MD-102 · Question #296
You have a Microsoft 365 E5 subscription. The subscription contains 25 computers that run Windows 11 and are enrolled in Microsoft Intune. You need to onboard the devices to Microsoft Defender for…
The correct answer is C. an endpoint detection and response (EDR) policy. An Endpoint Detection and Response (EDR) policy in the Microsoft Intune admin center is specifically designed to onboard Windows devices to Microsoft Defender for Endpoint. It deploys the Defender for Endpoint onboarding configuration package to devices, enabling the EDR…
Question
You have a Microsoft 365 E5 subscription. The subscription contains 25 computers that run Windows 11 and are enrolled in Microsoft Intune. You need to onboard the devices to Microsoft Defender for Endpoint. What should you create in the Microsoft Intune admin center?
Options
- Aan attack surface reduction (ASR) policy
- Ba security baseline
- Can endpoint detection and response (EDR) policy
- Dan account protection policy
- Ean antivirus policy
How the community answered
(26 responses)- A8% (2)
- B4% (1)
- C77% (20)
- D12% (3)
Explanation
An Endpoint Detection and Response (EDR) policy in the Microsoft Intune admin center is specifically designed to onboard Windows devices to Microsoft Defender for Endpoint. It deploys the Defender for Endpoint onboarding configuration package to devices, enabling the EDR sensor. An ASR policy (A) reduces attack surfaces but does not perform onboarding. A security baseline (B) applies hardening settings but is not the onboarding mechanism. An account protection policy (D) protects credentials. An antivirus policy (E) configures Defender Antivirus settings. Only the EDR policy handles the Defender for Endpoint onboarding workflow.
Topics
Community Discussion
No community discussion yet for this question.