Microsoft Certified: Security, Compliance, and Identity Fundamentals
Validates foundational knowledge of security, compliance, and identity concepts across cloud-based and related Microsoft services. This beginner-level certification covers security and compliance concepts including the shared responsibility model, Zero Trust, defense-in-depth, and GRC, the capabilities of Microsoft Entra including identity types, authentication methods, MFA, Conditional Access, RBAC, and identity governance with Privileged Identity Management, Microsoft security solutions including Azure DDoS Protection, Azure Firewall, NSGs, Azure Bastion, Key Vault, Microsoft Defender for Cloud, Microsoft Sentinel, and Microsoft Defender XDR, and Microsoft compliance solutions including Microsoft Purview portal, Compliance Manager, data classification, sensitivity labels, DLP, records management, insider risk management, eDiscovery, and audit. No prerequisites required.
Sample questions
A free preview of 15 source-grounded questions from this exam — answers and explanations included.
- Q1Describe the capabilities of Microsoft security solutionseasy
A cloud administrator is evaluating Azure Key Vault to store cryptographic keys and needs to confirm which key-protection options the service supports. Per Microsoft's Azure Key Vault documentation, which option matches?
- A.It supports a single fixed key type and only software-protected keys, with no HSM-protected option available at all
- B.It supports only HSM-protected keys, while software-protected keys are explicitly not available in the service at all
- C.It supports only software-protected keys, while HSM-protected keys are explicitly not available in the service at all
- D.It supports multiple key types and algorithms and enables the use of both software-protected and HSM-protected keysCorrect answer
Sources
Questions are grounded in 150 references from official and authoritative materials.