nerdexam
Microsoft

AZ-900 · Question #355

Your Company wants to implement a security solution for the users who are on on-premises Active directory, and has following requirement: - Monitor User login/logout - Monitor Active Directory User ac

The correct answer is A. Microsoft Defender for Identity (formerly Azure Advanced Threat Protection, also known as Azure ATP). Option A is CORRECT because all the 3 requirements can be implemented using Monitored Option B is incorrect because only Password Protections options are available Option C is incorrect because it is used for Identity Protections only Option D is incorrect because it is used only

Submitted by helene.fr· Mar 5, 2026Describe Azure architecture and services

Question

Your Company wants to implement a security solution for the users who are on on-premises Active directory, and has following requirement: - Monitor User login/logout - Monitor Active Directory User account changes - Monitor Machine Account Which is the best option to implement the above requirements?

Options

  • AMicrosoft Defender for Identity (formerly Azure Advanced Threat Protection, also known as Azure ATP)
  • BAzure AD Password Protection
  • CAzure AD Identity Protection
  • DAzure AD Privileged Identity Management

How the community answered

(45 responses)
  • A
    91% (41)
  • B
    4% (2)
  • C
    2% (1)
  • D
    2% (1)

Explanation

Option A is CORRECT because all the 3 requirements can be implemented using Monitored Option B is incorrect because only Password Protections options are available Option C is incorrect because it is used for Identity Protections only Option D is incorrect because it is used only for the important resources Microsoft Defender for Identity (formerly Azure Advanced Threat Protection, also known as Azure ATP) is a cloud-based security solution that leverages your on-premises Active Directory signals to identify, detect, and investigate advanced threats, compromised identities, and malicious insider actions directed at your organization. Defender for Identity enables SecOp analysts and security professionals struggling to detect advanced attacks in hybrid environments to: - Monitor users, entity behavior, and activities with learning-based analytics - Protect user identities and credentials stored in Active Directory - Identify and investigate suspicious user activities and advanced attacks throughout the kill chain - Provide clear incident information on a simple timeline for fast triage https://docs.microsoft.com/en-us/azure-advanced-threat-protection/monitored-activities https://docs.microsoft.com/en-us/defender-for-identity/what-is

Community Discussion

No community discussion yet for this question.

Full AZ-900 Practice