Courseiva
Plan and manage an Azure AI solutionhardMultiple ChoiceObjective-mapped

AI-102 Plan and manage an Azure AI solution Practice Question

A healthcare organization uses Azure AI Health Insights to analyze patient data. They must ensure that PHI is not logged by the AI services. Which configuration should you apply?

⚠ Common exam trap

A common mix-up: candidates confuse disabling logging entirely (Option A) with selectively masking sensitive data, or they mistakenly think managed identities (Option C) or Azure Policy (Option D) can control log content, when in fact only data masking rules within diagnostic settings provide the required PHI redaction at the log ingestion layer.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

Enable diagnostic settings to stream logs to a Log Analytics workspace with a data masking rule

Azure AI Health Insights processes protected health information (PHI), and enabling diagnostic settings to stream logs to a Log Analytics workspace with a data masking rule allows you to redact sensitive PHI from logs before they are stored. Data masking rules in Log Analytics can be configured to hide patterns like patient IDs or names, ensuring compliance with HIPAA while still retaining operational logs.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • Disable all logging for the Azure AI resource

    Why it's wrong here

    Disabling logging may violate compliance requirements for auditability.

  • Enable diagnostic settings to stream logs to a Log Analytics workspace with a data masking rule

    Why this is correct

    Data masking rules can redact PHI before logging.

  • Configure the resource to use a system-assigned managed identity

    Why it's wrong here

    Managed identity does not affect logging content.

  • Use Azure Policy to restrict logging to metadata only

    Why it's wrong here

    Azure Policy cannot ensure PHI is excluded from logs at runtime.

About these practice questions

One of 945 original AI-102 practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This AI-102 practice question is part of Courseiva's free Microsoft certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the AI-102 exam.