Tag the questions with any skills you have. Your dashboard will track each student's mastery of each skill.
Give this quiz to my class
Q 1/20
Score 0
Which security principle follows the rule 'never trust, always verify' regardless of whether a request comes from inside or outside the network?
30
Encryption at Rest
Defense in Depth
Zero Trust
Conditional Access
Shared Responsibility
Q 2/20
Score 0
In the Microsoft Shared Responsibility Model, who is responsible for the physical security of the data centers when using a cloud service?
30
The customer
The local government
The end user
The cloud provider (Microsoft)
20 questions
Q.
Which security principle follows the rule 'never trust, always verify' regardless of whether a request comes from inside or outside the network?
1
30 sec
Q.
In the Microsoft Shared Responsibility Model, who is responsible for the physical security of the data centers when using a cloud service?
2
30 sec
Q.
Which pillar of identity management is responsible for ensuring that a person or service is who they claim to be?
3
30 sec
Q.
Which Microsoft Entra ID (formerly Azure AD) feature allows an organization to automatically require multi-factor authentication (MFA) based on specific signals like a user's location or device health?
4
30 sec
Q.
Which of the following describes the 'Defense in Depth' strategy in cybersecurity?
5
30 sec
Q.
Which specific compliance term refers to the requirement for an organization to maintain and be able to provide evidence of its data protection activities and security posture?
6
30 sec
Q.
Which security concept describes the process of granting a user only the minimum permissions necessary to perform their specific job tasks?
7
30 sec
Q.
Which Microsoft security service is a cloud-native Security Information and Event Management (SIEM) system that provides intelligent security analytics across your entire enterprise?
8
30 sec
Q.
Which of the following describes the 'Confidentiality' aspect of the CIA triad?
9
30 sec
Q.
Which Microsoft service is specifically designed to manage and protect sensitive business data by classifying and labeling it based on its level of sensitivity?
10
30 sec
Q.
In the context of the Zero Trust model, what does the principle of 'Least Privilege' mean?
11
30 sec
Q.
Which Microsoft solution is a cloud-based service that helps protect an organization's sensitive information, such as documents and emails, by applying labels?
12
30 sec
Q.
Which security concept describes the strategy of using multiple layers of security, such as physical locks, firewalls, and encryption, to protect data?
13
30 sec
Q.
Under the Microsoft Shared Responsibility Model, which party is always responsible for the security of data and identities, regardless of whether the cloud service is IaaS, PaaS, or SaaS?
14
30 sec
Q.
Which Microsoft Entra service provides a 'second layer' of security by requiring users to provide two or more forms of evidence to prove their identity?
15
30 sec
Q.
Which Microsoft solution is a cloud-native Security Information and Event Management (SIEM) and Security Orchestration, Automation, and Response (SOAR) solution?
16
30 sec
Q.
Which component of the Zero Trust model focuses on checking things like the device's health, location, and the user's identity before granting access?
17
30 sec
Q.
Which Microsoft management solution is primarily used for managing and securing mobile devices, tablets, and laptops within an organization?
18
30 sec
Q.
Which Microsoft security feature allows an organization to create 'If / Then' statements to control access, such as 'If a user is logging in from an unknown location, then they must provide Multi-Factor Authentication'?
19
30 sec
Q.
Which specific Microsoft Defender tool is designed to protect an organization's identities by monitoring user behavior and detecting suspicious activities like 'Pass-the-Hash' or 'Brute Force' attacks?