AZ-400 Designing and Implementing Microsoft DevOps Solutions Exam
Seeking the thrill of transformative tech? Explore the art of designing and implementing DevOps solutions on Azure. Master the shift towards CI/CD, testing, and delivery, while preparing for the Designing and Implementing Microsoft DevOps Solutions exam!
Gauge your current knowledge

Gauge your current knowledge

A development team manages a critical application's source code in a GitHub repository. They need to implement a robust security and compliance plan for their `main` branch to ensure code quality and prevent unauthorized changes. The organization uses Microsoft Entra ID for centralized identity management. The team has identified the following requirements: * Direct pushes to the `main` branch must be strictly prohibited. * All code changes must go through a pull request process, requiring at least two approved reviews before merging. * Automated CI build and security scanning checks must pass successfully before a pull request can be merged into `main`. * All GitHub users must authenticate via Microsoft Entra ID, and their access policies should be validated against corporate standards. Which combination of GitHub and Azure features should the team implement to meet these set of requirements?
Related questions
Keep the momentum going with these hand-picked practice scenarios
A development team uses Azure DevOps pipelines to deploy applications to various Azure resources, including App Services and Azure SQL Databases. The organization's security policy mandates that all automated connections from Azure DevOps to Azure resources must adhere to the principle of least privilege, utilize automated credential management, and avoid hard-coded secrets. Which authentication method should the team prioritize for configuring their Azure DevOps service connections to Azure to meet these security requirements?
A company has Azure File Sync deployed with cloud tiering enabled on several Windows Servers. Users report that some files that should be tiered are still consuming local disk space, and some tiered files are failing to recall. The administrator needs to investigate these issues efficiently. Which monitoring tools and event logs should the administrator primarily use on the Windows Server to diagnose why files are failing to tier and recall, and to check the overall health of the server endpoint?
A large enterprise has deployed a critical, multi-tier application on Azure, comprising Azure Spring Apps microservices, Azure SQL Database, and several Azure Virtual Machines hosting legacy components. They are currently experiencing unexpectedly high data ingestion costs due to default monitoring configurations. The operations team requires a comprehensive monitoring solution that provides deep application performance insights, infrastructure health, and user behavior analytics, while significantly optimizing costs. The design must fulfill the following specific requirements: * Collect detailed application telemetry, including custom events and metrics, from Azure Spring Apps. * Monitor infrastructure performance counters and system logs from Azure Virtual Machines efficiently. * Implement cost-effective data retention for frequently collected logs that are less frequently queried. * Ensure critical alerts are configured to be both proactive and cost-efficient. * Provide unified dashboard visualization for all collected telemetry. Which integrated monitoring solution design best meets these requirements?
A software development company is designing a new cloud-native application composed of multiple independent microservices. The application needs to handle highly variable loads, including periods of inactivity, and must scale down to zero instances to optimize costs. The architecture requires robust inter-service communication, dynamic service discovery, and the ability to perform A/B testing by routing a percentage of traffic to new versions of services. The development team has strong containerization skills but prefers a platform that abstracts away the complexities of direct Kubernetes API management and underlying infrastructure operations. Which Azure container hosting and orchestration service should the company recommend to meet these requirements efficiently?
A company is deploying a critical, multi-tier application in an Azure region that supports Availability Zones. The application requires maximum resilience against infrastructure failures, including individual hardware component failures within a datacenter and complete datacenter outages within the region. Additionally, the company needs to ensure that planned Azure maintenance activities do not cause a full application downtime. Which Azure high availability strategy should be implemented for the application's virtual machines to meet these comprehensive requirements?
A company is migrating its on-premises virtual machines to Azure using the Infrastructure as a Service (IaaS) model. According to the shared responsibility model, which security aspect remains the primary responsibility of the company?
Want more questions like this?
Get a free certification question every week.