Features and Tools for Governance and Compliance Flashcards

(20 cards)

1
Q

What is the primary purpose of governance in Azure?

A

Governance in Azure pertains to the decision-making model around how Azure resources are managed and accessed, structuring Azure environments, and implementing policies to enforce organizational requirements.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

How does effective organization of resources within Azure relate to governance?

A

Effective organization promotes effective governance by enabling better control over resources and services within Azure. An organized structure is needed for granular control.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is the significance of inheritance in the Azure hierarchy in the context of governance?

A

Resources inherit governance policies and settings applied at higher levels in the hierarchy. This means policies set at a broader scope will apply to all resources within that scope unless overridden.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is the main Azure service emphasized for enforcing and implementing governance and compliance?

A

Azure Policy is emphasized as the primary Azure service and component portal for enforcing and implementing governance and compliance.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Describe the two primary types of resource locks and their typical use cases.

A

The two primary types of resource locks are Read-Only and Delete. Read-Only locks are used for resources where changes could be disruptive (like a production database), while Delete locks prevent deletion but allow for modifications (like a virtual network or virtual machine).

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

If a Delete lock is applied to a virtual network, can the virtual machines within that network be modified? Explain why or why not.

A

Yes, the virtual machines within a virtual network with a Delete lock can be modified. The Delete lock prevents the deletion of the virtual network itself, but it does not prevent modifications to the resources contained within it.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is the benefit of applying governance policies at the highest appropriate level?

A

Applying governance at the highest appropriate level ensures that the policies and controls are applied broadly across the relevant scope, leveraging the inheritance model and preventing the need to apply them individually to each resource.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What types of reports are relevant to governance and compliance in Azure?

A

Reports relevant to governance and compliance include compliance status, resource utilization, and audit logs.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What is the purpose of Microsoft Purview?

A

Microsoft Purview is a comprehensive data governance solution designed to provide visibility, data discovery, and governance across various data sources, both within and outside of Azure.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

How does Microsoft Defender for Cloud contribute to securing resources in Azure?

A

Microsoft Defender for Cloud contributes to securing resources by assessing and strengthening their security posture, managing compliance against industry standards, enabling threat protection, and detecting vulnerabilities.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is Governance?

A

The decision-making model and framework for managing and accessing Azure resources, structuring environments, and enforcing organizational requirements.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is Compliance?

A

Ensuring that services and products meet external and internal standards.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What is Azure Hierarchy?

A

The layered structure in Azure that provides granular control over governance management, with resources inheriting settings from higher levels.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is Azure Policy?

A

An Azure service for creating, assigning, and managing policies to enforce rules and effects over Azure resources and services.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What are Resource Locks?

A

Mechanisms in Azure to restrict access to resources, specifically preventing modification (Read-Only) or deletion (Delete).

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What is a Read-Only Lock?

A

A type of resource lock that prevents any modifications to a resource.

17
Q

What is a Delete Lock?

A

A type of resource lock that prevents the deletion of a resource but allows for modifications.

18
Q

What is Microsoft Purview?

A

A comprehensive data governance solution for visibility, data discovery, and governance across various data sources.

19
Q

What is Microsoft Defender for Cloud?

A

An Azure service that assesses and strengthens the security posture of resources, manages compliance, enables threat protection, and detects vulnerabilities.

20
Q

What is Inheritance?

A

The principle in the Azure hierarchy where resources adopt governance settings and policies applied at higher levels in the scope.