nerdexam
Microsoft

AZ-500 · Question #227

You have an Azure resource group that contains 100 virtual machines. You have an initiative named Initiative1 that contains multiple policy definitions. Initiative1 is assigned to the resource…

The correct answer is B. From the Policy blade of the Azure Active Directory admin center, select Compliance. Option B is correct because the Policy blade in the Azure portal (accessible via Azure Active Directory admin center) includes a Compliance section that shows the compliance state of all resources against assigned initiatives and policy definitions, allowing you to identify…

Submitted by sofia.br· Mar 6, 2026Secure compute, storage, and databases

Question

You have an Azure resource group that contains 100 virtual machines. You have an initiative named Initiative1 that contains multiple policy definitions. Initiative1 is assigned to the resource group. You need to identify which resources do NOT match the policy definitions. What should you do?

Options

  • AFrom Azure Security Center, view the Regulatory compliance assessment.
  • BFrom the Policy blade of the Azure Active Directory admin center, select Compliance.
  • CFrom Azure Security Center, view the Secure Score.
  • DFrom the Policy blade of the Azure Active Directory admin center, select Assignments.

How the community answered

(38 responses)
  • A
    3% (1)
  • B
    87% (33)
  • C
    8% (3)
  • D
    3% (1)

Explanation

Option B is correct because the Policy blade in the Azure portal (accessible via Azure Active Directory admin center) includes a Compliance section that shows the compliance state of all resources against assigned initiatives and policy definitions, allowing you to identify which specific resources are non-compliant.

Why the others are wrong:

  • Option A (Security Center – Regulatory Compliance): This view focuses on compliance against industry standards (e.g., ISO, NIST), not specifically against custom Azure Policy initiatives assigned to a resource group.
  • Option C (Security Center – Secure Score): Secure Score measures your overall security posture using security recommendations, not Azure Policy compliance states.
  • Option D (Policy blade – Assignments): The Assignments section shows where policies/initiatives are assigned, not the compliance status of individual resources.

Memory Tip: Think of it this way - if you want to see who is following the rules, go to Compliance; if you want to see what rules exist and where they apply, go to Assignments. For Azure Policy compliance checks, always navigate to the Policy blade → Compliance - it's your policy "report card."

Topics

#Azure Policy#Compliance#Governance#Virtual Machines

Community Discussion

No community discussion yet for this question.

Full AZ-500 Practice