Back to certifications

Microsoft certification practice

AZ-500 Microsoft Azure Security Engineer Associate AZ-500 practice test

Use this page to practise AZ-500 Microsoft Azure Security Engineer Associate AZ-500 practice test. The goal is not to memorise dumps, but to understand the concept, review the explanation and improve your exam readiness. Microsoft certification exams often test whether you can choose the right Azure, Microsoft 365, identity, security or monitoring action for a realistic administrative scenario. Courseiva helps you practise with structured questions and explanations.

300
practice questions
Mapped
exam topics
AZ-500
exam code
Microsoft
vendor
Last reviewed: May 2026 · aligned to official blueprint

Exam guide

How to use this AZ-500 practice test

Start with a short practice session, review each missed answer, then return to the topics that caused mistakes.

Quick answer

Cloud concepts questions usually test the service model (IaaS/PaaS/SaaS) and deployment model (public/private/hybrid/community) appropriate for a given scenario.

IaaS, PaaS and SaaS responsibilities and examples.

Public, private, hybrid and community cloud deployment models.

On-premises vs cloud trade-offs: cost, control, scalability.

How cloud connectivity options (VPN, Direct Connect, ExpressRoute) work.

Related practice questions

Focused AZ-500 topic practice pages

Use these internal links to move from the exam guide into focused topic practice pages.

Sample questions from this exam

Question 1hardmulti select
Full question →

A SQL workload needs to protect sensitive column values from database administrators who should not see plaintext. Which two features may be relevant depending on the query requirement?

Question 2mediummulti select
Full question →

A Sentinel detection should enrich alerts with business-critical asset context. Which two mechanisms are appropriate?

Question 3mediummultiple choice
Full question →

A DevOps team wants Defender for Cloud to identify secrets exposed in GitHub repositories. What should be configured?

Question 4hardmulti select
Full question →

A public web application should be protected from OWASP-style attacks and network-layer DDoS attacks. Which two Azure services are most relevant?

Question 5hardmultiple choice
Full question →

A Sentinel scheduled rule runs every 5 minutes and looks back 1 hour. Analysts see repeated alerts for the same event. Which change best prevents duplicate detections without missing late-arriving logs?

Question 6hardmultiple choice
Full question →

A Sentinel watchlist contains high-value administrator accounts. Which KQL pattern best uses it in a detection rule?