Which Azure service securely stores secrets (API keys, connection strings) and restricts access to authorized applications?
Choose an answer
Tap an option to check your answer.
Correct answer: Azure Key Vault.
Why this is the answer
Azure Key Vault is the correct service because it is specifically designed to securely store and manage sensitive information like API keys, connection strings, certificates, and other secrets. It provides centralized storage, fine-grained access control (using Azure Active Directory), and audit logging, ensuring that only authorized applications and users can access these secrets. Azure Defender focuses on threat protection and security posture management, not secret storage. Azure App Service is a platform for hosting web applications and APIs, not for secret management. Azure Policy helps enforce organizational standards and assess compliance, rather than storing secrets.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed