Start here! Get your feet wet with the Microsoft cloud and begin your journey to earning your Microsoft Certified: Azure Fundamentals certification!
Prepare and test your skills

Prepare and test your skills

Worked example. The correct answer is already marked and every option is explained below, so there is nothing to select here. To answer questions yourself, start the free trial.
An enterprise is planning to migrate several workloads to Microsoft Azure across Infrastructure as a Service (IaaS), Platform as a Service (PaaS), and Software as a Service (SaaS) models. The leadership team wants to establish clear operational boundaries between internal IT staff and the cloud provider.
Under the shared responsibility model, which security responsibility is always managed entirely by Microsoft across all cloud service models?
Keep the momentum going with these hand-picked practice scenarios
Want more questions like this?
Get a free certification question every week.
Physical security and host infrastructure maintenance encompass the protection and operational management of the underlying physical assets that power cloud computing. This includes securing the physical datacenters, managing facility access controls, providing environmental safeguards (such as power redundancy and cooling), and maintaining physical servers, hypervisors, and physical network cabling and switches.
In the shared responsibility model, responsibilities are divided between the customer and the cloud provider based on the chosen deployment model. However, physical infrastructure is the one foundational layer where responsibility never shifts to the customer:
Transferring physical infrastructure management to Azure allows organizations to eliminate capital expenditures associated with constructing datacenters, purchasing server hardware, and hiring on-site security guards. Regardless of whether an organization adopts IaaS, PaaS, or SaaS, the security of the cloud foundation remains completely in Microsoft's hands.