Start here! Get your feet wet with the Microsoft cloud and begin your journey to earning your Microsoft Certified: Azure Fundamentals certification!
Prepare and test your skills

Prepare and test your skills

Worked example. The correct answer is already marked and every option is explained below, so there is nothing to select here. To answer questions yourself, start the free trial.
An enterprise is planning to migrate its workloads to Microsoft Azure datacenters. As part of corporate compliance and regulatory requirements, all data written to physical storage infrastructure within the datacenters must be protected against unauthorized physical and digital access.
Which security capability does Azure provide by default to protect customer data stored on datacenter storage without requiring manual configuration?
Keep the momentum going with these hand-picked practice scenarios
Want more questions like this?
Get a free certification question every week.
Data at-rest encryption using platform-managed keys is a baseline security control implemented across Azure datacenter storage infrastructure. It automatically encrypts all customer content before it is committed to physical disks and transparently decrypts the data as soon as authorized access is granted.
This solution provides immediate, built-in protection across Azure datacenters. It satisfies enterprise compliance mandates instantly without introducing operational complexity or key management overhead for cloud administrators.