SC100 Microsoft Cybersecurity Architect Free Practice Test — 30 Questions

30 questions · Full explanations · No account required

Free
Question 1 of 30

A large financial institution is migrating its on-premises customer relationship management (CRM) system to a cloud-native Azure environment. The legacy CRM utilizes an outdated, proprietary authentication protocol and has numerous hardcoded credentials within its application logic for accessing backend services. The cybersecurity architect is tasked with re-architecting this component to align with modern security principles and mitigate significant technical debt. Considering the evolving threat landscape and the need for robust identity and access management in a financial services context, which strategic approach would best address the identified security vulnerabilities and technical debt while ensuring long-term maintainability and compliance with regulations like the Payment Card Industry Data Security Standard (PCI DSS)?

Implement a comprehensive re-architecture of the CRM's identity layer to leverage Microsoft Entra ID for authentication and authorization, utilizing managed identities for accessing Azure resources, and refactoring application code to eliminate hardcoded credentials, thereby establishing a robust Zero Trust framework.
Apply security patches to the existing authentication module and implement a network segmentation strategy to isolate the legacy CRM, while gradually migrating critical data to a new, cloud-native database with enhanced access controls.
Develop custom middleware to translate the proprietary authentication protocol to a more modern standard, retaining the existing application logic for credential management but securing the communication channel with TLS 1.3 encryption.
Introduce a multi-factor authentication (MFA) solution at the network perimeter for all inbound connections to the legacy CRM, and conduct regular vulnerability scans to identify and remediate any newly discovered weaknesses in the existing system.

About the SC100 Microsoft Cybersecurity Architect Certification

These free practice questions are designed to help you assess your readiness for the SC100 Microsoft Cybersecurity Architect exam by Other. Each question comes with a detailed explanation to reinforce the correct concept. For a complete exam preparation experience with hundreds of questions, spaced-repetition study tools, and full exam simulations, explore our premium access.