Subscription1 contains a custom audit policy (Policy1) that verifies resource naming conventions. Pipeline1 deploys ARM resources to Subscription1. To ensure resources deployed by Pipeline1 comply with Policy1, what should you add to the pipeline?
Choose an answer
Tap an option to check your answer.
Correct answer: A pre-deployment task that runs a security and compliance assessment.
Why this is the answer
Adding a pre-deployment task that runs a security and compliance assessment is the correct approach. This allows you to validate resource naming conventions against Policy1 before the resources are actually deployed to Subscription1. By catching non-compliant deployments early, you prevent the creation of resources that violate your organization's policies, saving time and effort on remediation. A post-deployment task would identify violations too late, requiring remediation of already deployed resources. Assigning Policy1 to Subscription1 is a prerequisite for the policy to be active, but doesn't enforce compliance within the pipeline itself. Deploying Policy1 to Subscription1 (if it's not already there) is also a setup step, not an enforcement mechanism within the pipeline.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed