Start here! Get your feet wet with the Microsoft cloud and begin your journey to earning your Microsoft Certified: Azure Fundamentals certification!
Prepare and test your skills

Prepare and test your skills

Worked example. The correct answer is already marked and every option is explained below, so there is nothing to select here. To answer questions yourself, start the free trial.
An organization manages multiple Azure subscriptions across different business units. The cloud governance team needs to enforce a security policy across all current and future subscriptions to ensure that non-compliant resource configurations are audited organization-wide without requiring manual policy assignments on each separate subscription.
At which level of the Azure management hierarchy should the team assign this policy?
Keep the momentum going with these hand-picked practice scenarios
Want more questions like this?
Get a free certification question every week.
Management groups are containers in the Azure resource hierarchy that provide a governance scope above multiple Azure subscriptions. They allow organizations to efficiently manage access, policies, and compliance across multiple subscriptions by grouping them into a unified hierarchical structure.
In Azure's four levels of management scope (management groups, subscriptions, resource groups, and resources), settings applied at higher levels automatically flow down to lower levels through inheritance:
Applying governance at the management group level eliminates administrative overhead and the risk of configuration drift, ensuring consistent security and policy enforcement across the entire enterprise cloud footprint.