AZ-305 · Question 01 · Domain 1.1: Logging and Monitoring
Fabrikam Inc. is a global financial services company with 200 Azure subscriptions managed via a complex Management Group hierarchy. They currently operate in 5 Azure regions.
The security team requires that all security logs, performance metrics, and application telemetry from all resources across all subscriptions be collected for threat hunting and compliance reporting. The compliance team mandates that data must be retained for 2 years, and access to logs must be strictly segregated so that regional IT teams can only query logs for resources in their respective regions.
Which Log Analytics workspace architecture should you recommend to minimize operational overhead while meeting all security and compliance requirements?
Answer options:
A single centralized Log Analytics workspace with workspace-context RBAC.
A single centralized Log Analytics workspace with resource-context RBAC.
One Log Analytics workspace per Azure region with workspace-context RBAC.
One Log Analytics workspace per subscription with resource-context RBAC.
55 questions · hints · full answers · grading