You have four Azure SQL managed instances and need to assess their vulnerability to SQL injection attacks. What should you enable first to perform this evaluation?
Choose an answer
Tap an option to check your answer.
Correct answer: Enable Advanced Data Security..
Why this is the answer
Enabling Advanced Data Security (ADS) for Azure SQL Managed Instances is the correct first step because it includes Vulnerability Assessment, which specifically scans for and reports on potential SQL injection vulnerabilities, among other security misconfigurations. This built-in feature provides actionable recommendations to improve the security posture of your databases. Creating an Azure Sentinel workspace is for security information and event management (SIEM) and security orchestration, automation, and response (SOAR), which is useful for analyzing security logs but doesn't directly perform vulnerability scanning. Adding the SQL Health Check solution to Azure Monitor provides performance and configuration insights, not vulnerability assessments. Creating an Azure Advanced Threat Protection (ATP) instance (now Microsoft Defender for Identity) is for protecting hybrid identity environments, not directly for scanning SQL databases for injection vulnerabilities.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed