SC-100 · Question #65
You have an Azure subscription that has Microsoft Defender for Cloud enabled. You are evaluating the Azure Security Benchmark V3 report as shown in the following exhibit. You need to verify whether…
The correct answer is E. Endpoint Security. The correct answer is E: Endpoint Security. In the Azure Security Benchmark V3, the 'Endpoint Security' compliance control specifically governs whether endpoint protection solutions-including Microsoft Defender for servers-are installed and operating on virtual machines. This…
Question
You have an Azure subscription that has Microsoft Defender for Cloud enabled. You are evaluating the Azure Security Benchmark V3 report as shown in the following exhibit. You need to verify whether Microsoft Defender for servers is installed on all the virtual machines that run Windows. Which compliance control should you evaluate?
Exhibit
Options
- AData Protection
- BIncident Response
- CPosture and Vulnerability Management
- DAsset Management
- EEndpoint Security
How the community answered
(43 responses)- A2% (1)
- B7% (3)
- C5% (2)
- D16% (7)
- E70% (30)
Explanation
The correct answer is E: Endpoint Security. In the Azure Security Benchmark V3, the 'Endpoint Security' compliance control specifically governs whether endpoint protection solutions-including Microsoft Defender for servers-are installed and operating on virtual machines. This control maps directly to requirements for antimalware, endpoint detection and response (EDR), and server protection agents. 'Asset Management' (D) deals with inventory and lifecycle, 'Posture and Vulnerability Management' (C) covers vulnerability scanning, 'Data Protection' (A) covers encryption and data handling, and 'Incident Response' (B) covers response planning-none of which specifically validate endpoint agent deployment.
Topics
Community Discussion
No community discussion yet for this question.
