Courseiva

CCNA Describe cloud concepts Questions

75 of 143 questions · Page 1/2 · Describe cloud concepts · Answers revealed

1
MCQeasy

A cloud provider bills a customer monthly based on the precise number of gigabytes of storage used and the number of virtual machine hours consumed. Which essential cloud computing characteristic does this billing model demonstrate?

A.Measured service
B.Resource pooling
C.On-demand self-service
D.Broad network access
AnswerA

Measured service is the cloud characteristic in which a provider automatically meters and optimizes resource use via abstraction, quantifying capabilities such as compute time, storage GB, and outbound bandwidth. This telemetry feeds a billing system that charges the customer exactly for the resources consumed, matching the scenario's monthly billing based on precise usage. In contrast to flat-rate pricing, this pay-as-you-go model depends entirely on the granular usage data that measured service provides.

Why this answer

The billing model charges based on exact gigabytes of storage used and virtual machine hours consumed, which directly aligns with the 'measured service' characteristic. This means the cloud provider meters resource usage (e.g., storage IOPS, compute hours) and bills only for what is consumed, enabling pay-as-you-go pricing. Measured service relies on telemetry and monitoring systems (e.g., Azure Monitor, AWS CloudWatch) to track usage and generate invoices.

Exam trap

Microsoft often tests the distinction between 'measured service' (billing granularity) and 'on-demand self-service' (provisioning capability), leading candidates to confuse the ability to spin up resources instantly with how those resources are billed.

How to eliminate wrong answers

Option B is wrong because resource pooling refers to the provider's ability to serve multiple customers from shared physical resources (e.g., multi-tenancy), not how usage is billed. Option C is wrong because on-demand self-service allows users to provision resources without human interaction (e.g., via Azure Portal or CLI), but does not define the billing granularity. Option D is wrong because broad network access describes the ability to access resources over the network via standard protocols (e.g., HTTPS, SSH), not the metering or charging model.

2
MCQeasy

A company migrates its database to a cloud service where the provider manages the database engine, patching, backups, and replication. The customer only manages the data and schema. Which cloud service model is this?

A.Infrastructure as a Service (IaaS)
B.Platform as a Service (PaaS)
C.Software as a Service (SaaS)
D.On-premises
AnswerB

PaaS is the correct choice because it offers a managed database platform, such as Azure SQL Database, where the provider handles the operating system, database engine, patching, automated backups, and built-in high availability and replication. You focus only on the database schema, data, and query tuning, while the provider abstracts infrastructure maintenance. This aligns with the scenario where the company migrates its database to a cloud service and gains managed operational capabilities.

Why this answer

Platform as a Service (PaaS) provides a managed hosting environment where the cloud provider handles the underlying infrastructure, including the database engine, operating system, patching, backups, and replication. The customer is responsible only for managing the data and schema, which aligns directly with the scenario described.

Exam trap

The trap here is that candidates often confuse PaaS with IaaS because both involve cloud-hosted databases, but the key differentiator is who manages the database engine and patching—PaaS offloads this entirely to the provider, while IaaS leaves it to the customer.

How to eliminate wrong answers

Option A is wrong because Infrastructure as a Service (IaaS) provides virtualized computing resources where the customer manages the operating system, database engine, patching, and backups, not just the data and schema. Option C is wrong because Software as a Service (SaaS) delivers a complete application managed entirely by the provider, where the customer typically does not manage the database schema or data directly. Option D is wrong because an on-premises deployment requires the customer to manage all aspects of the database, including hardware, engine, patching, backups, and replication, which contradicts the provider-managed model described.

3
MCQmedium

A business stakeholder asks how Microsoft 365 can help them access cloud resources from laptops, tablets, and phones over the internet. Cloud concept or benefit best matches this requirement?

A.Sensitivity labels
B.Microsoft Planner
C.Data Loss Prevention (DLP)
D.Broad network access
AnswerD

Broad network access is one of the five essential characteristics defined by NIST (SP 800-145) and means that Microsoft 365 capabilities are available over the network through standard protocols such as HTTPS, IMAP, and SMTP, rather than requiring a dedicated physical connection. Users can reach Exchange Online, SharePoint, Teams, and other services from laptops, desktops, tablets, and smartphones, using either native apps or modern browsers. This characteristic is what gives Microsoft 365 its ubiquitous, anywhere-anytime accessibility and is the correct answer here. Note that it is not about raw bandwidth or connection speed; it is about standards-based, heterogeneous client access.

Why this answer

Broad network access is a core NIST cloud computing characteristic that enables resources to be accessed over the network by standard mechanisms (e.g., mobile phones, tablets, laptops, and workstations). This directly matches the stakeholder's requirement for accessing cloud resources from various devices over the internet, as Microsoft 365 leverages HTTPS and standard protocols to provide ubiquitous access.

Exam trap

The trap here is that candidates may confuse operational features (like sensitivity labels or DLP) with fundamental cloud characteristics, or incorrectly associate Microsoft Planner with cloud access, when the question specifically targets the NIST-defined cloud benefit of broad network access.

How to eliminate wrong answers

Option A is wrong because sensitivity labels are a Microsoft Information Protection (MIP) feature used to classify and protect data based on sensitivity, not to enable network access from multiple devices. Option B is wrong because Microsoft Planner is a task management and collaboration tool within Microsoft 365, not a cloud concept or benefit related to device accessibility. Option C is wrong because Data Loss Prevention (DLP) policies help prevent accidental sharing of sensitive information, but they do not address the ability to access cloud resources from laptops, tablets, and phones.

4
MCQeasy

A company moves its on-premises servers to a cloud provider. The provider supplies the physical hardware, networking, and storage. The company installs and manages the operating system and applications on the virtual machines. Which cloud service model does this scenario represent?

A.Infrastructure as a Service (IaaS)
B.Platform as a Service (PaaS)
C.Software as a Service (SaaS)
D.Function as a Service (FaaS)
AnswerA

IaaS is the correct classification for migrating on-premises servers to a cloud provider because it delivers virtualized compute, storage, and networking while the customer retains control over the guest OS, middleware, and applications. When a company lifts and shifts its existing servers, it still manages the operating system, installs patches, and runs its own software, while the cloud provider operates only the physical hardware and hypervisor. This matches the scenario of moving entire server workloads without redesigning them.

Why this answer

This scenario describes Infrastructure as a Service (IaaS) because the cloud provider supplies the physical hardware, networking, and storage, while the customer retains full control over the operating system and applications. In IaaS, the provider manages the underlying infrastructure (e.g., hypervisor, physical servers, network switches), and the customer is responsible for the guest OS, middleware, and application stack. This aligns with the shared responsibility model where the customer handles OS patching, application configuration, and data management.

Exam trap

The trap here is that candidates confuse IaaS with PaaS because both involve virtual machines, but PaaS removes OS management — the key differentiator is who installs and patches the operating system.

How to eliminate wrong answers

Option B (PaaS) is wrong because PaaS abstracts the OS and runtime environment; the provider manages the OS, middleware, and runtime, while the customer only deploys code — here the customer installs and manages the OS. Option C (SaaS) is wrong because SaaS delivers fully managed applications accessed via a browser or API; the customer has no control over the underlying OS or infrastructure. Option D (FaaS) is wrong because FaaS (Function as a Service) is a serverless compute model where the provider manages all infrastructure and the customer only deploys individual functions triggered by events — it does not involve managing an OS or full applications.

5
Drag & Dropmedium

Drag and drop the steps to create a new user account in Microsoft 365 admin center into the correct order.

Drag or tap steps into the slots.

Steps
Order
1Step 1
2Step 2
3Step 3
4Step 4

Why this order

Creating a user in M365 admin center requires signing in, navigating to active users, adding a user, entering details, and assigning licenses/roles.

6
MCQmedium

A cloud provider offers a service where customers can provision virtual machines, storage, and networks on-demand through a web portal. The customer is responsible for patching the guest operating system. Which cloud service model best describes this offering?

A.Software as a Service (SaaS)
B.Platform as a Service (PaaS)
C.Infrastructure as a Service (IaaS)
D.Desktop as a Service (DaaS)
AnswerC

IaaS delivers virtualised compute, storage and networking on demand, while the customer retains responsibility for the guest operating system, including patching. That split of responsibility matches the scenario exactly, unlike PaaS or SaaS, where the provider manages the OS layer.

Why this answer

(Infrastructure as a Service) because the customer provisions fundamental compute, storage, and networking resources on-demand, and retains control over the guest OS, including patching. In IaaS, the provider manages only the physical infrastructure (hypervisor, networking, storage hardware), while the customer is responsible for the OS and applications, matching the scenario exactly.

Exam trap

The trap here is that candidates confuse PaaS with IaaS because both involve 'platform' or 'infrastructure' terms, but the key differentiator is who patches the guest OS — in PaaS, the provider patches it, while in IaaS, the customer does.

How to eliminate wrong answers

Option A is wrong because SaaS delivers fully managed applications (e.g., Office 365) where the provider handles all patching, including the OS, and the customer only uses the software via a browser or client. Option B is wrong because PaaS provides a managed platform (runtime, middleware, database) where the provider patches the underlying OS and runtime, and the customer only deploys code, not managing VMs or guest OS patches. Option D is wrong because DaaS delivers virtual desktops as a managed service, where the provider typically manages the guest OS image and patching, shifting OS responsibility away from the customer.

7
MCQeasy

A company uses a cloud provider that charges them only for the actual storage and compute resources they consume each month. They can start or stop machines at any time and are billed precisely for what they use. Which cloud computing characteristic does this billing model demonstrate?

A.Rapid elasticity
B.On-demand self-service
C.Resource pooling
D.Measured service
AnswerD

Measured service is the cloud characteristic where resource usage is automatically monitored, controlled, and reported, providing transparency for both the provider and consumer. This metering capability is what enables a pay-per-use billing model, where customers are charged only for the amount of service they actually consume. The scenario directly illustrates this principle, making it the correct answer.

Why this answer

The billing model described—paying only for actual storage and compute resources consumed, with the ability to start/stop machines at any time—directly demonstrates 'Measured service'. This characteristic, defined by NIST SP 800-145, means cloud systems automatically control and optimize resource usage by leveraging a metering capability at some level of abstraction appropriate to the type of service (e.g., storage, processing, bandwidth, active user accounts). Usage is monitored, controlled, and reported, providing transparency for both the provider and consumer.

Exam trap

The trap here is that candidates confuse 'Measured service' with 'On-demand self-service' because both involve user control, but measured service specifically addresses the metering and pay-per-use billing aspect, not the ability to provision without human interaction.

How to eliminate wrong answers

Option A is wrong because 'Rapid elasticity' refers to the ability to quickly scale resources up or down, often automatically, to match demand—not to the billing model based on consumption. Option B is wrong because 'On-demand self-service' means a consumer can unilaterally provision computing capabilities (like server time or network storage) without requiring human interaction with each service provider—it describes the provisioning mechanism, not the pay-per-use billing. Option C is wrong because 'Resource pooling' means the provider's computing resources are pooled to serve multiple consumers using a multi-tenant model, with physical and virtual resources dynamically assigned and reassigned according to consumer demand—it is about multi-tenancy and location independence, not billing granularity.

8
MCQeasy

A development team wants to deploy a custom web application to the cloud. They want to upload their code and let the cloud provider handle server infrastructure, operating system updates, and automatic scaling. Which cloud service model best fits this requirement?

A.Infrastructure as a Service (IaaS)
B.Platform as a Service (PaaS)
C.Software as a Service (SaaS)
D.On-premises deployment
AnswerB

Platform as a Service (PaaS) is the right fit because it abstracts the underlying compute, storage, and networking into a ready-to-use hosting platform. The developer simply uploads the web app code or a container image, and the provider handles patching the OS, automatic scaling, load balancing, and health monitoring. This lets the team focus on business logic and data rather than on managing servers or runtimes.

Why this answer

Platform as a Service (PaaS) is the correct choice because it provides a managed hosting environment where the development team can upload their custom web application code without managing the underlying server infrastructure, operating system updates, or scaling. Azure App Service, a PaaS offering, automatically handles OS patching, load balancing, and auto-scaling based on demand, aligning perfectly with the requirement to let the cloud provider handle these tasks.

Exam trap

The trap here is that candidates often confuse IaaS with PaaS, mistakenly thinking that IaaS also abstracts OS updates and scaling, but IaaS still requires the user to manage the OS and configure scaling manually, unlike PaaS which fully automates these responsibilities.

How to eliminate wrong answers

Option A is wrong because Infrastructure as a Service (IaaS) provides virtual machines, storage, and networks, but the team would still be responsible for managing the operating system, applying updates, and configuring scaling manually, which contradicts the requirement to offload these tasks. Option C is wrong because Software as a Service (SaaS) delivers fully managed applications (e.g., Office 365) that users access via a browser, not a platform for deploying custom code. Option D is wrong because on-premises deployment requires the team to own and manage all hardware, software, and updates locally, which is the opposite of letting the cloud provider handle infrastructure.

9
MCQeasy

A cloud provider offers virtual machines, but customers must install, configure, and maintain the operating system and applications. Which cloud service model does this describe?

A.IaaS (Infrastructure as a Service)
B.PaaS (Platform as a Service)
C.SaaS (Software as a Service)
D.FaaS (Function as a Service)
AnswerA

In IaaS, the provider supplies virtualized compute, storage, and networking as on-demand resources, but the customer deploys and manages the virtual machines' guest OS, runtime, and installed applications. This shared-responsibility model places patching, configuration, and application stack maintenance squarely on the customer, which is exactly the scenario described. The provider's responsibility ends at the hypervisor and physical infrastructure, so customers must handle everything inside the VM.

Why this answer

This scenario describes Infrastructure as a Service (IaaS), where the cloud provider supplies virtualized computing resources such as virtual machines, storage, and networking, but the customer retains full control over the operating system, middleware, and applications. In IaaS, the provider manages only the physical infrastructure (hypervisor, servers, storage, and network), while the customer is responsible for OS installation, configuration, patching, and application management. This aligns directly with the question's description of customer-managed OS and applications on provider-hosted VMs.

Exam trap

The trap here is that candidates often confuse IaaS with PaaS because both involve virtual machines, but PaaS (e.g., Azure App Service) hides the OS and runtime, whereas IaaS requires full customer OS management.

How to eliminate wrong answers

Option B (PaaS) is wrong because PaaS abstracts the underlying OS and runtime; the provider manages the OS, middleware, and runtime environment, so customers do not install or maintain the OS. Option C (SaaS) is wrong because SaaS delivers fully functional applications accessed via a web browser or API, with no customer control over the OS or underlying infrastructure. Option D (FaaS) is wrong because FaaS (Function as a Service) executes stateless code functions in response to events, with the provider managing all infrastructure including the OS, and customers only upload code without any OS-level access.

10
MCQmedium

A hospital must store patient medical records on-premises to comply with strict data sovereignty regulations. However, they also want to use advanced analytics tools hosted on a public cloud platform. Which cloud deployment model best meets their needs?

A.Private cloud
B.Public cloud
C.Hybrid cloud
D.Community cloud
AnswerC

Hybrid cloud keeps regulated patient records on the hospital's on-premises infrastructure, satisfying the data sovereignty constraint, while securely connecting to public cloud analytics services over a private link or VPN. This split lets sensitive data remain local and computation-intensive analytics scale in the public cloud, which neither pure private nor public deployment achieves.

Why this answer

(Hybrid cloud) is correct because it allows the hospital to keep sensitive patient medical records on-premises to satisfy strict data sovereignty regulations, while leveraging public cloud services for advanced analytics. This model combines private and public cloud resources, enabling data to remain compliant without sacrificing access to cloud-hosted analytics tools.

Exam trap

The trap here is that candidates often choose Private cloud (Option A) thinking it is the only way to ensure data sovereignty, but they overlook the requirement for advanced analytics tools hosted on a public cloud, which Hybrid cloud uniquely satisfies.

How to eliminate wrong answers

Option A (Private cloud) is wrong because while it meets data sovereignty requirements, it does not provide access to public cloud-based advanced analytics tools, limiting the hospital's ability to use those services. Option B (Public cloud) is wrong because it would require storing patient data off-premises, violating data sovereignty regulations that mandate on-premises storage. Option D (Community cloud) is wrong because it is designed for multiple organizations with shared concerns (e.g., compliance), but it still typically involves off-premises infrastructure and does not inherently support a hybrid approach that keeps specific data on-premises while using public cloud analytics.

11
Drag & Dropmedium

Drag and drop the steps to configure a Microsoft 365 group expiration policy in the Azure AD admin center into the correct order.

Drag or tap steps into the slots.

Steps
Order
1Step 1
2Step 2
3Step 3
4Step 4

Why this order

To configure a Microsoft 365 group expiration policy, you must first sign in to the Azure AD admin center, then navigate to Groups > Expiration, configure the desired expiration settings, and finally save the policy. This sequence ensures proper access and application of the configuration.

12
MCQeasy

A company wants to provide its employees with access to email, calendar, and document editing tools through a web browser without installing any software. The provider manages all maintenance, updates, and security of the applications. Which cloud service model best describes this scenario?

A.Infrastructure as a Service (IaaS)
B.Platform as a Service (PaaS)
C.Software as a Service (SaaS)
D.Desktop as a Service (DaaS)
AnswerC

SaaS (Software as a Service) is correct because it delivers fully functional, ready-to-use applications over the internet, with the provider managing all underlying infrastructure, platform, and application code. Email, shared calendars, and document editing are classic SaaS workloads — think of Microsoft 365 Exchange Online, Outlook on the web, and Office for the web. Users only need a browser or thin client, never having to worry about servers, patching, or maintenance, which perfectly matches the need to provide employees with access to these applications.

Why this answer

This scenario describes Software as a Service (SaaS) because the provider delivers fully functional applications—such as email, calendar, and document editing—over the web, with no local installation required. The provider handles all maintenance, updates, and security, which is the defining characteristic of SaaS. Examples include Microsoft 365 (Exchange Online, Outlook, Word Online) and Google Workspace.

Exam trap

The trap here is that candidates often confuse SaaS with PaaS because both involve managed services, but PaaS is for developers building custom applications, not for end users consuming ready-made applications like email and calendars.

How to eliminate wrong answers

Option A is wrong because Infrastructure as a Service (IaaS) provides virtualized computing resources (e.g., VMs, storage, networks) but requires the customer to install and manage their own operating systems and applications, not just use pre-built tools via a browser. Option B is wrong because Platform as a Service (PaaS) provides a runtime environment and development tools for building and deploying custom applications, not ready-to-use end-user applications like email and document editing. Option D is wrong because Desktop as a Service (DaaS) delivers a full virtual desktop environment (including OS and applications) to end users, but the scenario specifies accessing specific applications through a web browser without a full desktop experience, and DaaS typically requires a client or browser-based remote desktop connection, not just direct web access to individual apps.

13
MCQmedium

A company deploys a custom application on a cloud platform where they manage the operating system and runtime environment, but the cloud provider manages the underlying physical infrastructure, storage, and networking. Which cloud service model is being used?

A.Infrastructure as a Service (IaaS)
B.Platform as a Service (PaaS)
C.Software as a Service (SaaS)
D.Function as a Service (FaaS)
AnswerA

IaaS provides virtualised compute where the customer manages the operating system, runtime, and applications, while the provider handles physical infrastructure, storage, and networking. The stem's split of responsibilities matches this model precisely, ruling out PaaS and SaaS.

Why this answer

The scenario describes a model where the customer manages the operating system and runtime environment, while the cloud provider handles the physical infrastructure, storage, and networking. This aligns precisely with Infrastructure as a Service (IaaS), as IaaS provides virtualized computing resources (e.g., virtual machines) where the customer retains control over the OS, middleware, and applications, but the provider manages the underlying hardware, hypervisor, and physical network.

Exam trap

The trap here is that candidates often confuse IaaS with PaaS because both involve deploying applications, but the key differentiator is who manages the OS and runtime—IaaS gives the customer full control over these layers, whereas PaaS abstracts them away entirely.

How to eliminate wrong answers

Option B (PaaS) is wrong because in PaaS, the provider manages not only the physical infrastructure but also the operating system and runtime environment, leaving the customer only to deploy and manage their application code and data. Option C (SaaS) is wrong because in SaaS, the provider manages the entire application stack, including the OS, runtime, and application, and the customer only uses the software via a web browser or API without any control over the underlying platform. Option D (FaaS) is wrong because FaaS is a subset of serverless computing where the customer only deploys individual functions (code snippets) and the provider dynamically manages the runtime and infrastructure, including the OS, scaling, and execution environment, which contradicts the customer managing the OS and runtime.

14
MCQeasy

A company wants to reduce hardware maintenance costs by moving to the cloud. They need to maintain full control over the operating system, applications, and security configurations, but do not want to manage physical servers or data center facilities. Which cloud service model should they choose?

A.Software as a Service (SaaS)
B.Platform as a Service (PaaS)
C.Infrastructure as a Service (IaaS)
D.On-premises
AnswerC

Infrastructure as a Service (IaaS) provides virtualized computing resources over the internet, with the cloud provider owning and maintaining the physical servers, storage, and networking equipment. This shifts hardware maintenance and capital costs to the provider, while you retain full administrative control over the operating system, runtime, and security configurations. That combination of provider-managed hardware and customer-managed OS precisely matches the requirement to reduce maintenance costs while keeping administrative authority.

Why this answer

Infrastructure as a Service (IaaS) provides virtualized computing resources over the internet, allowing the company to deploy and manage their own operating systems, applications, and security configurations while offloading the physical hardware and data center management to the cloud provider. This model gives the highest level of control over the software stack without the burden of maintaining physical servers, aligning perfectly with the requirement to reduce hardware maintenance costs while retaining full administrative access.

Exam trap

The trap here is that candidates often confuse PaaS with IaaS because both are cloud models, but PaaS removes control over the OS and runtime environment, which is the critical distinction when the question explicitly requires maintaining full control over the operating system and security configurations.

How to eliminate wrong answers

Option A is wrong because Software as a Service (SaaS) delivers fully managed applications accessed via a web browser, where the customer has no control over the underlying operating system, runtime, or security configurations—contradicting the need for full control. Option B is wrong because Platform as a Service (PaaS) abstracts the operating system and middleware, providing a managed runtime environment for application development; the customer cannot control the OS or security configurations at the infrastructure level. Option D is wrong because on-premises deployment requires the company to own and manage physical servers and data center facilities, directly conflicting with the goal of reducing hardware maintenance costs.

15
Matchingmedium

Match each Microsoft 365 subscription plan to its description.

Drag a concept onto its matching description — or click a concept then click the description.

Concepts
Matches

Web and mobile versions of Office apps with email and cloud services

Full desktop Office apps with email and cloud services

Includes security and device management in addition to Business Standard

Full desktop Office apps only, no email or cloud services

Why these pairings

Microsoft 365 Business Basic provides web and mobile Office apps only; Business Standard adds desktop apps; Business Premium adds advanced security and device management.

16
MCQhard

WideWorldImporters (WWI) is a retail company with 2,000 employees using Microsoft 365 Business Premium. They have a mix of Windows 10 and Windows 11 devices managed by Microsoft Intune. WWI wants to deploy a new line-of-business (LOB) app to all devices. The app is a Win32 app packaged as an .intunewin file. The IT administrator needs to ensure the app is installed automatically on all devices within 24 hours. Which deployment method should the administrator use?

A.Use Azure AD Application Proxy to publish the app
B.Add the app as an available deployment for all users
C.Add the app as a required deployment for all devices
D.Publish the app to Microsoft Store for Business and sync with Intune
AnswerC

A required deployment in Intune pushes the .intunewin Win32 app to every targeted device automatically, with no user action, and Intune retries delivery until installation succeeds. This satisfies the stem's constraint of automatic installation across all devices within 24 hours.

Why this answer

A required deployment in Intune forces the app to be installed automatically on all targeted devices without user interaction. This is the correct choice for ensuring the Win32 app is installed on all devices within 24 hours, as Intune will push the installation and retry as needed. Available deployments require users to install the app themselves, which does not guarantee automatic installation.

Exam trap

MS-900 often tests the difference between 'required' and 'available' deployments — candidates may pick 'available' thinking it is faster, but only 'required' guarantees automatic installation without user action.

How to eliminate wrong answers

Option A is wrong because Azure AD Application Proxy publishes internal web apps for remote access; it does not deploy Win32 apps to devices. Option B is wrong because an available deployment only makes the app visible in the Company Portal for users to install manually, so it does not ensure automatic installation within 24 hours. Option D is wrong because Microsoft Store for Business is for store apps, not Win32 .intunewin packages, and syncing does not guarantee automatic installation.

17
MCQeasy

Which cloud computing characteristic allows users to be billed only for the resources they consume, such as processing power, storage, or bandwidth?

A.On-demand self-service
B.Broad network access
C.Measured service
D.Resource pooling
AnswerC

Measured service is the cloud characteristic that automatically controls and optimizes resource use by leveraging a metering capability at some level of abstraction appropriate to the service type. Usage data for storage, processing, bandwidth, or active user accounts is collected, monitored, and reported, giving transparency for both the provider and the consumer. Because this metering generates a quantifiable usage baseline, it directly enables pay-as-you-go billing, where customers are charged based on actual consumption rather than flat-rate licenses.

Why this answer

Measured service is the cloud computing characteristic that enables usage-based billing by monitoring, controlling, and reporting resource consumption (e.g., CPU hours, GB of storage, or data transfer) at a granular level. This metering capability allows providers to charge customers only for what they actually use, rather than a flat fee, and is typically implemented via telemetry and billing APIs.

Exam trap

The trap here is that candidates often confuse 'measured service' with 'resource pooling' because both involve dynamic allocation, but measured service specifically refers to the metering and billing aspect, not the multi-tenant sharing of resources.

How to eliminate wrong answers

Option A is wrong because on-demand self-service refers to a user's ability to provision computing resources automatically without requiring human interaction with the service provider, not to billing or consumption tracking. Option B is wrong because broad network access describes the availability of resources over the network via standard protocols (e.g., HTTP, HTTPS) from various devices, not the metering or charging mechanism. Option D is wrong because resource pooling involves the provider's multi-tenant model where physical and virtual resources are dynamically assigned and reassigned according to consumer demand, which supports scalability but does not directly enable per-consumption billing.

18
MCQmedium

Refer to the exhibit. What is the purpose of the 'classification' property in this Microsoft Purview sensitivity label policy?

A.To set the retention period for the labeled content
B.To define encryption settings for the label
C.To specify the sensitivity level of the content
D.To define user permissions for accessing the content
AnswerC

Classification defines the sensitivity level assigned to content, enabling protection actions such as encryption or access restrictions. It satisfies the stem's requirement by identifying how sensitive the labelled material is, distinguishing it from other label properties like content marking or protection settings.

Why this answer

In Microsoft Purview sensitivity labels, the 'classification' property (sometimes labeled 'Sensitivity level' in the label definition) is what determines the sensitivity tier the label represents — for example, Public, General, Confidential, or Highly Confidential. It drives how the label is presented to users and how downstream policies (DLP, auto-labeling) interpret the content's sensitivity. It is not the mechanism for retention, encryption, or permissions.

Exam trap

MS-900 often tests whether candidates conflate the different configuration surfaces of a sensitivity label — classification (sensitivity tier), encryption (protection), and retention (lifecycle) — causing them to pick the wrong property for the described purpose.

How to eliminate wrong answers

Option A is wrong because retention periods are configured in retention labels and retention policies, not in the sensitivity label's classification property. Option B is wrong because encryption is configured separately under the label's 'Encryption' settings (which invoke Azure Rights Management), not via the classification field. Option D is wrong because user permissions are defined within the encryption configuration (assigning specific users/groups rights), not through the classification property.

19
MCQeasy

A company's CFO is pleased that they only pay for the compute and storage resources consumed each month, with no upfront hardware costs. This billing model is a direct result of which cloud computing characteristic?

A.On-demand self-service
B.Broad network access
C.Measured service
D.Resource pooling
AnswerC

Measured service is the cloud characteristic that automatically monitors, controls, and reports resource usage, enabling providers to bill customers for exactly the compute, storage, or network capacity they consume. This metering capability makes pay-per-use pricing possible, so the CFO only pays for the compute actually used, avoiding fixed upfront costs. Without measured service, usage-based billing and cost optimization would not be feasible.

Why this answer

The CFO's observation that the company only pays for consumed compute and storage resources with no upfront hardware costs directly reflects the 'measured service' characteristic of cloud computing. Measured service means cloud providers meter resource usage (e.g., CPU hours, GB-months of storage) and bill based on actual consumption, typically using a pay-as-you-go model. This eliminates the need for capital expenditure on hardware, as costs are operational and tied to usage metrics.

Exam trap

The trap here is that candidates often confuse 'measured service' with 'resource pooling' because both involve multi-tenancy and efficiency, but measured service is specifically about usage metering and billing, not the underlying resource sharing architecture.

How to eliminate wrong answers

Option A is wrong because on-demand self-service refers to a user's ability to provision resources automatically without requiring human interaction with the provider, not to the billing or cost model. Option B is wrong because broad network access describes the availability of resources over the network via standard protocols (e.g., HTTP, HTTPS) and accessed by various devices, not the consumption-based pricing. Option D is wrong because resource pooling involves the provider's multi-tenant model where physical and virtual resources are dynamically assigned to serve multiple customers, which enables efficiency but does not directly result in pay-per-use billing.

20
MCQeasy

Your organization is using Microsoft 365 and wants to ensure that services remain accessible even if one datacenter experiences an outage. Which concept should they rely on?

A.Scalability
B.Disaster recovery
C.High availability
D.Elasticity
AnswerC

High availability ensures continuous service operation by architecting Microsoft 365 workloads and data with redundancy across multiple geographically dispersed datacenters. This design allows for automatic failover mechanisms to reroute user traffic to healthy datacenters if one experiences an outage. Consequently, users maintain uninterrupted access to their services, directly satisfying the organisation's requirement for accessibility despite a single datacenter failure.

Why this answer

High availability is the design principle that keeps services accessible by eliminating single points of failure and distributing workloads across multiple datacenters or availability zones, so an outage in one location does not take the service down. Microsoft 365 delivers this through geo-redundant datacenter pairs and automatic failover, which is exactly the scenario described.

Exam trap

MS-900 often tests the confusion between high availability (continuous uptime via redundancy) and disaster recovery (restoring service after a major failure), so candidates must read whether the question emphasizes 'remains accessible' versus 'recover after loss'.

How to eliminate wrong answers

Option A is wrong because scalability is about handling increased load by adding resources, not about surviving a datacenter outage. Option B is wrong because disaster recovery focuses on restoring service after a major failure, typically with some downtime and data loss tolerance (RTO/RPO), whereas the question asks about continuous accessibility during an outage. Option D is wrong because elasticity is the ability to automatically scale resources up and down with demand, which is a cost/performance concept, not an availability guarantee.

21
MCQmedium

A department head asks which Microsoft 365 option should be used to access cloud resources from laptops, tablets, and phones over the internet. Cloud concept or benefit best matches this requirement?

A.Sensitivity labels
B.Microsoft Planner
C.Data Loss Prevention (DLP)
D.Broad network access
AnswerD

Broad network access directly satisfies the cross-device, internet-based requirement: cloud services are reachable over standard network protocols from laptops, tablets, and phones alike. Unlike private-datacentre access, it removes dependence on a fixed corporate network, matching the department head's need to reach Microsoft 365 resources from any device.

Why this answer

Broad network access is a core NIST cloud characteristic that enables resources to be accessed over the internet by standard protocols (e.g., HTTPS, TLS) from a wide range of client devices such as laptops, tablets, and phones. This directly matches the requirement for accessing cloud resources from multiple device types over the internet.

Exam trap

The trap here is that candidates confuse operational features (like sensitivity labels or DLP) with foundational cloud characteristics, failing to recognize that 'broad network access' is the specific NIST-defined term for multi-device internet-based access.

How to eliminate wrong answers

Option A is wrong because sensitivity labels are a Microsoft Purview Information Protection feature used to classify and protect data based on sensitivity, not to enable network access from devices. Option B is wrong because Microsoft Planner is a task management and collaboration tool within Microsoft 365, not a cloud concept or benefit for device access. Option C is wrong because Data Loss Prevention (DLP) is a security policy mechanism to prevent unauthorized sharing of sensitive data, not a cloud characteristic for broad device connectivity.

22
MCQeasy

A company uses a cloud provider that bills them based on the exact amount of storage and compute hours they consume each month. They can increase or decrease their usage at any time without signing a long-term contract. Which cloud computing characteristic is most directly demonstrated by the billing model?

A.Scalability
B.Elasticity
C.Measured service
D.On-demand self-service
AnswerC

Measured service is the cloud computing characteristic whereby the provider automatically monitors, meters, and controls resource usage across CPU, storage, bandwidth, and active user accounts. This metering capability enables a pay-per-use billing model, because customers are charged only for the exact quantity of resources they actually consume. In platforms like Azure, usage data from telemetry feeds into billing systems, allowing transparent invoicing and usage reports. Therefore, it directly addresses the billing scenario described in the question, making it the correct answer.

Why this answer

The billing model described—paying for exactly the amount of storage and compute hours consumed, with no long-term contract—directly demonstrates the measured service characteristic. Measured service means that cloud resource usage is metered, monitored, and reported, allowing providers to charge customers based on actual consumption (pay-as-you-go). This is a core attribute of cloud computing as defined by NIST SP 800-145, where usage is tracked and billed transparently.

Exam trap

The trap here is that candidates confuse elasticity (the ability to scale dynamically) with measured service (the metering and billing of that usage), because both involve variable resource consumption, but measured service is specifically about the tracking and charging mechanism.

How to eliminate wrong answers

Option A is wrong because scalability refers to the ability to handle increased workload by adding resources, not to the billing model itself. Option B is wrong because elasticity is the ability to automatically scale resources up or down in response to demand, which is a separate operational characteristic from how usage is measured and billed. Option D is wrong because on-demand self-service means a user can provision resources without human interaction with the provider, which is about provisioning capability, not the metering and billing mechanism.

23
MCQmedium

A company wants monthly billing based on the number of Microsoft 365 users assigned licenses. Which cloud characteristic does this represent?

A.Fault tolerance
B.Resource pooling
C.Measured service
D.Rapid elasticity
AnswerC

Measured service is the cloud characteristic that provides usage metering, monitoring, and billing, allowing providers to charge for exactly the amount of service consumed or assigned—such as per-user Microsoft 365 licenses or per-hour virtual machine usage in Azure. It leverages telemetry and metering systems to track resource consumption, making it the direct answer to a requirement for monthly billing based on the number of Microsoft services. This is the only option that explicitly connects usage to financial invoicing, so it is correct.

Why this answer

Measured service is a cloud characteristic where usage is metered and billed based on consumption. In this scenario, the company is billed monthly based on the number of Microsoft 365 users assigned licenses, which directly reflects metered usage of the service. This aligns with the pay-per-use model defined by NIST SP 800-145 for cloud computing.

Exam trap

The trap here is that candidates confuse 'measured service' with 'rapid elasticity' because both involve dynamic changes, but measured service is specifically about metering and billing, not about scaling resources.

How to eliminate wrong answers

Option A is wrong because fault tolerance refers to a system's ability to continue operating after a component failure, not to billing or usage metering. Option B is wrong because resource pooling describes the provider's multi-tenant model where physical and virtual resources are dynamically assigned to multiple customers, not the billing mechanism. Option D is wrong because rapid elasticity involves the ability to quickly scale resources up or down based on demand, which is unrelated to how usage is measured and billed.

24
MCQeasy

A company uses cloud resources and notices that their monthly bill is based on the exact amount of storage and compute hours they consumed. They did not pay for any fixed, unused capacity. Which cloud characteristic does this describe?

A.Rapid elasticity
B.Resource pooling
C.On-demand self-service
D.Measured service
AnswerD

Measured service is the cloud characteristic that monitors, controls, reports, and bills customers based on their actual resource consumption, such as processing time, storage, or bandwidth. This metering capability enables pay-as-you-go pricing, where the monthly invoice directly reflects the quantity and type of cloud resources used. It provides transparency and allows customers to align costs with usage, which is precisely the scenario of a monthly bill based on consumption.

Why this answer

Measured service is the cloud characteristic that enables usage-based billing, where customers pay only for the resources they actually consume (e.g., storage GB-hours, compute vCPU-hours) without any upfront or fixed costs for idle capacity. This is implemented through metering capabilities at the hypervisor or resource provider level, which track consumption in granular units and feed into billing systems. The scenario explicitly describes paying for exact consumption, which aligns directly with the pay-per-use model of measured service.

Exam trap

The trap here is that candidates confuse 'measured service' with 'on-demand self-service' because both involve user-driven provisioning, but measured service specifically addresses the metering and billing aspect, not the provisioning mechanism.

How to eliminate wrong answers

Option A is wrong because rapid elasticity refers to the ability to automatically scale resources up or down quickly in response to demand, not to billing based on consumption. Option B is wrong because resource pooling describes the provider's ability to serve multiple tenants from a shared physical infrastructure using multi-tenancy, not the metering or billing mechanism. Option C is wrong because on-demand self-service allows users to provision resources without human interaction via a web portal or API, but it does not inherently describe how those resources are billed or that unused capacity is not charged.

25
MCQeasy

A financial services firm uses a public cloud provider for its customer-facing web application, but stores sensitive client data on its own on-premises servers. A secure VPN connection is used to transfer anonymized data from the public cloud to the on-premises environment for processing. Which cloud deployment model does this describe?

A.Public cloud
B.Private cloud
C.Hybrid cloud
D.Community cloud
AnswerC

Hybrid cloud is the correct model because it combines a private or on-premises environment with one or more public cloud providers, connected via a secure link such as a VPN or dedicated ExpressRoute. This architecture allows the financial services firm to keep sensitive data on-premises for regulatory compliance while leveraging public cloud scalability for non-sensitive workloads or burst capacity. It also enables workload portability between environments, which aligns directly with the scenario of integrating public cloud services with the firm's own on-premises servers.

Why this answer

This scenario describes a hybrid cloud because it combines a public cloud provider for the customer-facing web application with an on-premises private cloud for sensitive client data, connected via a secure VPN. The hybrid cloud model enables organizations to leverage the scalability and cost-efficiency of public cloud resources while maintaining strict control over sensitive data in a private environment. The use of a VPN to transfer anonymized data between the two environments is a key characteristic of hybrid cloud architecture, as it ensures secure communication across the boundary.

Exam trap

The trap here is that candidates may incorrectly choose 'Public cloud' because they focus on the customer-facing web application being hosted there, ignoring the on-premises storage of sensitive data, which is the defining characteristic of a hybrid deployment.

How to eliminate wrong answers

Option A is wrong because a public cloud model would have all resources, including sensitive client data, hosted and managed by the third-party cloud provider, not stored on-premises. Option B is wrong because a private cloud model would have all resources, including the web application, hosted on-premises or in a dedicated environment, not using a public cloud provider. Option D is wrong because a community cloud is shared by several organizations with common concerns (e.g., compliance or security requirements), but this scenario involves only one firm using both public and private infrastructure, not a multi-tenant community.

26
MCQmedium

A tenant administrator is advising a department that wants to use Microsoft 365 and another public cloud provider for different workloads. Cloud concept or benefit best matches this requirement?

A.Microsoft Planner
B.Sensitivity labels
C.Multi-cloud
D.Data Loss Prevention (DLP)
AnswerC

Multi-cloud is the correct answer because it describes an architecture in which an organization deliberately uses cloud services from two or more public cloud providers, such as Microsoft Azure, Amazon Web Services, and Google Cloud. This approach helps avoid vendor lock-in, improves resilience, and lets workloads run on the best-fit platform. If the department's goal is to operate across multiple cloud providers, multi-cloud is the technical term that matches that intent, not a Microsoft 365 workload or data protection feature.

Why this answer

C is correct because multi-cloud refers to using multiple public cloud providers (e.g., Microsoft 365 and another provider like AWS or Google Cloud) for different workloads, which directly matches the requirement. This allows the organization to avoid vendor lock-in, optimize costs, and leverage best-of-breed services across clouds.

Exam trap

The trap here is that candidates may confuse multi-cloud with hybrid cloud (which combines public and private cloud) or think a specific Microsoft tool (like Planner) is the answer, when the question explicitly asks for a cloud concept or benefit.

How to eliminate wrong answers

Option A is wrong because Microsoft Planner is a task management and planning tool within Microsoft 365, not a cloud concept or benefit for using multiple cloud providers. Option B is wrong because sensitivity labels are a Microsoft Purview Information Protection feature used to classify and protect data, not a cloud deployment model. Option D is wrong because Data Loss Prevention (DLP) is a security policy mechanism to prevent unauthorized data sharing, not a cloud concept for multi-cloud usage.

27
MCQeasy

A business needs staff to access Microsoft 365 services from different locations using only an internet connection. Which cloud benefit is being used?

A.Capital expenditure spending
B.Manual provisioning
C.Broad network access
D.Server virtualization only
AnswerC

Broad network access is one of the five essential characteristics of cloud computing defined by NIST, and it refers to capabilities being available over the network through standard protocols from heterogeneous client platforms. In the Microsoft 365 context, this means staff can use the web portal, desktop apps, and mobile apps on Windows, macOS, iOS, Android, and other devices without requiring a specific on-premises location. This directly satisfies the business requirement for employees to access services from varied networks and devices, making it the correct response.

Why this answer

Broad network access is a core characteristic of cloud computing defined by NIST SP 800-145. It means that resources are available over the network and can be accessed by standard client platforms (e.g., laptops, tablets, smartphones) using only an internet connection, without requiring a dedicated private link or on-premises hardware. In this scenario, staff accessing Microsoft 365 from different locations via the internet directly demonstrates broad network access.

Exam trap

The trap here is that candidates confuse 'broad network access' with 'server virtualization' or 'CapEx spending,' because they think cloud benefits are about hardware consolidation or cost models, rather than the fundamental characteristic of network-based, ubiquitous access.

How to eliminate wrong answers

Option A is wrong because capital expenditure (CapEx) spending refers to upfront investment in physical infrastructure (e.g., servers, data centers), which is the opposite of the cloud's operational expenditure (OpEx) model; the question describes accessing services via the internet, not a financial model. Option B is wrong because manual provisioning involves human intervention to set up resources, whereas cloud services like Microsoft 365 are self-service and automatically provisioned; the scenario focuses on access, not provisioning. Option D is wrong because server virtualization is a technology that enables multiple virtual machines on a single physical server, but it is not a cloud benefit itself and does not describe the ability to access services from anywhere via the internet; broad network access is the correct benefit.

28
MCQmedium

A company runs a custom application on a cloud provider's infrastructure. The provider manages the physical servers, networking, and storage, but the company installs, configures, and patches the operating system and application. Which cloud service model is this?

A.Software as a Service (SaaS)
B.Platform as a Service (PaaS)
C.Infrastructure as a Service (IaaS)
D.Function as a Service (FaaS)
AnswerC

IaaS provides virtualized compute, storage, and networking as raw infrastructure blocks, with the provider maintaining only the physical data center, hosts, hypervisor, and network fabric. The customer provisions virtual machines, installs and patches the guest operating system, configures storage and firewall rules, and runs the custom application on top. In the scenario, the customer has control over the OS and app stack, which is exactly the IaaS responsibility model.

Why this answer

This scenario describes Infrastructure as a Service (IaaS) because the cloud provider manages the underlying physical infrastructure (servers, networking, storage), while the customer retains control over the operating system, middleware, and application. In IaaS, the customer is responsible for OS patching, configuration, and application management, which matches the given responsibilities.

Exam trap

The trap here is confusing IaaS with PaaS because both involve deploying applications, but the key differentiator is OS-level control and patching responsibility—IaaS gives you full OS access, while PaaS abstracts it away.

How to eliminate wrong answers

Option A is wrong because Software as a Service (SaaS) delivers a fully managed application to end users, where the provider handles everything including the OS and application, and the customer does not install or patch the OS. Option B is wrong because Platform as a Service (PaaS) provides a managed runtime environment where the provider manages the OS and middleware, and the customer only deploys code, not the OS or its patches. Option D is wrong because Function as a Service (FaaS) is an event-driven compute model where the provider manages the entire infrastructure and the customer only uploads individual functions, with no OS-level access or patching responsibility.

29
MCQmedium

A development team uses a cloud service to run applications where the provider manages the runtime environment, operating system, and middleware. The team only writes and uploads code. Which service model are they using?

A.IaaS (Infrastructure as a Service)
B.PaaS (Platform as a Service)
C.SaaS (Software as a Service)
D.FaaS (Function as a Service)
AnswerB

PaaS provides a managed hosting environment in which the provider handles the operating system, runtime, middleware, and underlying hardware, allowing developers to focus exclusively on writing and deploying application code. This directly fits a development team that wants to run applications in the cloud without provisioning or maintaining servers, while still having full control over their code and configuration.

Why this answer

The scenario describes the team writing and uploading code while the provider manages the runtime environment, operating system, and middleware. This is the defining characteristic of Platform as a Service (PaaS), where the cloud provider abstracts the underlying infrastructure and platform layers, allowing developers to focus solely on application code. In PaaS, the provider handles OS patching, runtime updates, and middleware configuration, which matches the description exactly.

Exam trap

The trap here is that candidates often confuse PaaS with IaaS because both involve deploying applications, but the key differentiator is who manages the runtime and middleware — PaaS abstracts them away, while IaaS requires the user to manage them.

How to eliminate wrong answers

Option A (IaaS) is wrong because IaaS provides virtualized computing resources (e.g., VMs, storage, networks) but the user is responsible for managing the runtime environment, operating system, and middleware; the team would need to install and configure these themselves, not just upload code. Option C (SaaS) is wrong because SaaS delivers fully functional software applications over the internet (e.g., Office 365, Salesforce) where users consume the application without writing or uploading code; the team in the question is actively developing and uploading code. Option D (FaaS) is wrong because FaaS (Function as a Service) is a subset of serverless computing where developers upload individual functions that are executed in response to events, but the provider still manages the runtime environment; however, the question specifies the team runs 'applications' and manages the 'runtime environment, operating system, and middleware' at a higher abstraction level than individual functions, and FaaS typically involves event-driven, stateless functions rather than full application hosting.

30
MCQmedium

During a Microsoft 365 planning workshop, keep a workload on-premises while using Microsoft cloud collaboration services. Cloud concept or benefit best matches this requirement?

A.Hybrid cloud
B.Sensitivity labels
C.Microsoft Planner
D.Data Loss Prevention (DLP)
AnswerA

Hybrid cloud directly satisfies the requirement to keep a workload on-premises while consuming Microsoft cloud collaboration services. It combines on-premises infrastructure with public cloud resources such as Microsoft 365, enabling data residency or legacy dependencies to remain local while users access cloud collaboration.

Why this answer

A hybrid cloud model is the correct answer because it explicitly describes a scenario where an organization keeps certain workloads on-premises while integrating with Microsoft cloud collaboration services like Microsoft 365. This allows for a unified management plane, identity federation via Azure AD Connect, and seamless data synchronization between on-premises infrastructure and cloud services such as Exchange Online, SharePoint Online, or Teams.

Exam trap

The trap here is that candidates may confuse a specific Microsoft 365 feature (like sensitivity labels or DLP) with a cloud deployment model, failing to recognize that 'hybrid cloud' is the architectural concept that directly addresses the requirement of mixing on-premises and cloud services.

How to eliminate wrong answers

Option B is wrong because sensitivity labels are a Microsoft 365 compliance feature used to classify and protect data based on sensitivity, not a cloud deployment model that enables hybrid connectivity. Option C is wrong because Microsoft Planner is a task management application within Microsoft 365, not a cloud concept or benefit that supports keeping workloads on-premises. Option D is wrong because Data Loss Prevention (DLP) is a policy-based security feature to prevent unauthorized sharing of sensitive data, not a cloud architecture that allows hybrid workloads.

31
MCQeasy

During requirements gathering, an IT manager says the organization must let users provision resources from a portal without provider interaction. Cloud concept or benefit best matches this requirement?

A.On-demand self-service
B.Data Loss Prevention (DLP)
C.Microsoft Planner
D.Sensitivity labels
AnswerA

On-demand self-service lets users provision resources themselves through a portal or API without requiring interaction from the service provider. This precisely matches the IT manager's requirement that users obtain resources from a portal without provider involvement.

Why this answer

On-demand self-service is a core NIST-defined characteristic of cloud computing that allows users to provision computing resources—such as virtual machines, storage, or network capacity—automatically through a web portal or API without requiring human interaction from the service provider. This directly matches the IT manager's requirement for users to provision resources from a portal without provider interaction, making option A correct.

Exam trap

The trap here is that candidates may confuse a specific Microsoft 365 feature (like Planner or sensitivity labels) with a fundamental cloud computing characteristic, or mistakenly think DLP is a provisioning mechanism, when the question explicitly tests the NIST definition of on-demand self-service.

How to eliminate wrong answers

Option B is wrong because Data Loss Prevention (DLP) is a security policy and technology used to prevent sensitive data from being leaked or shared inappropriately, not a cloud concept for self-service resource provisioning. Option C is wrong because Microsoft Planner is a task management and planning application within Microsoft 365, not a cloud computing characteristic or benefit related to provisioning resources without provider interaction. Option D is wrong because sensitivity labels are classification and protection mechanisms applied to documents and emails to enforce access controls and encryption, not a cloud concept for automated resource provisioning.

32
MCQhard

A company migrates its database to Azure SQL Database (PaaS). According to the shared responsibility model, which of the following is the customer's responsibility?

A.Managing user access and authentication
B.Patching the operating system of the database server
C.Maintaining the physical infrastructure
D.Managing the virtualization layer
AnswerA

In Azure SQL Database, a PaaS offering, the customer remains responsible for data plane security, specifically controlling who can authenticate and what privileges they hold. You manage SQL logins, contained database users, Azure Active Directory identities, and database/role permissions, while Microsoft never takes on that access governance. This includes configuring firewalls for client IPs only as part of network access control, but authentication and authorization decisions are exclusively the customer's duty. Therefore, managing user access and authentication is a customer-controlled function within the shared responsibility model.

Why this answer

In the shared responsibility model for Azure SQL Database (PaaS), the customer is responsible for managing user access and authentication because the customer controls who can connect to the database and what permissions they have. Microsoft manages the underlying infrastructure, including the operating system, physical hardware, and virtualization layer, while the customer must secure data access through Azure Active Directory or SQL authentication, configure firewall rules, and manage logins and users.

Exam trap

The trap here is that candidates often assume patching or infrastructure maintenance is shared in PaaS, but Microsoft fully manages the OS and physical layers, while the customer's responsibility is strictly limited to data, access, and application-level security.

How to eliminate wrong answers

Option B is wrong because patching the operating system of the database server is the responsibility of Microsoft, not the customer, as Azure SQL Database is a PaaS service where Microsoft handles OS-level updates and security patches. Option C is wrong because maintaining the physical infrastructure, such as servers, storage, and networking hardware, is entirely managed by Microsoft in the cloud model. Option D is wrong because managing the virtualization layer, including hypervisors and virtual machine orchestration, is also Microsoft's responsibility in a PaaS offering like Azure SQL Database.

33
MCQeasy

A small business wants to use email and collaboration software without maintaining servers, databases, or application updates. Which cloud service model best describes Microsoft 365?

A.Infrastructure as a Service (IaaS)
B.Platform as a Service (PaaS)
C.Software as a Service (SaaS)
D.On-premises hosting
AnswerC

Software as a Service (SaaS) delivers fully functional, cloud-hosted applications on a subscription basis, with all underlying infrastructure, security updates, and patching handled by the provider. In Microsoft 365, Microsoft operates and maintains Exchange Online, SharePoint, and Teams, giving users complete email and collaboration tools without requiring any server management. This directly matches the user's stated requirement.

Why this answer

Microsoft 365 is a cloud-based suite that provides email (Exchange Online) and collaboration tools (Teams, SharePoint) as ready-to-use applications. This aligns with the SaaS model, where the provider manages the underlying infrastructure, platform, and software updates, allowing the customer to simply use the software without server maintenance.

Exam trap

The trap here is that candidates often confuse PaaS with SaaS because both are 'platforms' in a broad sense, but PaaS is for developers building apps (e.g., Azure App Service), while SaaS delivers finished applications like Microsoft 365.

How to eliminate wrong answers

Option A is wrong because IaaS provides virtualized computing resources (VMs, storage, networking) where the customer must still manage the OS, applications, and updates, which contradicts the 'without maintaining servers' requirement. Option B is wrong because PaaS offers a development platform (runtime, database, middleware) for building custom applications, not ready-to-use email and collaboration software like Microsoft 365. Option D is wrong because on-premises hosting requires the customer to own and maintain all hardware, software, and updates locally, which is the opposite of the cloud-based, no-maintenance model described.

34
MCQmedium

A service owner is comparing Microsoft 365 capabilities and needs to understand which security tasks Microsoft handles and which remain with the customer. Cloud concept or benefit best matches this requirement?

A.Microsoft Planner
B.Data Loss Prevention (DLP)
C.Sensitivity labels
D.Shared responsibility model
AnswerD

The shared responsibility model defines which security tasks Microsoft handles, such as physical datacentre and host infrastructure, and which remain with the customer, such as data, identities and access. This directly answers the service owner's comparison requirement.

Why this answer

The shared responsibility model defines which security tasks are handled by Microsoft (e.g., physical security, hypervisor patching) and which remain with the customer (e.g., user access management, data classification). This directly matches the service owner's need to understand the division of security responsibilities in Microsoft 365.

Exam trap

The trap here is that candidates may confuse specific security features (like DLP or sensitivity labels) with the overarching responsibility framework, failing to recognize that the shared responsibility model is the foundational concept that explains the division of security tasks.

How to eliminate wrong answers

Option A is wrong because Microsoft Planner is a task management and collaboration tool, not a security concept that defines responsibility boundaries. Option B is wrong because Data Loss Prevention (DLP) is a specific security feature that helps prevent data leaks, but it does not describe the overarching model of shared security responsibilities. Option C is wrong because sensitivity labels are used to classify and protect data based on policies, but they are a tool within the customer's responsibilities, not the model that explains which tasks Microsoft handles versus the customer.

35
MCQmedium

A help desk lead is documenting the correct Microsoft 365 approach to keep a workload on-premises while using Microsoft cloud collaboration services. Cloud concept or benefit best matches this requirement?

A.Hybrid cloud
B.Sensitivity labels
C.Microsoft Planner
D.Data Loss Prevention (DLP)
AnswerA

Hybrid cloud directly satisfies the requirement to keep a workload on-premises while extending into Microsoft cloud collaboration services. It combines on-premises infrastructure with public cloud resources such as Microsoft 365, enabling data residency where mandated while still using cloud collaboration. This differs from public or private cloud, which host entirely in one environment.

Why this answer

A hybrid cloud model is the correct approach because it allows an organization to keep a specific workload on-premises while leveraging Microsoft cloud collaboration services (such as Exchange Online, SharePoint Online, or Teams). This is achieved through integration technologies like Azure AD Connect for identity synchronization and Exchange Hybrid Configuration Wizard for mail routing, enabling a seamless coexistence between on-premises and cloud environments.

Exam trap

The trap here is that candidates confuse a specific Microsoft 365 service or feature (like Planner or DLP) with a cloud deployment model, failing to recognize that 'hybrid cloud' is the architectural concept that directly addresses the requirement of keeping a workload on-premises while using cloud services.

How to eliminate wrong answers

Option B (Sensitivity labels) is wrong because sensitivity labels are a Microsoft Information Protection feature used to classify and protect data based on sensitivity, not to architect a hybrid deployment where workloads remain on-premises. Option C (Microsoft Planner) is wrong because Planner is a cloud-based task management tool within Microsoft 365, not a concept or benefit that describes keeping workloads on-premises while using cloud services. Option D (Data Loss Prevention) is wrong because DLP is a security policy mechanism to prevent unauthorized sharing of sensitive data, not a cloud deployment model that supports hybrid scenarios.

36
Multi-Selecthard

Which TWO scenarios are best suited for a hybrid cloud deployment?

Select 2 answers
A.Extending on-premises Active Directory to Microsoft Entra ID
B.Using cloud bursting to handle peak load for an on-premises application
C.Storing archival data that is rarely accessed
D.Hosting a public-facing website with high traffic
E.Running a legacy application that requires physical hardware
AnswersA, B

Extending on-premises Active Directory to Microsoft Entra ID lets identities and authentication span both environments, which is the defining hybrid cloud pattern. This satisfies the scenario by keeping existing directory investment while gaining cloud services.

Why this answer

Option A is correct because extending on-premises Active Directory to Microsoft Entra ID is a classic hybrid cloud identity scenario: it keeps authoritative authentication on-premises while using a cloud identity provider (via Microsoft Entra Connect / password hash sync or federation) for cloud services, which inherently spans both environments. Option B is correct because cloud bursting is a defining hybrid cloud use case: an on-premises application overflows to public cloud compute during peak demand, requiring integration and orchestration between the private and public tiers. Option C is not specific to hybrid cloud—archival data is typically a public cloud storage or cold-storage (e.g., Azure Archive, S3 Glacier) decision and does not require an on-premises component.

Option D is not inherently hybrid; a high-traffic public website can be hosted entirely in public cloud without any private infrastructure. Option E is not hybrid cloud either—legacy applications requiring physical hardware are generally kept on-premises or in dedicated/private hosting, not deployed across a hybrid model.

Exam trap

The trap is that options C, D, and E are all valid cloud or on-premises scenarios, but the question asks specifically for hybrid scenarios — candidates must identify which options explicitly require both on-premises and cloud components working together, not just any cloud use case.

37
MCQeasy

A department head asks which Microsoft 365 option should be used to meter compute and storage usage for consumption-based billing. Cloud concept or benefit best matches this requirement?

A.Sensitivity labels
B.Microsoft Planner
C.Data Loss Prevention (DLP)
D.Measured service
AnswerD

Measured service is a core cloud computing characteristic defined by NIST, meaning the provider automatically meters resource usage (e.g., compute time, storage, bandwidth) at a granular level. Microsoft 365 applies this through tenant-level usage analytics and consumption-based billing for services like Power Platform API calls or additional storage. This lets customers optimize costs by aligning paid licenses with actual user and workload consumption, rather than a fixed performance guarantee.

Why this answer

Measured service is a core cloud computing concept where resource usage (compute, storage, network) is metered and billed based on actual consumption. In Microsoft 365, this aligns with consumption-based billing models like pay-as-you-go for Azure services or per-user licensing adjustments, enabling cost transparency and optimization.

Exam trap

The trap here is that candidates confuse operational tools (like DLP or Planner) with cloud service models, failing to recognize that 'measured service' is a fundamental characteristic of cloud computing defined by NIST SP 800-145, not a specific Microsoft 365 feature.

How to eliminate wrong answers

Option A is wrong because sensitivity labels are used for classification and protection of data (e.g., encryption, marking) and have no role in metering compute or storage usage. Option B is wrong because Microsoft Planner is a task management and collaboration tool for organizing work, not a billing or metering mechanism. Option C is wrong because Data Loss Prevention (DLP) policies prevent unauthorized sharing of sensitive data and do not track or bill for resource consumption.

38
MCQeasy

A company wants to use a cloud service where they can develop and run applications without managing the underlying infrastructure, including servers, operating systems, or storage. They only need to upload their code and the provider handles scaling and availability. Which cloud service model best describes this approach?

A.Infrastructure as a Service (IaaS)
B.Platform as a Service (PaaS)
C.Software as a Service (SaaS)
D.On-premises deployment
AnswerB

PaaS provides a fully managed application hosting environment that includes the operating system, language runtime, web server, database, and auto-scaling capabilities. Developers simply deploy their code and the platform handles patching, high availability, and load balancing automatically. This removes the operational heavy lifting and directly matches the need to develop and run custom applications in the cloud, making it the correct answer.

Why this answer

Platform as a Service (PaaS) provides a managed hosting environment where developers can deploy applications without worrying about the underlying infrastructure. The provider automatically handles server provisioning, OS patching, storage management, and scaling based on demand. In this scenario, the company only needs to upload code, which is the defining characteristic of PaaS.

Exam trap

The trap here is that candidates confuse PaaS with IaaS because both involve deploying applications, but IaaS requires manual OS and runtime management, whereas PaaS abstracts all infrastructure away.

How to eliminate wrong answers

Option A is wrong because Infrastructure as a Service (IaaS) still requires the user to manage the operating system, middleware, and runtime; the provider only supplies virtualized hardware like compute, storage, and networking. Option C is wrong because Software as a Service (SaaS) delivers fully functional applications to end users over the internet, not a platform for developing and running custom code. Option D is wrong because on-premises deployment means the company owns and manages all hardware and software locally, which is the opposite of a cloud service where the provider handles infrastructure.

39
MCQeasy

Which cloud computing characteristic allows a company to access resources like storage and databases from any device with an internet connection without needing to manage the physical infrastructure?

A.Rapid elasticity
B.Measured service
C.Broad network access
D.Resource pooling
AnswerC

Broad network access is the cloud characteristic that makes resources available over the network through standard protocols, allowing access from laptops, mobile phones, and other devices with internet connectivity. This ensures that employees can securely connect to corporate applications and data from any location, fulfilling the need described in the question. It is one of the essential NIST-defined characteristics of cloud computing, distinct from scaling or metering.

Why this answer

Broad network access is the correct answer because it describes the ability to access cloud resources (such as storage and databases) over the network via standard protocols (e.g., HTTP/HTTPS, SMB, NFS) from any device (laptop, smartphone, tablet) with an internet connection, without requiring the customer to manage the underlying physical infrastructure. This characteristic is defined by NIST SP 800-145 as 'capabilities are available over the network and accessed through standard mechanisms that promote use by heterogeneous thin or thick client platforms.'

Exam trap

The trap here is that candidates often confuse 'broad network access' with 'resource pooling' because both involve multi-device scenarios, but resource pooling is about the provider's internal multi-tenant architecture, not the customer's ability to connect from any device.

How to eliminate wrong answers

Option A is wrong because rapid elasticity refers to the ability to automatically scale resources up or down quickly in response to demand, not to the network-based accessibility from any device. Option B is wrong because measured service involves metering and monitoring resource usage for billing and optimization (e.g., pay-per-use), not the capability to access resources from any device. Option D is wrong because resource pooling means the provider's computing resources are pooled to serve multiple customers using a multi-tenant model, with physical and virtual resources dynamically assigned and reassigned according to consumer demand; it does not describe device-independent network access.

40
MCQmedium

A company wants to deploy a cloud solution where they have the maximum control over the operating system, installed software, and security configurations, but they do not want to manage physical servers or data center facilities. Which cloud service model best meets this requirement?

A.Infrastructure as a Service (IaaS)
B.Platform as a Service (PaaS)
C.Software as a Service (SaaS)
D.Hybrid cloud
AnswerA

Infrastructure as a Service (IaaS) delivers virtualized compute, storage, and networking on demand, with the provider managing only the physical data-center infrastructure. The customer retains full administrative control over the guest operating system, storage configurations, deployed applications, middleware, and security settings, enabling maximum control over software stack and runtime environment compared to PaaS or SaaS.

Why this answer

Infrastructure as a Service (IaaS) provides virtualized computing resources over the internet, giving the customer full administrative control over the operating system, installed software, and security configurations (e.g., firewall rules, patch management) while the cloud provider manages the physical servers, storage, and networking hardware. This model aligns with the requirement for maximum control without managing physical infrastructure.

Exam trap

The trap here is that candidates often confuse the deployment model (Hybrid cloud) with the service model, or they assume PaaS offers more control than it actually does because they overlook the provider-managed OS layer in PaaS.

How to eliminate wrong answers

Option B (PaaS) is wrong because it abstracts the underlying OS and runtime environment, limiting the customer's control over OS-level configurations, installed software, and security settings—the provider manages the OS and middleware. Option C (SaaS) is wrong because the customer has no control over the OS, software stack, or security configurations; they only use the application as provided. Option D (Hybrid cloud) is wrong because it is a deployment model (combining public and private clouds), not a service model, and does not inherently grant maximum control over OS and software—it describes where resources are located, not the level of control.

41
MCQeasy

A company uses a cloud service where they can provision virtual machines, install any operating system, and manage all software on those machines. The cloud provider is responsible for the physical hardware, data center security, and network infrastructure. Which cloud service model does this represent?

A.IaaS (Infrastructure as a Service)
B.PaaS (Platform as a Service)
C.SaaS (Software as a Service)
D.FaaS (Function as a Service)
AnswerA

In the Infrastructure-as-a-Service model, the cloud provider supplies fundamental computing resources such as virtual machines, storage, and virtual networks on demand. Subscribers can provision these VMs with their own operating system, middleware, and applications, retaining administrative control over the OS, security patching, and software configuration while the provider maintains the physical host hardware and datacenter infrastructure. This directly matches the scenario of provisioning a virtual machine.

Why this answer

This scenario describes Infrastructure as a Service (IaaS) because the customer has full control over virtual machines, including the operating system and all installed software, while the cloud provider manages the underlying physical hardware, data center security, and network infrastructure. In IaaS, the provider offers virtualized computing resources over the internet, and the customer is responsible for everything above the hypervisor layer, such as OS patches, application configuration, and middleware.

Exam trap

The trap here is that candidates often confuse IaaS with PaaS because both involve virtual machines, but the key differentiator is whether the customer manages the operating system and software stack (IaaS) or the provider manages them (PaaS).

How to eliminate wrong answers

Option B is wrong because PaaS (Platform as a Service) provides a managed platform where the provider handles the runtime, middleware, and OS, and the customer only deploys code; the customer cannot install or manage an arbitrary operating system on virtual machines. Option C is wrong because SaaS (Software as a Service) delivers fully managed applications accessed via a web browser or client, with no customer control over the underlying infrastructure, OS, or virtual machines. Option D is wrong because FaaS (Function as a Service) is a serverless compute model where customers deploy individual functions that execute in response to events, and they have no visibility or control over virtual machines or operating systems.

42
MCQeasy

A company's e-commerce website experiences a sudden surge in traffic during a promotional event. The cloud infrastructure automatically adds additional virtual servers to handle the load and removes them when traffic subsides, without any manual intervention from the IT team. Which cloud computing characteristic does this demonstrate?

A.Rapid elasticity
B.On-demand self-service
C.Resource pooling
D.Measured service
AnswerA

Rapid elasticity is the capability to provision and de-provision resources automatically and proportionally to demand. The infrastructure scaling servers up during the surge and removing them afterwards, with no manual intervention, matches this characteristic exactly.

Why this answer

The scenario describes the cloud infrastructure automatically scaling virtual servers up and down in response to traffic changes, which is the defining characteristic of rapid elasticity. This capability allows resources to be provisioned and released elastically, often automatically, to match demand at any given time, as defined by NIST SP 800-145.

Exam trap

The trap here is that candidates confuse 'on-demand self-service' (manual provisioning by a user) with 'rapid elasticity' (automatic scaling by the cloud platform), but the key differentiator is the lack of manual intervention in the scenario.

How to eliminate wrong answers

Option B is wrong because on-demand self-service refers to a user's ability to provision computing resources (e.g., spinning up a VM) without human interaction with the provider, not the automatic scaling of resources based on load. Option C is wrong because resource pooling describes the provider's multi-tenant model where physical and virtual resources are dynamically assigned to serve multiple customers, not the automatic scaling behavior. Option D is wrong because measured service involves metering and reporting resource usage for billing and optimization (e.g., pay-per-use), not the automatic addition or removal of servers in response to demand.

43
MCQhard

A company is deploying a cloud solution where they have the ability to quickly scale up resources during peak demand and scale down during off-peak hours, paying only for what they use. They also need the provider to automatically manage the underlying platform, including patching the operating system. Which combination of cloud characteristics and service model best describes this scenario?

A.Elasticity and PaaS
B.Scalability and IaaS
C.Rapid elasticity and SaaS
D.Measured service and PaaS
AnswerA

Elasticity automatically adjusts computing capacity in real time to match fluctuating demand, while PaaS offloads management of the underlying OS, runtime, and middleware to the provider. This combination fits the scenario because the customer can scale the application on demand without handling infrastructure patching, while the provider maintains the platform. Unlike IaaS, the OS is not the customer's responsibility; unlike SaaS, the application itself remains under customer control.

Why this answer

The scenario describes elasticity (the ability to scale resources up and down automatically based on demand) and Platform as a Service (PaaS), where the provider manages the underlying platform, including OS patching. Elasticity is a key cloud characteristic that enables dynamic scaling, and PaaS abstracts infrastructure management, aligning perfectly with the requirement for automatic platform maintenance.

Exam trap

The trap here is confusing scalability (a general capability) with elasticity (dynamic, automated scaling), and assuming IaaS includes platform management like patching, which it does not—IaaS only provides virtual machines where the customer handles the OS.

How to eliminate wrong answers

Option B is wrong because IaaS (Infrastructure as a Service) does not include automatic OS patching; the customer is responsible for managing the operating system and middleware. Option C is wrong because SaaS (Software as a Service) delivers fully managed applications, not a platform for deploying custom code, and the scenario requires platform-level control, not just application usage. Option D is wrong because measured service (metering and billing) is a cloud characteristic that applies to all service models, but it does not describe the automatic scaling or platform management mentioned in the scenario.

44
MCQmedium

Which cloud deployment model provides the highest level of control over resources and infrastructure?

A.Public cloud
B.Private cloud
C.Hybrid cloud
D.Community cloud
AnswerB

A private cloud is a single-tenant environment dedicated exclusively to one organization, even if it is hosted off premises. It gives the organization full control over physical hardware, virtualization layers, networking, patching, and security policy, and allows deep customization to meet regulatory or performance requirements. This dedicated, isolated architecture is why it maximizes infrastructure control and governance.

Why this answer

The private cloud deployment model provides the highest level of control over resources and infrastructure because it is dedicated to a single organization, allowing full customization of hardware, networking, and security policies. Unlike public or hybrid models, the organization retains exclusive administrative access and can enforce strict compliance requirements without sharing underlying physical resources with other tenants.

Exam trap

The trap here is that candidates often confuse 'control' with 'scalability' or 'cost efficiency,' assuming hybrid cloud offers the best of both worlds, but the question specifically asks for the highest level of control, which only a private cloud provides due to its single-tenant, fully customizable nature.

How to eliminate wrong answers

Option A is wrong because the public cloud model shares infrastructure across multiple tenants via a multi-tenant architecture, limiting control over underlying hardware and network configurations. Option C is wrong because the hybrid cloud model combines public and private clouds, but the public cloud portion inherently reduces overall control due to shared infrastructure and provider-managed services. Option D is wrong because the community cloud model is shared among several organizations with common concerns, which dilutes individual control compared to a dedicated private cloud.

45
MCQeasy

A cloud provider uses a multi-tenant model where physical and virtual resources are dynamically assigned and reassigned according to consumer demand. This is an example of which cloud computing characteristic?

A.Rapid elasticity
B.Resource pooling
C.On-demand self-service
D.Measured service
AnswerB

Resource pooling is the NIST cloud characteristic that directly captures the multi-tenant model described: the provider's physical and virtual resources are pooled and dynamically assigned and reassigned to multiple consumers according to demand, with each tenant having no knowledge or control over the exact underlying resource location. This allows multiple customers to share the same physical hardware, hypervisor, storage arrays, and network fabric while maintaining logical isolation. Because the question specifically asks about a model where physical resources are shared among customers, resource pooling is the correct identifier.

Why this answer

Resource pooling is the correct answer because the multi-tenant model described involves the cloud provider pooling physical and virtual resources (e.g., compute, storage, network) to serve multiple consumers, with resources dynamically assigned and reassigned based on demand. This is a core characteristic of cloud computing as defined by NIST SP 800-145, where the provider's resources are pooled to achieve economies of scale while maintaining logical isolation between tenants.

Exam trap

The trap here is that candidates often confuse resource pooling with rapid elasticity because both involve dynamic resource assignment, but resource pooling specifically focuses on the multi-tenant sharing of a provider's resource pool, not the speed or automation of scaling.

How to eliminate wrong answers

Option A is wrong because rapid elasticity refers to the ability to quickly scale resources up or down, often automatically, to meet demand, not the pooling of resources across multiple tenants. Option C is wrong because on-demand self-service allows a consumer to provision computing capabilities unilaterally without requiring human interaction with the provider, which is a separate characteristic from resource pooling. Option D is wrong because measured service involves metering and monitoring resource usage (e.g., CPU hours, bandwidth) for billing and optimization, not the dynamic assignment of pooled resources to tenants.

46
MCQmedium

A tenant administrator is advising a department that wants to deploy application code without maintaining the operating system or runtime platform. Cloud concept or benefit best matches this requirement?

A.Private cloud
B.Platform as a Service (PaaS)
C.Infrastructure as a Service (IaaS)
D.Software as a Service (SaaS)
AnswerB

PaaS supplies the managed runtime and operating system, so the department deploys only its application code. This removes the need to patch or maintain the OS and platform layers, matching the stated requirement; IaaS would still leave those responsibilities with the department.

Why this answer

Platform as a Service (PaaS) provides a platform for developing, running, and managing applications without the complexity of building and maintaining the underlying infrastructure. The department wants to deploy application code without managing the OS or runtime, which is exactly what PaaS offers. IaaS provides raw compute, storage, and network but requires OS management; SaaS provides fully functional applications; private cloud is a deployment model, not a service model.

Exam trap

The trap is confusing PaaS with IaaS. Candidates might think that not managing the OS means IaaS, but IaaS still requires OS management; PaaS goes further by managing the runtime and middleware.

How to eliminate wrong answers

Option A is wrong because private cloud is a deployment model (dedicated to one organization) and does not specify the level of management abstraction. Option C is wrong because IaaS requires the customer to manage the OS and runtime, which contradicts the requirement. Option D is wrong because SaaS provides a complete application, not a platform for deploying custom code.

47
MCQmedium

A cloud provider serves thousands of customers using the same physical hardware. Each customer's data and applications are isolated from one another through virtualization. The provider can dynamically allocate resources to customers based on demand. Which cloud characteristic does this describe?

A.Resource pooling
B.On-demand self-service
C.Rapid elasticity
D.Measured service
AnswerA

Resource pooling is the NIST cloud characteristic that directly describes the provider serving thousands of customers using the same physical infrastructure. In this multi-tenant model, the provider's computing, storage, network, and other resources are pooled and dynamically assigned and reassigned to consumers based on demand, with each tenant unaware of or lacking control over the exact underlying hardware location. This is precisely the scenario in the question, making it the correct answer.

Why this answer

This scenario describes resource pooling, where the cloud provider's computing resources (e.g., storage, processing, memory, network bandwidth) are pooled to serve multiple customers using a multi-tenant model. Virtualization isolates each customer's data and applications, while physical and virtual resources are dynamically assigned and reassigned according to consumer demand. This is a core characteristic of cloud computing as defined by NIST SP 800-145.

Exam trap

The trap here is that candidates often confuse 'resource pooling' with 'rapid elasticity' because both involve dynamic allocation, but resource pooling is about the multi-tenant sharing of physical infrastructure, while elasticity is about the speed and automation of scaling resources up or down.

How to eliminate wrong answers

Option B (On-demand self-service) is wrong because that characteristic describes a user's ability to provision computing capabilities automatically without requiring human interaction with the service provider, not the sharing of physical hardware. Option C (Rapid elasticity) is wrong because elasticity refers to the ability to scale resources up or down quickly and automatically in response to demand, not the underlying pooling of resources across tenants. Option D (Measured service) is wrong because measured service involves metering and monitoring resource usage for billing and optimization, not the isolation and dynamic allocation of shared physical hardware.

48
MCQmedium

While preparing a Microsoft 365 adoption plan, a consultant is asked to use provider-managed infrastructure shared by multiple customers. Cloud concept or benefit best matches this requirement?

A.Public cloud
B.Data Loss Prevention (DLP)
C.Sensitivity labels
D.Microsoft Planner
AnswerA

Public cloud delivers provider-managed compute, storage and networking shared across multiple tenants, exactly matching the shared-infrastructure requirement. Microsoft, Amazon and Google own and operate the hardware, so the organisation consumes pooled capacity rather than dedicated private resources.

Why this answer

The requirement for provider-managed infrastructure shared by multiple customers directly maps to the public cloud deployment model. In a public cloud, the cloud provider owns and manages the physical hardware, software, and supporting infrastructure, which is shared across multiple tenants (multi-tenancy). This is the core definition of public cloud as opposed to private or hybrid models.

Exam trap

The trap here is that candidates may confuse a specific Microsoft 365 feature (like DLP or sensitivity labels) with a cloud deployment model, failing to recognize that the question is asking about the fundamental cloud concept of shared, provider-managed infrastructure, not a security or productivity tool.

How to eliminate wrong answers

Option B is wrong because Data Loss Prevention (DLP) is a security policy feature within Microsoft 365 that helps prevent sensitive information from being shared or leaked; it does not describe a cloud deployment model or infrastructure sharing concept. Option C is wrong because sensitivity labels are classification and protection tools applied to documents and emails to enforce access controls and encryption; they are not a cloud concept related to shared infrastructure. Option D is wrong because Microsoft Planner is a task management and collaboration application within Microsoft 365; it is a specific service, not a cloud concept or benefit describing how infrastructure is deployed or shared.

49
MCQeasy

Which characteristic of cloud computing allows a user to provision resources automatically without requiring human interaction with the service provider?

A.Rapid elasticity
B.Resource pooling
C.On-demand self-service
D.Measured service
AnswerC

On-demand self-service is the NIST-defined characteristic that lets a consumer unilaterally provision computing capabilities—such as virtual machines, storage, or network services—as needed automatically, without requiring human interaction with the service provider. This is typically delivered through a web portal, CLI, or API, meaning the user can spin up resources in minutes without opening a support ticket. It directly matches the scenario in the question: the user can obtain resources automatically and without manual intervention.

Why this answer

On-demand self-service is a fundamental characteristic of cloud computing defined by NIST (SP 800-145) that allows a user to unilaterally provision computing capabilities, such as server time and network storage, as needed automatically without requiring human interaction with each service provider. This is typically implemented through a web portal or API (e.g., AWS Console, Azure Portal, or RESTful APIs) that enables instant resource creation and configuration.

Exam trap

The trap here is that candidates often confuse 'rapid elasticity' with 'on-demand self-service' because both involve automation, but rapid elasticity focuses on scaling existing resources while on-demand self-service is about the initial provisioning without human intervention.

How to eliminate wrong answers

Option A is wrong because rapid elasticity refers to the ability to scale resources up or down quickly and automatically in response to demand, not to the initial provisioning without human interaction. Option B is wrong because resource pooling describes the provider's multi-tenant model where physical and virtual resources are dynamically assigned and reassigned according to consumer demand, not the user's ability to self-provision. Option D is wrong because measured service involves metering and monitoring resource usage (e.g., CPU hours, bandwidth, storage) for billing and optimization, not the automated provisioning process.

50
Multi-Selectmedium

Which THREE are benefits of using cloud services compared to on-premises infrastructure?

Select 3 answers
A.Limited scalability due to resource constraints
B.Elasticity to scale resources up or down automatically
C.High availability through redundant infrastructure
D.Built-in disaster recovery capabilities
E.Capital expenditure (CapEx) is eliminated
AnswersB, C, D

Elasticity lets cloud services automatically scale resources up or down to match demand, so organisations pay only for what they consume. This satisfies the stem's benefit requirement, contrasting with on-premises infrastructure, which needs pre-provisioned capacity sized for peak load.

Why this answer

Option B is correct because cloud providers offer elasticity, allowing resources to automatically scale up or down based on demand, which is difficult to achieve with fixed on-premises hardware. Option C is correct because cloud services are built on redundant, geographically distributed infrastructure that provides high availability and fault tolerance beyond what most on-premises environments can afford. Option D is correct because cloud providers offer built-in disaster recovery capabilities, such as cross-region replication and backup services, without requiring organizations to build and maintain a secondary site.

Option A is incorrect because limited scalability due to resource constraints describes an on-premises limitation, not a cloud benefit. Option E is incorrect because cloud services shift spending to operational expenditure (OpEx), but they do not eliminate capital expenditure entirely, as organizations may still incur upfront costs for devices, migration, or reserved capacity.

Exam trap

The trap is selecting 'Capital expenditure (CapEx) is eliminated' as a benefit; while cloud reduces CapEx, it does not eliminate it entirely, and the exam expects you to recognize that the three correct benefits are elasticity, high availability, and disaster recovery.

51
MCQeasy

Which cloud characteristic allows an organization to increase or decrease computing resources quickly based on demand, without requiring manual intervention?

A.Measured service
B.Rapid elasticity
C.Resource pooling
D.Broad network access
AnswerB

Rapid elasticity is the cloud characteristic that allows resources—such as virtual machines, storage, or bandwidth—to be provisioned and released quickly, often automatically, to scale in response to fluctuating demand. It gives organizations the ability to scale out (increase resources) and scale in (decrease resources) seamlessly, sometimes without human intervention using orchestration tools or auto-scaling policies. This directly supports dynamic workloads where usage spikes or drops, making it the correct answer for the question.

Why this answer

Rapid elasticity is the cloud characteristic that enables automatic, on-demand scaling of computing resources (such as virtual machines, storage, or network bandwidth) in response to fluctuating workload demands, without requiring manual provisioning or de-provisioning. This is a core feature of cloud computing defined by NIST SP 800-145, allowing resources to scale out (increase) or scale in (decrease) dynamically, often using orchestration tools like Azure Autoscale or AWS Auto Scaling. The key distinction is that the scaling happens quickly and automatically, based on predefined rules or metrics like CPU utilization or request count.

Exam trap

The trap here is that candidates often confuse 'rapid elasticity' with 'resource pooling' because both involve dynamic allocation, but resource pooling is about sharing resources among multiple tenants, not about automatically scaling a single tenant's resources on demand.

How to eliminate wrong answers

Option A (Measured service) is wrong because it refers to the metering and billing of cloud resource usage (e.g., pay-per-use or consumption-based pricing), not the ability to scale resources up or down automatically. Option C (Resource pooling) is wrong because it describes the multi-tenant model where provider resources are pooled to serve multiple customers, with physical and virtual resources dynamically assigned and reassigned according to demand, but it does not inherently provide automatic scaling of individual customer resources. Option D (Broad network access) is wrong because it defines the capability for resources to be accessed over the network via standard protocols (e.g., HTTPS, SSH) from a wide range of devices (e.g., laptops, smartphones), not the ability to adjust resource capacity on demand.

52
MCQeasy

Which cloud deployment model exclusively uses resources that are owned and managed by a single organization, and is often chosen for its high level of control and compliance?

A.Public cloud
B.Private cloud
C.Hybrid cloud
D.Community cloud
AnswerB

A private cloud is provisioned for exclusive use by a single organization and may be managed by the organization itself or by a third party, and may be hosted on-premises or in a provider's data center. The infrastructure—including virtualized servers, storage, and networking—is dedicated to that one tenant, giving the organization full control over resource allocation, security policies, and compliance adherence. This exclusive, single-tenant nature is the defining characteristic that makes private cloud the correct answer.

Why this answer

The private cloud deployment model is correct because it is defined as a cloud infrastructure that is provisioned for exclusive use by a single organization. This model provides the highest level of control over data, security, and compliance, as the organization owns and manages the underlying hardware and software, often within its own data center or via a dedicated hosted environment.

Exam trap

The trap here is that candidates often confuse 'private cloud' with 'on-premises infrastructure' and may incorrectly select 'hybrid cloud' thinking it offers the same control, but the question specifically asks for a model that exclusively uses resources owned by a single organization, which is the defining characteristic of a private cloud.

How to eliminate wrong answers

Option A is wrong because the public cloud model uses resources owned and operated by a third-party cloud service provider (e.g., Microsoft Azure, AWS, Google Cloud) and is shared across multiple tenants, offering less control and compliance isolation. Option C is wrong because the hybrid cloud model combines both public and private clouds, allowing data and applications to be shared between them, which does not exclusively use resources owned by a single organization. Option D is wrong because the community cloud model is shared by several organizations with common concerns (e.g., compliance, security, policy), not exclusively owned and managed by a single organization.

53
MCQeasy

A user wants to access company email and documents from any device, anywhere. Which cloud model is Microsoft 365?

A.Platform as a Service (PaaS)
B.Software as a Service (SaaS)
C.Infrastructure as a Service (IaaS)
D.Desktop as a Service (DaaS)
AnswerB

Software as a Service (SaaS) delivers fully managed applications over the internet through a subscription. Microsoft 365 is the canonical example: Exchange Online hosts company mailboxes, and SharePoint Online/OneDrive host documents, all accessible from any device through a browser or Office client without manual patching or server maintenance. This directly matches the user’s requirement for ready-to-use email and document access from anywhere.

Why this answer

Microsoft 365 is a SaaS offering because Microsoft hosts and manages the applications (Exchange Online, SharePoint Online, Teams, Office apps) and the underlying infrastructure, and customers access them over the internet via subscription. Users consume the software without managing servers, patching, or platform configuration. This matches the SaaS model where the provider delivers a complete, ready-to-use application.

Exam trap

MS-900 often tests the difference between SaaS, PaaS, and IaaS by presenting a familiar product (Microsoft 365) and expecting candidates to recognise that the provider manages everything from the application down — candidates sometimes pick PaaS because they confuse 'cloud-hosted application' with 'platform'.

How to eliminate wrong answers

Option A is wrong because PaaS provides a development and hosting environment (e.g., Azure App Service) where customers deploy their own code, not a finished productivity suite. Option C is wrong because IaaS provides raw compute, storage, and networking (e.g., Azure VMs) that customers must configure and manage themselves. Option D is wrong because DaaS delivers virtual desktops (e.g., Azure Virtual Desktop) rather than a multi-tenant productivity application suite.

54
MCQmedium

An administrator is reviewing a request from users who need to avoid overprovisioning for a seasonal workload. Cloud concept or benefit best matches this requirement?

A.Data Loss Prevention (DLP)
B.Sensitivity labels
C.Microsoft Planner
D.Rapid elasticity
AnswerD

Rapid elasticity matches the requirement because it lets resources scale out automatically during seasonal peaks and scale back in afterwards, so capacity tracks demand rather than being provisioned for worst-case load. This directly prevents overprovisioning, since you pay only for what the workload actually consumes.

Why this answer

Rapid elasticity is a core cloud computing characteristic defined by NIST (SP 800-145) that allows resources to scale out and in automatically based on demand. For a seasonal workload, this means the cloud can provision additional compute or storage capacity during peak periods and release it when demand drops, preventing overprovisioning and optimizing costs.

Exam trap

The trap here is that candidates confuse operational tools (like Planner) or security features (like DLP and sensitivity labels) with core cloud architectural benefits, failing to recognize that rapid elasticity is the specific NIST-defined characteristic that directly addresses overprovisioning for variable workloads.

How to eliminate wrong answers

Option A is wrong because Data Loss Prevention (DLP) is a security feature in Microsoft Purview that monitors and protects sensitive data from unauthorized sharing or leakage, not a mechanism for scaling resources. Option B is wrong because sensitivity labels are classification and protection controls applied to documents and emails to enforce encryption or access restrictions, unrelated to workload elasticity. Option C is wrong because Microsoft Planner is a task management and collaboration tool within Microsoft 365, not a cloud infrastructure feature for dynamic resource allocation.

55
MCQeasy

A cloud user can access their files from a work desktop, a personal laptop at home, and a mobile phone while traveling. Which essential characteristic of cloud computing does this scenario best illustrate?

A.On-demand self-service
B.Broad network access
C.Resource pooling
D.Rapid elasticity
AnswerB

Broad network access means cloud capabilities are available over the network through standard protocols and can be used by a diverse range of client platforms, including work desktops, laptops, tablets, and smartphones. The NIST definition of cloud computing highlights that access is via standard mechanisms, which is exactly the scenario in the question: a user can reach the same stored files from a work desktop and other network-connected devices. This is the distinguishing characteristic that makes this option correct.

Why this answer

Broad network access is the correct answer because it describes the ability to access cloud resources from diverse client platforms (work desktop, personal laptop, mobile phone) over the network using standard protocols such as HTTPS, SSH, or VPN. This characteristic ensures that services are available from any location with internet connectivity, not just from a single device or network.

Exam trap

The trap here is that candidates confuse 'access from multiple devices' with 'on-demand self-service' because both involve user-initiated actions, but on-demand self-service specifically means provisioning resources without provider intervention, not multi-device connectivity.

How to eliminate wrong answers

Option A is wrong because on-demand self-service refers to a user provisioning compute resources automatically without requiring human interaction with the cloud provider, not the ability to access files from multiple devices. Option C is wrong because resource pooling describes the provider's multi-tenant model where physical and virtual resources are dynamically assigned to serve multiple consumers, not the user's multi-device access. Option D is wrong because rapid elasticity focuses on the ability to scale resources up or down quickly based on demand, such as adding virtual machines during a traffic spike, not the user's ability to connect from different endpoints.

56
Multi-Selectmedium

A company is evaluating a move to the cloud. Which three of the following are advantages of using a public cloud model compared to a private cloud? (Choose three.)

Select 3 answers
.No capital expenditure for hardware
.Elastic scaling of resources on demand
.Provider-managed infrastructure maintenance
.Full control over physical security of data centers
.Guaranteed data residency in a specific geographic location
.Lower total cost for all long-term workloads

Why this answer

In a public cloud model, the cloud provider owns and manages the physical hardware, eliminating the need for the customer to make capital expenditures (CapEx) on servers, storage, and networking equipment. Public clouds offer elastic scaling, allowing resources like virtual machines or containers to be automatically provisioned or deprovisioned based on real-time demand, which is a core benefit of cloud computing. Provider-managed infrastructure maintenance means the cloud vendor handles all hardware patching, firmware updates, and physical security, offloading these operational responsibilities from the customer.

Exam trap

Microsoft often tests the misconception that public cloud always reduces costs for all workloads, but the trap is that long-term, predictable workloads can be more expensive in public cloud due to ongoing operational costs and lack of reserved instance optimization, while private cloud may offer lower TCO for such scenarios.

57
MCQeasy

A company uses a cloud provider that offers compute power as a service. The provider manages the physical servers, storage, and networking, but the company has full control over the operating system, applications, and configurations. Which cloud service model is being used?

A.Software as a Service (SaaS)
B.Platform as a Service (PaaS)
C.Infrastructure as a Service (IaaS)
D.Function as a Service (FaaS)
AnswerC

Infrastructure as a Service (IaaS) supplies on-demand virtual machines, virtual networks, and block storage, giving the customer full administrative control over the guest operating system, applications, and security configurations. The provider operates the physical hosts, virtualization layer, and data center facilities, while the customer selects compute sizes, scales capacity, and manages the guest OS like a traditional server. This direct provisioning of compute power and storage is the definitive example of compute power as a service, unlike more abstracted models.

Why this answer

The scenario describes Infrastructure as a Service (IaaS), where the cloud provider manages the underlying physical infrastructure (servers, storage, networking), but the customer retains full control over the operating system, applications, and configurations. This aligns with the IaaS model as defined by NIST SP 800-145, which provides virtualized computing resources over the internet.

Exam trap

The trap here is that candidates often confuse PaaS with IaaS because both involve deploying applications, but PaaS removes OS control, while IaaS explicitly grants it, and the question's phrase 'full control over the operating system' is the critical differentiator.

How to eliminate wrong answers

Option A is wrong because Software as a Service (SaaS) provides a complete application managed by the provider, where the customer has no control over the operating system or underlying infrastructure, only the application data. Option B is wrong because Platform as a Service (PaaS) abstracts the operating system and runtime environment, giving the customer control only over deployed applications and configuration settings, not the OS itself. Option D is wrong because Function as a Service (FaaS) is a serverless computing model where the provider manages all infrastructure and the customer only deploys individual functions, with no control over the OS or runtime environment.

58
MCQmedium

A help desk lead is documenting the correct Microsoft 365 approach to increase from 100 to 2,000 users without buying new mail servers. Cloud concept or benefit best matches this requirement?

A.Data Loss Prevention (DLP)
B.Sensitivity labels
C.Microsoft Planner
D.Scalability
AnswerD

Scalability is a fundamental cloud characteristic meaning the system can proactively or reactively adjust resources—such as compute instances, throughput, storage quotas, and network capacity—to match changing demand, allowing you to pay only for what you consume. In Microsoft 365, services like Exchange Online and SharePoint Online use Microsoft's elastic global infrastructure to absorb spikes in user load or data growth without requiring customers to size or provision their own hardware. The help desk lead should document this exact capability as the correct cloud model and benefit.

Why this answer

Scalability is the correct answer because it refers to the ability of a cloud service like Microsoft 365 to dynamically allocate resources to accommodate growth from 100 to 2,000 users without requiring the purchase or provisioning of additional on-premises mail servers. Microsoft 365's multi-tenant architecture and elastic infrastructure automatically handle user load increases, making scalability the cloud concept that directly matches this requirement.

Exam trap

The trap here is that candidates may confuse operational features like DLP or Sensitivity labels with cloud benefits, failing to recognize that scalability is the specific cloud concept that directly addresses the ability to grow user counts without hardware investment.

How to eliminate wrong answers

Option A is wrong because Data Loss Prevention (DLP) is a security feature that helps prevent sensitive information from being shared or leaked, not a mechanism for scaling user capacity. Option B is wrong because Sensitivity labels are classification and protection tools for data governance, not related to increasing user counts or infrastructure scaling. Option C is wrong because Microsoft Planner is a task management and collaboration tool, not a cloud concept or benefit that addresses user capacity growth.

59
Multi-Selectmedium

Which three of the following are characteristics of cloud computing as defined by the National Institute of Standards and Technology (NIST)? (Choose three.)

Select 3 answers
.On-demand self-service
.Broad network access
.Resource pooling
.Dedicated hardware per tenant
.Fixed pricing models
.Limited scalability

Why this answer

NIST SP 800-145 defines cloud computing by five essential characteristics. On-demand self-service allows a consumer to provision computing capabilities automatically without requiring human interaction with each service provider. Broad network access means capabilities are available over the network and accessed through standard mechanisms (e.g., mobile phones, tablets, laptops, and workstations).

Resource pooling enables the provider's computing resources to serve multiple consumers using a multi-tenant model, with different physical and virtual resources dynamically assigned and reassigned according to consumer demand.

Exam trap

Microsoft often tests the exact NIST definition by including plausible-sounding but non-NIST characteristics like 'dedicated hardware per tenant' or 'fixed pricing models,' which candidates mistakenly associate with cloud computing because they are common in traditional on-premises or managed hosting environments.

60
MCQeasy

A company uses a cloud service where they can rent virtual machines and storage. They have full control over the operating system and applications, while the provider manages the physical hardware. Which cloud service model is being used?

A.Infrastructure as a Service (IaaS)
B.Platform as a Service (PaaS)
C.Software as a Service (SaaS)
D.On-premises deployment
AnswerA

IaaS delivers virtualized computing resources, such as virtual machines, storage, and virtual networks, on demand over the internet. The consumer retains full administrative control over the guest operating system, middleware, and applications, while the cloud provider manages physical servers, storage hardware, and hypervisor virtualization. This makes it ideal for hosting legacy workloads or running custom software without maintaining physical data center infrastructure.

Why this answer

This scenario describes Infrastructure as a Service (IaaS) because the company rents virtual machines and storage, retains full control over the operating system and applications, while the cloud provider manages the underlying physical hardware. In IaaS, the provider abstracts the physical infrastructure (servers, networking, storage) and delivers it as on-demand virtualized resources, which aligns with the customer's responsibility for OS and app configuration.

Exam trap

The trap here is that candidates confuse IaaS with PaaS because both involve cloud-hosted resources, but the key differentiator is control over the operating system—IaaS gives OS control, PaaS does not.

How to eliminate wrong answers

Option B (PaaS) is wrong because PaaS abstracts the operating system and runtime environment, providing a platform for application development and deployment where the customer does not manage the OS or middleware; here the customer has full OS control. Option C (SaaS) is wrong because SaaS delivers fully functional applications over the internet, with no customer control over the underlying OS or infrastructure—the customer only uses the software. Option D (On-premises deployment) is wrong because on-premises means the company owns and manages all hardware and software locally, not renting virtualized resources from a cloud provider.

61
Multi-Selecteasy

Which TWO are characteristics of the public cloud deployment model?

Select 2 answers
A.Services are owned by a third-party provider
B.Services are used by a single organization
C.Scalability is limited to existing hardware
D.Infrastructure is located on-premises
E.Multiple organizations share the same infrastructure
AnswersA, E

In the public cloud deployment model, the cloud provider owns and operates the compute, storage and networking resources, delivering services to customers over the internet. This satisfies the stem's requirement by distinguishing public cloud from private cloud, where the organisation itself owns the infrastructure.

Why this answer

Option A is correct because in the public cloud deployment model the cloud services and underlying infrastructure are owned, managed, and operated by a third-party cloud provider such as AWS, Microsoft Azure, or Google Cloud, and delivered to customers over the internet. Option E is correct because public cloud infrastructure is multi-tenant: compute, storage, and network resources are pooled and shared among many different organizations (tenants), with logical isolation enforced by the provider. Option B is incorrect because use by a single organization describes the private cloud model, not the public cloud.

Option C is incorrect because public cloud scalability is effectively elastic and limited only by the provider's vast resource pools, not by a customer's existing hardware. Option D is incorrect because on-premises infrastructure is characteristic of private or traditional data-center deployments, whereas public cloud infrastructure resides in the provider's data centers.

Exam trap

MS-900 often tests the confusion between public and private cloud characteristics, especially the misconception that 'shared infrastructure' means insecure or that public cloud requires on-premises hardware.

62
MCQmedium

A development team wants to deploy a custom web application. They choose a cloud service that provides the operating system, web server, and database management system. The team is responsible only for uploading and managing their application code. Which cloud service model does this represent?

A.Infrastructure as a Service (IaaS)
B.Platform as a Service (PaaS)
C.Software as a Service (SaaS)
D.Function as a Service (FaaS)
AnswerB

PaaS offers a fully managed hosting environment—covering the operating system, language runtime, web server, and database—so the development team deploys only their application code and artifacts, while the provider handles patching, load balancing, and health monitoring. Azure App Service is a prime example: the team controls the code, connection strings, and some configuration, but not the underlying infrastructure, so they can focus on the app. This directly matches the requirement of deploying a custom web application without managing infrastructure.

Why this answer

This scenario describes Platform as a Service (PaaS) because the cloud provider manages the underlying infrastructure—operating system, web server, and database management system—while the development team is responsible only for deploying and managing their custom application code. PaaS abstracts the platform layer, allowing developers to focus on code without worrying about OS patches, web server configuration, or database administration.

Exam trap

The trap here is that candidates confuse PaaS with IaaS because both involve deploying custom applications, but IaaS requires full control and management of the OS and middleware, whereas PaaS abstracts those layers away.

How to eliminate wrong answers

Option A is wrong because Infrastructure as a Service (IaaS) would require the team to provision and manage the virtual machines, operating system, web server, and database software themselves, not just upload application code. Option C is wrong because Software as a Service (SaaS) delivers a fully functional application to end users over the internet, where the provider manages everything including the application code; the customer does not upload or manage custom code. Option D is wrong because Function as a Service (FaaS) is a serverless compute model where developers deploy individual functions that execute in response to events, not a full web application with a persistent web server and database management system.

63
MCQmedium

A marketing manager needs to provision a new virtual machine to run a temporary campaign analysis. They log into the cloud provider's web portal, select a VM size, configure settings, and start the VM within minutes—all without any human interaction with the provider's IT staff. Which essential characteristic of cloud computing does this scenario best illustrate?

A.Resource pooling
B.Rapid elasticity
C.On-demand self-service
D.Measured service
AnswerC

On-demand self-service is the NIST cloud characteristic where a user can provision compute capabilities, such as virtual machines, without requiring human interaction with the service provider. The marketing manager uses a web portal or API to create a VM for the project, receiving the resource immediately and independently. This exactly matches the described scenario: the user initiates and completes the provisioning themselves, making on-demand self-service the correct answer.

Why this answer

The scenario describes a user provisioning a virtual machine independently through a web portal without any human interaction with the provider's IT staff. This directly maps to the NIST-defined essential characteristic of on-demand self-service, where a consumer can unilaterally provision computing capabilities as needed automatically without requiring human interaction with each service provider.

Exam trap

The trap here is that candidates confuse 'rapid elasticity' with the speed of initial provisioning, but rapid elasticity specifically refers to the ability to automatically scale resources up or down in response to workload changes, not the one-time act of creating a resource without human help.

How to eliminate wrong answers

Option A is wrong because resource pooling refers to the provider's multi-tenant model where physical and virtual resources are dynamically assigned and reassigned according to consumer demand, not the user's ability to provision resources without human intervention. Option B is wrong because rapid elasticity describes the ability to quickly scale resources up or down, often automatically, to meet demand; the scenario focuses on the initial provisioning action, not scaling behavior. Option D is wrong because measured service involves metering and reporting resource usage for billing and optimization (e.g., pay-per-use), which is not illustrated by the act of provisioning a VM without IT staff involvement.

64
MCQeasy

A company is evaluating moving its on-premises infrastructure to a cloud environment. They want a service that provides virtual machines, storage, and networking capabilities while retaining full control over the operating system and applications. Which cloud service model best meets this requirement?

A.Software as a Service (SaaS)
B.Platform as a Service (PaaS)
C.Infrastructure as a Service (IaaS)
D.Private Cloud
AnswerC

IaaS offers virtualized compute, storage, and networking resources via services like Azure Virtual Machines, with the customer retaining control over the guest OS, applications, and middleware while the provider manages the physical datacenter. This service model supports a direct lift-and-shift migration of on-premises servers, including preservation of existing OS images and system configurations, with minimal re-architecture. Because the evaluation specifically targets moving infrastructure, IaaS is the correct choice as it gives the needed visibility and control over the entire computing stack.

Why this answer

Infrastructure as a Service (IaaS) provides virtualized computing resources, including virtual machines, storage, and networking, over the internet. The customer retains full administrative control over the operating system, applications, and middleware, while the cloud provider manages the underlying physical hardware. This matches the requirement for full OS and application control.

Exam trap

The trap here is that candidates often confuse Private Cloud (a deployment model) with a service model, mistakenly thinking it inherently provides full OS control, when in fact the level of control depends on whether IaaS, PaaS, or SaaS is used within that private cloud.

How to eliminate wrong answers

Option A is wrong because Software as a Service (SaaS) delivers fully managed applications accessed via a browser or client, where the customer has no control over the underlying OS or infrastructure. Option B is wrong because Platform as a Service (PaaS) abstracts the OS and runtime environment, allowing the customer to deploy only custom applications without managing the OS or virtual machines. Option D is wrong because Private Cloud is a deployment model (not a service model) that can use any service model (IaaS, PaaS, SaaS) and does not inherently guarantee full OS control unless specifically implemented as IaaS.

65
MCQmedium

Your organization is planning to migrate on-premises workloads to Microsoft 365. Which cloud deployment model describes using both on-premises infrastructure and Microsoft 365 services?

A.Private cloud
B.Community cloud
C.Public cloud
D.Hybrid cloud
AnswerD

Hybrid cloud combines on-premises infrastructure with public cloud services such as Microsoft 365, letting workloads span both environments. This directly satisfies the stem's requirement to keep on-premises systems while consuming Microsoft 365, unlike purely public or private models.

Why this answer

Hybrid cloud is the deployment model that combines on-premises infrastructure with public cloud services like Microsoft 365. This model allows organizations to keep some resources on-premises while leveraging cloud services for others, providing flexibility and integration.

Exam trap

MS-900 often tests the definition of hybrid cloud, and candidates may confuse it with multi-cloud or private cloud, but the key is the combination of on-premises and public cloud services.

How to eliminate wrong answers

Option A is wrong because private cloud is dedicated to a single organization and does not include public cloud services like Microsoft 365. Option B is wrong because community cloud is shared by several organizations with common interests, not a mix of on-premises and public cloud. Option C is wrong because public cloud is entirely off-premises and does not include on-premises infrastructure.

66
MCQeasy

In a Software as a Service (SaaS) model, which of the following responsibilities is typically handled by the cloud provider?

A.Managing user passwords and accounts
B.Patching the underlying operating system and application
C.Configuring application settings for the organization
D.Backing up customer data
AnswerB

For Microsoft 365, Microsoft handles patching the underlying Windows Server operating systems, the hypervisor/fabric, Exchange Online mailboxes, SharePoint servers, and Teams services because the customer never has administrative access to the VM or host OS. The provider applies security and feature updates on a continuous deployment schedule to maintain service availability and protection. This is exactly the kind of infrastructure maintenance that remains with the SaaS vendor, unlike tenant configuration or user administration.

Why this answer

In a SaaS model, the cloud provider is responsible for managing the underlying infrastructure, including patching the operating system and the application itself. This is a core tenet of the shared responsibility model, where the provider handles the security and maintenance of the software stack, while the customer is responsible for data and user access. For example, in Microsoft 365, Microsoft automatically applies security updates to Exchange Online and SharePoint without customer intervention.

Exam trap

The trap here is that candidates often confuse 'backing up customer data' (Option D) as a provider responsibility, but in SaaS, the provider ensures infrastructure redundancy, while the customer must configure and verify their own backup and recovery policies, such as using Microsoft 365 Backup or third-party tools.

How to eliminate wrong answers

Option A is wrong because managing user passwords and accounts is a customer responsibility, as the customer controls identity and access management (IAM) within their tenant, such as configuring Azure AD password policies or self-service password reset. Option C is wrong because configuring application settings for the organization, like setting up email retention policies or SharePoint site permissions, is performed by the customer's administrators, not the provider. Option D is wrong because while the provider may offer backup infrastructure, the customer is typically responsible for ensuring their data is backed up according to their own compliance needs; for instance, in Microsoft 365, customers must enable and manage retention policies and backup configurations.

67
MCQmedium

A service owner is comparing Microsoft 365 capabilities and needs to host custom applications on virtual machines while managing the operating system. Cloud concept or benefit best matches this requirement?

A.Platform as a Service (PaaS)
B.Infrastructure as a Service (IaaS)
C.Hybrid cloud
D.Software as a Service (SaaS)
AnswerB

Infrastructure as a Service (IaaS) is the correct answer because it provides virtualized compute resources—such as virtual machines, storage, and networking—while the customer retains responsibility for the operating system, its patches, and the applications deployed on top. This gives a service owner the flexibility to configure the environment like a traditional on-premises data center without purchasing physical hardware. In the Microsoft ecosystem, Azure virtual machines exemplify IaaS, and this model is distinct from PaaS and SaaS because the provider only manages the physical or virtual infrastructure layer, not the OS or application stack.

Why this answer

Infrastructure as a Service (IaaS) provides virtualized computing resources over the internet, including virtual machines where the user manages the operating system and can host custom applications. This matches the requirement because the service owner needs full control over the OS and the ability to deploy custom applications without managing physical hardware.

Exam trap

The trap here is that candidates often confuse PaaS with IaaS because both involve hosting applications, but PaaS removes OS management responsibility, which is explicitly required in the question.

How to eliminate wrong answers

Option A is wrong because Platform as a Service (PaaS) abstracts the underlying infrastructure, including the operating system, so the user does not manage the OS or virtual machines; instead, they deploy applications to a managed runtime environment. Option C is wrong because Hybrid cloud is a deployment model that combines public and private clouds, not a service model that provides virtual machines with OS management. Option D is wrong because Software as a Service (SaaS) delivers fully managed applications accessed via a browser or client, with no user control over the underlying OS or virtual machines.

68
MCQeasy

An administrator is reviewing a request from users who need to let users provision resources from a portal without provider interaction. Cloud concept or benefit best matches this requirement?

A.On-demand self-service
B.Data Loss Prevention (DLP)
C.Microsoft Planner
D.Sensitivity labels
AnswerA

On-demand self-service is a core NIST cloud characteristic where users can provision computing resources, such as virtual machines, storage, or Microsoft 365 workloads, automatically and without human interaction with the provider. In a Microsoft 365 context, this is why administrators can delegate resource creation to users through Azure Lighthouse, self-service groups, or dynamic membership rules. This capability directly supports the scenario of letting users provision what they need, making it the only correct answer.

Why this answer

The requirement describes users provisioning resources from a portal without provider interaction, which is the core definition of on-demand self-service as defined by NIST SP 800-145. In Microsoft 365, this maps to capabilities like users creating Teams, SharePoint sites, or Azure resources via self-service portals without IT intervention.

Exam trap

The trap here is that candidates confuse 'self-service' with any user-facing feature (like Planner or DLP policies), but the question specifically tests the NIST cloud characteristic of on-demand self-service, not a specific Microsoft tool.

How to eliminate wrong answers

Option B is wrong because Data Loss Prevention (DLP) is a security policy feature that prevents sensitive data from being shared or leaked, not a provisioning mechanism. Option C is wrong because Microsoft Planner is a task management tool for organizing work, not a cloud concept for resource provisioning. Option D is wrong because sensitivity labels are classification and protection controls applied to data (e.g., encryption, marking), not a method for users to provision resources.

69
MCQeasy

A company wants to use a cloud service where they only manage their data and user access, while the cloud provider handles everything from the physical infrastructure to the applications. Which cloud service model is this?

A.Infrastructure as a Service (IaaS)
B.Platform as a Service (PaaS)
C.Software as a Service (SaaS)
D.On-premises deployment
AnswerC

SaaS delivers a complete, provider-managed application stack: the customer configures only data and user access, while the provider owns servers, storage, networking, runtime, and the application itself. That matches the stem's division of responsibility exactly.

Why this answer

This scenario describes Software as a Service (SaaS), where the cloud provider manages the entire stack—physical infrastructure, operating system, middleware, runtime, data, and applications—while the customer only manages their data and user access. In SaaS, the provider delivers fully functional applications over the internet, such as Microsoft 365, where users simply log in and use the software without any infrastructure or platform management responsibilities.

Exam trap

The trap here is that candidates often confuse PaaS with SaaS because both abstract infrastructure, but PaaS still requires the customer to manage their own applications and data, whereas SaaS offloads even application management to the provider.

How to eliminate wrong answers

Option A is wrong because Infrastructure as a Service (IaaS) provides only virtualized computing resources (e.g., VMs, storage, networks), and the customer must manage the operating systems, middleware, runtime, data, and applications themselves. Option B is wrong because Platform as a Service (PaaS) abstracts the underlying infrastructure and middleware, but the customer still manages their own applications and data, not just user access and data. Option D is wrong because an on-premises deployment means the company manages everything—from physical hardware to applications—which is the opposite of the described model where the provider handles all layers.

70
MCQeasy

A company wants to use a cloud service where they can deploy their own custom applications without managing the underlying operating system or hardware. The cloud provider handles the runtime, middleware, and infrastructure. Which cloud service model best fits this requirement?

A.Infrastructure as a Service (IaaS)
B.Platform as a Service (PaaS)
C.Software as a Service (SaaS)
D.Desktop as a Service (DaaS)
AnswerB

Platform as a Service (PaaS) provides a fully managed application-hosting environment, including the runtime, programming model, data services, and scaling facilities. You deploy your own custom application code, while the provider handles the underlying OS, patching, and capacity; this directly matches the need to deploy custom apps without infrastructure management. This is why PaaS is the correct choice.

Why this answer

Platform as a Service (PaaS) is the correct model because it provides a managed environment where the company can deploy custom applications without managing the underlying OS, hardware, runtime, or middleware. The cloud provider handles all infrastructure and platform layers, allowing developers to focus solely on code and application logic.

Exam trap

The trap here is that candidates often confuse PaaS with IaaS because both allow custom application deployment, but IaaS requires managing the OS and middleware, whereas PaaS abstracts those layers entirely.

How to eliminate wrong answers

Option A is wrong because Infrastructure as a Service (IaaS) provides virtualized hardware resources (e.g., VMs, storage, networking) but requires the customer to manage the operating system, runtime, middleware, and applications, which contradicts the requirement of not managing the OS or hardware. Option C is wrong because Software as a Service (SaaS) delivers ready-to-use applications accessed via a browser or API, not a platform for deploying custom applications; the customer cannot control or deploy their own code. Option D is wrong because Desktop as a Service (DaaS) provides virtual desktop environments, not a platform for deploying custom applications; it focuses on delivering desktop experiences rather than application hosting and development.

71
MCQeasy

A company uses a cloud provider and is billed monthly based only on the exact amount of storage used and the number of compute hours consumed. They can increase or decrease usage at any time without upfront commitments. Which cloud computing characteristic does this billing model primarily demonstrate?

A.On-demand self-service
B.Rapid elasticity
C.Measured service
D.Resource pooling
AnswerC

Measured service is the cloud characteristic where resource usage is automatically metered, monitored, controlled, and reported, enabling a transparent pay-per-use billing model. The scenario's statement that the company is billed monthly based on actual usage is a textbook example of this attribute. It allows the provider to charge only for consumed resources and gives the customer visibility into usage and costs.

Why this answer

The billing model charges only for actual storage used and compute hours consumed, with no upfront commitments and the ability to adjust usage at any time. This directly aligns with the 'measured service' characteristic, where cloud resource usage is metered, monitored, and billed based on consumption. The key is that the provider tracks and reports usage transparently, enabling a pay-per-use model.

Exam trap

The trap here is that candidates confuse 'measured service' with 'rapid elasticity' because both involve scaling, but measured service is specifically about metering and billing, not the speed of scaling.

How to eliminate wrong answers

Option A is wrong because on-demand self-service refers to a user's ability to provision resources automatically without human interaction, not the billing mechanism. Option B is wrong because rapid elasticity describes the ability to quickly scale resources up or down, which is a separate characteristic from how usage is metered and billed. Option D is wrong because resource pooling refers to the provider's multi-tenant model where physical and virtual resources are shared among customers, not the consumption-based billing approach.

72
MCQhard

A company is evaluating cloud service models for running custom line-of-business applications. They need full control over the operating system and applications, but want to avoid managing physical hardware. Which cloud service model should they choose?

A.Software as a Service (SaaS)
B.Infrastructure as a Service (IaaS)
C.Platform as a Service (PaaS)
D.Function as a Service (FaaS)
AnswerB

IaaS supplies virtualised compute, storage and networking while the customer retains control of the guest operating system and installed applications. This satisfies the requirement for full OS and application control without procuring or maintaining physical servers, unlike PaaS or SaaS.

Why this answer

IaaS provides virtualized compute, storage, and networking where the customer retains full control over the operating system, middleware, and applications while the provider manages the physical hardware, hypervisor, and datacenter. Because the requirement is 'full control over OS and applications' without managing physical hardware, IaaS is the exact fit — the customer patches the OS and deploys their own line-of-business software on provider-managed VMs.

Exam trap

MS-900 often tests the shared responsibility boundary by pairing 'full control over OS' with 'no hardware management' — candidates who reflexively pick PaaS because it sounds 'cloud-native' miss that only IaaS grants OS-level control.

How to eliminate wrong answers

Option A is wrong because SaaS delivers a fully managed, vendor-controlled application where the customer has no access to the OS or application internals, so it cannot host custom line-of-business code with OS-level control. Option C is wrong because PaaS abstracts the OS entirely — the customer deploys code to a managed runtime and cannot control or patch the underlying operating system. Option D is wrong because FaaS (serverless functions) is event-driven and even more abstracted than PaaS, offering no OS control and imposing execution-time and statelessness constraints unsuitable for full custom LOB applications.

73
MCQmedium

A compliance-aware administrator is selecting the right Microsoft 365 capability to explain why providers can lower unit costs by operating at large scale. Cloud concept or benefit best matches this requirement?

A.Sensitivity labels
B.Microsoft Planner
C.Economies of scale
D.Data Loss Prevention (DLP)
AnswerC

Economies of scale refer to the cost advantages that Microsoft Azure achieves by operating hyper-scale data centers serving millions of customers. Fixed costs like hardware, cooling, and power are spread across a massive user base, reducing the per-unit cost for each tenant. This allows Microsoft to offer pay-as-you-go pricing that is often cheaper than running a private data center. It is a core cloud benefit and directly answers the stated requirement.

Why this answer

Economies of scale is the correct answer because it directly describes the cost advantage that cloud providers achieve by operating at massive scale. By aggregating compute, storage, and network resources across millions of customers, providers like Microsoft can spread fixed costs (data centers, hardware, cooling, staffing) over a larger base, reducing the per-unit cost for each tenant. This is a foundational cloud concept, not a specific security or productivity feature.

Exam trap

Microsoft often tests the distinction between cloud economic concepts (like economies of scale) and specific security or productivity features, leading candidates to pick a familiar term like 'Data Loss Prevention' instead of the correct foundational principle.

How to eliminate wrong answers

Option A is wrong because sensitivity labels are a Microsoft Information Protection (MIP) feature used to classify and protect data based on sensitivity, not a cost or scale concept. Option B is wrong because Microsoft Planner is a task management and collaboration tool within Microsoft 365, unrelated to the economic principle of cost reduction through scale. Option D is wrong because Data Loss Prevention (DLP) is a security policy mechanism that prevents accidental sharing of sensitive data, not a cloud economics concept.

74
MCQmedium

A retail company experiences sudden traffic spikes during holiday sales. Which cloud characteristic would best help them handle this without overprovisioning?

A.Broad network access
B.Measured service
C.Rapid elasticity
D.Resource pooling
AnswerC

Rapid elasticity lets the retailer scale compute and storage outward automatically during holiday demand and release capacity afterwards, paying only for consumption. This satisfies the constraint of handling sudden traffic spikes without overprovisioning fixed on-premises hardware.

Why this answer

(Rapid elasticity) is correct because it enables cloud resources to automatically scale up or down to handle sudden traffic spikes without the need for overprovisioning. Option A (Broad network access) refers to accessibility over the network, not scaling. Option B (Measured service) is about metering and billing for usage.

Option D (Resource pooling) involves multi-tenant sharing of resources.

75
MCQmedium

An administrator is reviewing a request from users who need to reduce maintenance of power, cooling, and server replacement. Cloud concept or benefit best matches this requirement?

A.Reduced data center management
B.Microsoft Planner
C.Data Loss Prevention (DLP)
D.Sensitivity labels
AnswerA

Reduced data centre management describes offloading physical responsibilities — power, cooling, and server replacement — to the cloud provider, who maintains the underlying hardware. The organisation consumes services instead of operating facilities, directly matching the stated requirement.

Why this answer

The users' requirement to reduce maintenance of power, cooling, and server replacement directly maps to the cloud benefit of reduced data center management. By moving to a cloud model, the cloud provider assumes responsibility for the physical infrastructure, including hardware lifecycle, environmental controls, and facility upkeep, allowing the organization to offload these operational burdens.

Exam trap

The trap here is that candidates may confuse operational benefits like reduced maintenance with specific Microsoft 365 features (Planner, DLP, sensitivity labels), failing to recognize that the question is about fundamental cloud concepts and benefits, not individual product capabilities.

How to eliminate wrong answers

Option B is wrong because Microsoft Planner is a task management and planning application within Microsoft 365, not a cloud concept or benefit related to infrastructure maintenance. Option C is wrong because Data Loss Prevention (DLP) is a security policy technology that helps protect sensitive data from unauthorized sharing or leakage, not a benefit addressing physical data center maintenance. Option D is wrong because sensitivity labels are classification and protection tools applied to data and documents for governance and compliance, not a cloud concept that reduces power, cooling, or server replacement tasks.

Page 1 of 2 · 143 questions totalNext →

Ready to test yourself?

Try a timed practice session using only Describe cloud concepts questions.