Service Encryption

  2. Azure Disk Encryption

  3. Transparent Data Encryption (TDE)

  4. All of the above

The correct answer is: All of the above

The correct answer is all of the above, as each of the listed options represents a distinct Azure encryption service used to enhance data security. Azure Storage Service Encryption applies encryption to data stored in Azure Storage, ensuring that data at rest is automatically encrypted before it is written to the storage and decrypted when it is accessed. This service helps protect sensitive information by encrypting it without requiring any changes to the applications accessing the data. Azure Disk Encryption enables you to encrypt Windows and Linux IaaS virtual machine disks. This feature uses BitLocker technology for Windows VMs and DM-Crypt for Linux VMs. By encrypting the disks, you ensure that the data contained on these disks is secure and becomes inaccessible if someone tries to detach and access the disks independently. Transparent Data Encryption (TDE) is specifically utilized for encrypting SQL databases within Azure. It provides encryption for the database files and backups without requiring changes to the application. TDE helps protect the data at rest while ensuring that the database performance remains uncompromised. Since all these services serve the purpose of encrypting data within Azure environments, the inclusion of all of them in the answer reflects the comprehensive approach Azure takes towards data encryption and security.