MS-900 · Question #414
MS-900 Question #414: Real Exam Question with Answer & Explanation
This hotspot question tests knowledge of which specific security services are provided under the Microsoft Defender umbrella within Microsoft 365 threat protection solutions.
Question
Hotspot Question A company is investigating Microsoft 365 threat protection solutions. You need to identify the services provided by Microsoft Defender. Which services should you identify? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point. Answer:
Options
- __typehotspot
- variantdropdown
Explanation
This hotspot question tests knowledge of which specific security services are provided under the Microsoft Defender umbrella within Microsoft 365 threat protection solutions.
Approach. Microsoft Defender encompasses several specialized services: Microsoft Defender for Endpoint (device/endpoint protection and EDR), Microsoft Defender for Office 365 (email and collaboration threat protection including anti-phishing, safe links, safe attachments), Microsoft Defender for Identity (on-premises Active Directory threat detection using signals), Microsoft Defender for Cloud Apps (CASB - Cloud Access Security Broker for SaaS app visibility and control), and Microsoft Defender Vulnerability Management. Services like Azure AD Identity Protection, Microsoft Sentinel (SIEM), and Microsoft Purview (compliance/DLP) are NOT part of the Microsoft Defender family. When evaluating each row in the hotspot, select 'Yes' for any service explicitly branded as 'Microsoft Defender' and 'No' for services that belong to other Microsoft security product families such as Purview, Sentinel, or Entra.
Concept tested. Microsoft Defender product family and its constituent services (Defender for Endpoint, Defender for Office 365, Defender for Identity, Defender for Cloud Apps) versus other Microsoft 365 security services like Microsoft Sentinel, Microsoft Purview, and Microsoft Entra ID Protection.
Community Discussion
No community discussion yet for this question.