Exam objective
AZ-900Describe features and tools in Azure for governance and compliance
This objective sits in Describe Azure management and governance, which carries 35% of the Azure Fundamentals exam. The questions below are original, written from the official objective title above, and each explanation cites the Microsoft Azure page it rests on.
Objective title verbatim from the official objectives. Microsoft Azure exam page ↗
A worked example
Shown solved, with the whole explanation open: this is what every question here carries.
A cloud governance lead wants a single Azure service that evaluates resource properties against organizational rules and shows an aggregated compliance dashboard. Which service meets this need?
Correct.
Checked against learn.microsoft.com, July 2026Concept
Rules about how resources may be configured have to be both enforced at creation and reported on for what already exists. One service does both, which is why it answers questions about standards and questions about drift.
Why B
The source states Azure Policy helps enforce organizational standards and assess compliance at-scale, with a dashboard that gives an aggregated compliance view.
Source
Azure Policy overview, checked July 2026This overview describes how Azure Policy helps to enforce organizational standards and to assess compliance at-scale. Through its compliance dashboard, it provides an aggregated view to evaluate the overall state of the environment... Azure Policy evaluates resources and actions in Azure by comparing the properties of those resources to business rules.
Now you: practice questions
No account needed. The explanation opens when you answer.
Sample question 1 of 3
A hybrid IT team manages servers both in Azure and in an on-premises datacenter. They want a single governance mechanism to enforce consistent tagging and regional standards across both environments. Which Azure capability enables this cross-environment governance?
Sample question 2 of 3
A governance team has created several individual JSON business rules and wants to group them together to apply as one unit across subscriptions. What is this grouped collection called in Azure Policy?
Sample question 3 of 3
An administrator wants authorized users to still be able to read and modify a resource group's resources, but no one should be able to delete any resource within it. Which resource lock type achieves this?
That’s 3 of the full Azure Fundamentals bank.
Keep going free: 10 questions per certification in bank practice, with no account.
Continue practicingRead the sources
These are the official pages the questions above cite. Reading them is studying the objective from the primary source, which is what the explanations point you toward anyway.