Q
A company uses the Azure AI Agent Service with separate environments named Dev, Test, and Prod.
The company's security team requires network isolation and least-privilege access per environment. The SOC must be able to reconstruct agent activity, including prompts, model steps, and tool calls, during incident investigations.
You need to recommend a solution that prevents ad-hoc changes in Prod and provides end-to-end traceability.
What is the best approach to achieve the goal? More than one answer choice may achieve the goal. Select the BEST answer.
Question Info
Choose the Best Option
Click any option to instantly check if you're correct.
Explanation
Objective:
3.3 Design the ALM process for AI-powered business solutions
What This Item Tests:
Design the ALM process for Azure AI services agents
Additional Reading:
Understand the Azure AI Agent Service
Rationale:
Using Azure RBAC, environment-specific network isolation, and OpenTelemetry-based tracing enforces preventive ALM controls and provides full traceability of the agent behavior across environments. Allowing direct production changes, relying on audits, and broad access with caching does not prevent unauthorized changes or support end-to-end investigation.
Share This Question
Challenge a friend or share with your study group.