nerdexam
Microsoft

DP-203 · Question #205

You are designing an Azure Synapse Analytics workspace. You need to recommend a solution to provide double encryption of all the data at rest. Which two components should you include in the recommenda

The correct answer is B. an RSA key C. an Azure key vault that has purge protection enabled. Synapse workspaces encryption uses existing keys or new keys generated in Azure Key Vault. A single key is used to encrypt all the data in a workspace. Synapse workspaces support RSA 2048 and 3072 byte-sized keys, and RSA-HSM keys. The Key Vault itself needs to have purge protect

Submitted by jaden.t· Mar 30, 2026Secure, monitor, and optimize data storage and data processing

Question

You are designing an Azure Synapse Analytics workspace. You need to recommend a solution to provide double encryption of all the data at rest. Which two components should you include in the recommendation? Each coned answer presents part of the solution. NOTE: Each correct selection is worth one point.

Options

  • Aan X509 certificate
  • Ban RSA key
  • Can Azure key vault that has purge protection enabled
  • Dan Azure virtual network that has a network security group (NSG)
  • Ean Azure Policy initiative

How the community answered

(55 responses)
  • A
    2% (1)
  • B
    84% (46)
  • D
    5% (3)
  • E
    9% (5)

Explanation

Synapse workspaces encryption uses existing keys or new keys generated in Azure Key Vault. A single key is used to encrypt all the data in a workspace. Synapse workspaces support RSA 2048 and 3072 byte-sized keys, and RSA-HSM keys. The Key Vault itself needs to have purge protection enabled. https://docs.microsoft.com/en-us/azure/synapse-analytics/security/workspaces-encryption

Topics

#double encryption#RSA key#Azure Key Vault#Synapse Analytics encryption

Community Discussion

No community discussion yet for this question.

Full DP-203 Practice