AI-300 ML Model Lifecycle And Operations Practice Question
You need to ensure that training data is encrypted at rest in the Blob Storage linked to your Azure Machine Learning workspace. How do you ensure this?
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Enable encryption at the storage account level.
Azure Storage accounts support Storage Service Encryption (SSE) by default. You can also use Customer-Managed Keys (CMK) for additional control.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
Configure the training script to encrypt files.
Why it's wrong here
Encryption should be at the infrastructure level.
- ✓
Enable encryption at the storage account level.
Why this is correct
This is the standard platform security configuration.
- ✗
Use SSL/TLS for all communication.
Why it's wrong here
SSL/TLS is for data in transit, not at rest.
- ✗
Use an encrypted VM for training.
Why it's wrong here
This doesn't secure the data in the storage account.
About these practice questions
Courseiva writes every AI-300 question from scratch — 204 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed August 2026 · checked against the official Microsoft exam blueprint
This AI-300 practice question is part of Courseiva's free Microsoft certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the AI-300 exam.