MS-102 · Question #532
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might…
The correct answer is B. No. No, for modifying Microsoft Defender for Identity sensor configurations, roles such as Global Administrator, Security Administrator, or Defender for Identity Administrator (specific to MDI) are typically required, rather than a potentially more limited 'Azure ATP administrator'…
Question
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. You have a Microsoft Azure Active Directory (Azure AD) tenant named contoso.com. You create an Azure Advanced Threat Protection (ATP) workspace named Workspace1. The tenant contains the users shown in the following table. You need to modify the configuration of the Azure ATP sensors. Solution: You instruct User2 to modify the Azure ATP sensor configuration. Does this meet the goal?
Exhibit
Options
- AYes
- BNo
How the community answered
(24 responses)- A42% (10)
- B58% (14)
Why each option
No, for modifying Microsoft Defender for Identity sensor configurations, roles such as Global Administrator, Security Administrator, or Defender for Identity Administrator (specific to MDI) are typically required, rather than a potentially more limited 'Azure ATP administrator' role.
The 'Azure ATP administrator' role, as implied by the question, is likely insufficient for modifying the core configuration of Defender for Identity sensors, which often requires higher-level administrative privileges like Global Administrator or Security Administrator.
To modify the configuration of Microsoft Defender for Identity (formerly Azure ATP) sensors, the user typically requires the Global Administrator, Security Administrator, or the dedicated Defender for Identity Administrator role. The 'Azure ATP administrator' role may have more limited permissions, possibly focused on monitoring rather than fundamental sensor configuration changes.
Concept tested: Microsoft Defender for Identity administrative roles
Source: https://learn.microsoft.com/en-us/defender-for-identity/roles
Topics
Community Discussion
No community discussion yet for this question.
