Start here! Get your feet wet with the Microsoft cloud and begin your journey to earning your Microsoft Certified: Azure Fundamentals certification!
Prepare and test your skills

Prepare and test your skills

Worked example. The correct answer is already marked and every option is explained below, so there is nothing to select here. To answer questions yourself, start the free trial.
An enterprise is deploying a hybrid cloud architecture that connects its on-premises environment with Microsoft Azure. To satisfy governance and compliance standards, the security team needs to implement centralized identity authentication, enforce least-privilege access permissions, and securely store application secrets and encryption keys in the cloud.
Which set of Azure security services and features should the organization implement to meet these requirements?
Keep the momentum going with these hand-picked practice scenarios
Want more questions like this?
Get a free certification question every week.
Microsoft Entra ID, Azure role-based access control (Azure RBAC), and Azure Key Vault form a foundational security and identity triad in Microsoft Azure. Together, they provide cloud identity management, fine-grained access governance, and centralized secrets protection across public and hybrid cloud environments.
This combination directly addresses all three security pillars required by the organization—identity, authorization, and cryptographic secret protection—without adding unnecessary development overhead or managing custom infrastructure.