Exam objective

AZ-900

Describe features and tools in Azure for governance and compliance

This objective sits in Describe Azure management and governance, which carries 35% of the Azure Fundamentals exam. The questions below are original, written from the official objective title above, and each explanation cites the Microsoft Azure page it rests on.

Objective title verbatim from the official objectives. Microsoft Azure exam page ↗

A worked example

Shown solved, with the whole explanation open: this is what every question here carries.

Describe Azure management and governance

A cloud governance lead wants a single Azure service that evaluates resource properties against organizational rules and shows an aggregated compliance dashboard. Which service meets this need?

Azure Monitor, which collects telemetry and generates resource alertsAzure Monitor focuses on telemetry and alerting, not rule-based compliance assessment.
Azure Policy, which evaluates resources and shows compliance stateCorrect · your answerCorrect: Azure Policy is built specifically for standards enforcement and compliance assessment.
Azure Cost Management, which tracks and forecasts subscription spendingCost Management tracks spend, not policy compliance against organizational rules.
Microsoft Entra ID, which manages user identities and group membershipsMicrosoft Entra ID handles identity and access, not resource property compliance evaluation.
Resource locks, which block deletion and modification of resourcesResource locks only prevent accidental deletion or modification; they don't evaluate compliance.

Correct.

Checked against learn.microsoft.com, July 2026

Concept

Rules about how resources may be configured have to be both enforced at creation and reported on for what already exists. One service does both, which is why it answers questions about standards and questions about drift.

Why B

The source states Azure Policy helps enforce organizational standards and assess compliance at-scale, with a dashboard that gives an aggregated compliance view.

Source

This overview describes how Azure Policy helps to enforce organizational standards and to assess compliance at-scale. Through its compliance dashboard, it provides an aggregated view to evaluate the overall state of the environment... Azure Policy evaluates resources and actions in Azure by comparing the properties of those resources to business rules.

Azure Policy overview, checked July 2026
#azure-policy#compliance#governance

Now you: practice questions

No account needed. The explanation opens when you answer.

Sample question 1 of 3

Describe Azure management and governance

A hybrid IT team manages servers both in Azure and in an on-premises datacenter. They want a single governance mechanism to enforce consistent tagging and regional standards across both environments. Which Azure capability enables this cross-environment governance?

Sample question 2 of 3

Describe Azure management and governance

A governance team has created several individual JSON business rules and wants to group them together to apply as one unit across subscriptions. What is this grouped collection called in Azure Policy?

Sample question 3 of 3

Describe Azure management and governance

An administrator wants authorized users to still be able to read and modify a resource group's resources, but no one should be able to delete any resource within it. Which resource lock type achieves this?

That’s 3 of the full Azure Fundamentals bank.

Keep going free: 10 questions per certification in bank practice, with no account.

Continue practicing

Read the sources

These are the official pages the questions above cite. Reading them is studying the objective from the primary source, which is what the explanations point you toward anyway.

More objectives in Describe Azure management and governance