For IndividualsFor Educators
ExpertMinds LogoExpertMinds
ExpertMinds

Ace your certifications with Practice Exams and AI assistance.

  • Browse Exams
  • For Educators
  • Blog
  • Privacy Policy
  • Terms of Service
  • Cookie Policy
  • Support
  • AWS SAA Exam Prep
  • PMI PMP Exam Prep
  • CPA Exam Prep
  • GCP PCA Exam Prep

© 2026 TinyHive Labs. Company number 16262776.

    PracticeAzure Solutions Architect Expert (AZ-305)Azure Solutions Architect Expert AZ-305 Practice Exam 4Question 15
    Medium1 markMultiple Choice
    Domain 1.3: Design GovernanceGovernanceAzure PolicyCompliance

    AZ-305 · Question 15 · Domain 1.3: Design Governance

    Your company is expanding its Azure footprint to Europe. Due to strict GDPR requirements, you must ensure that no Azure resources can be deployed outside of the 'West Europe' and 'North Europe' regions for a specific set of subscriptions.

    You need to design a governance solution to enforce this requirement. The solution must automatically prevent non-compliant deployments and provide a dashboard showing compliance status.

    Which TWO components should you include in your design? (Select TWO)

    Answer options:

    A.

    Azure Policy with an 'Audit' effect.

    B.

    Azure Policy with a 'Deny' effect.

    C.

    Azure Role-Based Access Control (RBAC) custom roles.

    D.

    An Azure Policy assignment scoped to the European Management Group.

    E.

    Azure Resource Locks.

    How to approach this question

    Identify the tool for enforcing rules (Azure Policy), the effect needed to block actions (Deny), and the best scope for multiple subscriptions (Management Group).

    Full Answer

    Azure Policy is the governance tool used to enforce rules on resource deployments. To prevent deployments outside specific regions, a policy with the 'Deny' effect must be used. To apply this efficiently across multiple subscriptions, the policy should be assigned at the Management Group scope. Azure Policy automatically provides a compliance dashboard.

    Common mistakes

    Choosing RBAC. RBAC is for authorization (can user X create a VM?), while Policy is for governance (can a VM be created in region Y?).
    Question 14All questionsQuestion 16

    Practice the full Azure Solutions Architect Expert AZ-305 Practice Exam 4

    55 questions · hints · full answers · grading

    Sign up freeTake the exam

    More questions from this exam

    Q01CASE STUDY: Tailspin Toys Tailspin Toys is a global manufacturing company with 50,000 employees ...MediumQ02CASE STUDY: Tailspin Toys Tailspin Toys is a global manufacturing company with 50,000 employees ...MediumQ03CASE STUDY: Tailspin Toys Tailspin Toys is a global manufacturing company with 50,000 employees ...HardQ04CASE STUDY: Tailspin Toys Tailspin Toys is a global manufacturing company with 50,000 employees ...MediumQ05CASE STUDY: Tailspin Toys Tailspin Toys is a global manufacturing company with 50,000 employees ...Hard
    View all 55 questions →