Pipeline1 deploys Azure resources defined by Bicep modules. To ensure all releases comply with Azure Policy before production deployment, what should you configure?
Choose an answer
Tap an option to check your answer.
Correct answer: Configure a deployment gate for Pipeline1 and include the Azure DevOps Security and compliance assessment task..
Why this is the answer
The correct option is to configure a deployment gate for Pipeline1 and include the Azure DevOps Security and compliance assessment task. This task is specifically designed to evaluate Azure Policy compliance for ARM templates and Bicep files within an Azure DevOps pipeline, making it ideal for pre-production checks. A deployment gate ensures this check occurs automatically before the production stage is entered, preventing non-compliant deployments. Adding a step to Pipeline1 for a What If deployment is a good practice for validating resource changes but doesn't directly assess Azure Policy compliance. Configuring a deployment gate with Azure Automation for a What If deployment is overly complex and less direct than using the built-in compliance assessment task. Creating an Azure DevOps build on pull request creation assesses code quality but doesn't directly evaluate the deployed resources against Azure Policy at the deployment stage.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed