nerdexam
Microsoft

AZ-500 · Question #341

Your company's Azure subscription includes a hundred virtual machines that have Azure Diagnostics enabled. You have been tasked with retrieving the identity of the user that removed a virtual…

The correct answer is C. Activity Log. Azure activity logs provide insight into the operations that were performed on resources in your Activity logs were previously known as "audit logs" or "operational logs," because they report control-plane events for your subscriptions…

Submitted by akirajp· Mar 6, 2026Secure Azure using Microsoft Defender for Cloud and Microsoft Sentinel

Question

Your company's Azure subscription includes a hundred virtual machines that have Azure Diagnostics enabled. You have been tasked with retrieving the identity of the user that removed a virtual machine fifteen days ago. You have already accessed Azure Monitor. Which of the following options should you use?

Options

  • AApplication Log
  • BMetrics
  • CActivity Log
  • DLogs

How the community answered

(28 responses)
  • A
    7% (2)
  • B
    4% (1)
  • C
    89% (25)

Explanation

Azure activity logs provide insight into the operations that were performed on resources in your Activity logs were previously known as "audit logs" or "operational logs," because they report control-plane events for your subscriptions. https://docs.microsoft.com/en-us/azure/security/azure-log-audit

Community Discussion

No community discussion yet for this question.

Full AZ-500 Practice