Single Choice Moderate

Q

A company uses the Azure AI Agent Service with separate environments named Dev, Test, and Prod.

The company's security team requires network isolation and least-privilege access per environment. The SOC must be able to reconstruct agent activity, including prompts, model steps, and tool calls, during incident investigations.

You need to recommend a solution that prevents ad-hoc changes in Prod and provides end-to-end traceability.

What is the best approach to achieve the goal? More than one answer choice may achieve the goal. Select the BEST answer.

ID: #26666 Practice Assessment for Exam AB-100: Agentic AI Business Solutions Architect 7 views
Question Info
#26666Q ID
ModerateDifficulty
Practice Assessment for Exam AB-100: Agentic AI Business Solutions ArchitectTopic

Choose the Best Option

Click any option to instantly check if you're correct.

  • A Use Azure API Management to handle access and privilege requirements. ✔ ✖
  • B Rely on periodic audits and usage analytics to detect changes to Prod. ✔ ✖
  • C Deploy the agent with broad access and mitigate risk by caching responses. ✔ ✖
  • D Use Azure RBAC to control access to Prod, isolate networks per environment, and enable OpenTelemetry tracing. ✔ ✖
Correct Answer

Explanation

Objective:

3.3 Design the ALM process for AI-powered business solutions

What This Item Tests:

Design the ALM process for Azure AI services agents

Additional Reading:

Understand the Azure AI Agent Service

System performance

Operate AI agents

Rationale:

Using Azure RBAC, environment-specific network isolation, and OpenTelemetry-based tracing enforces preventive ALM controls and provides full traceability of the agent behavior across environments. Allowing direct production changes, relying on audits, and broad access with caching does not prevent unauthorized changes or support end-to-end investigation.

Share This Question

Challenge a friend or share with your study group.

Related MCQ Questions