SC-100 Exam Question 16

You receive a security alert in Microsoft Defender for Cloud as shown in the exhibit. (Click the Exhibit tab.)

After remediating the threat which policy definition should you assign to prevent the threat from reoccurring?
  • SC-100 Exam Question 17

    You have a Microsoft 365 E5 subscription and an Azure subscripts You need to evaluate the existing environment to increase the overall security posture for the following components:
    * Windows 11 devices managed by Microsoft Intune
    * Azure Storage accounts
    * Azure virtual machines
    What should you use to evaluate the components? To answer, select the appropriate options in the answer area.

    SC-100 Exam Question 18

    Your company is moving all on-premises workloads to Azure and Microsoft 365. You need to design a security orchestration, automation, and response (SOAR) strategy in Microsoft Sentinel that meets the following requirements:
    * Minimizes manual intervention by security operation analysts
    * Supports Waging alerts within Microsoft Teams channels
    What should you include in the strategy?
  • SC-100 Exam Question 19

    Your company has a hybrid cloud infrastructure that contains an on-premises Active Directory Domain Services (AD DS) forest, a Microsoft B65 subscription, and an Azure subscription.
    The company's on-premises network contains internal web apps that use Kerberos authentication. Currently, the web apps are accessible only from the network.
    You have remote users who have personal devices that run Windows 11.
    You need to recommend a solution to provide the remote users with the ability to access the web apps. The solution must meet the following requirements:
    * Prevent the remote users from accessing any other resources on the network.
    * Support Azure Active Directory (Azure AD) Conditional Access.
    * Simplify the end-user experience.
    What should you include in the recommendation?
  • SC-100 Exam Question 20

    You are designing an auditing solution for Azure landing zones that will contain the following components:
    * SQL audit logs for Azure SQL databases
    * Windows Security logs from Azure virtual machines
    * Azure App Service audit logs from App Service web apps
    You need to recommend a centralized logging solution for the landing zones. The solution must meet the following requirements:
    * Log all privileged access.
    * Retain logs for at least 365 days.
    * Minimize costs.
    What should you include in the recommendation? To answer, select the appropriate options in the answer are a. NOTE: Each correct selection is worth one point.