Start here! Get your feet wet with the Microsoft cloud and begin your journey to earning your Microsoft Certified: Azure Fundamentals certification!
Prepare and test your skills

Prepare and test your skills

Worked example. The correct answer is already marked and every option is explained below, so there is nothing to select here. To answer questions yourself, start the free trial.
An administrator assigns a team member the Owner role on a production Azure resource group. To safeguard against accidental data loss, the administrator also applies a CanNotDelete (Delete) resource lock directly to a critical Azure Storage account inside that resource group.
How does the resource lock affect the operations that the user can perform on this storage account?
An Azure CanNotDelete resource lock (often labeled as a Delete lock in the Azure portal) is a governance mechanism designed to prevent unauthorized or accidental deletion of critical cloud assets. When placed on a resource, such as a Storage account, it creates an explicit management barrier that blocks all deletion operations while allowing standard operational activities to continue uninterrupted.
Combining Role-Based Access Control (RBAC) with a CanNotDelete resource lock ensures the user can fulfill day-to-day administrative duties without risking catastrophic, unintended downtime or resource destruction.
Keep the momentum going with these hand-picked practice scenarios
Want more questions like this?
Get a free certification question every week.