nerdexam
Microsoft

SC-200 · Question #18

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might…

The correct answer is B. No. Honeytoken entities are used as traps for malicious actors. Any authentication associated with these honeytoken entities triggers an alert. Settings>Identities>Entity tags>Honey Token> Add Users or Devices…

Submitted by kwame.gh· Apr 18, 2026Configure protections and detections

Question

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. You are configuring Microsoft Defender for Identity integration with Active Directory. From the Microsoft Defender for identity portal, you need to configure several accounts for attackers to exploit. Solution: From Azure Identity Protection, you configure the sign-in risk policy. Does this meet the goal?

Options

  • AYes
  • BNo

How the community answered

(19 responses)
  • A
    26% (5)
  • B
    74% (14)

Explanation

Honeytoken entities are used as traps for malicious actors. Any authentication associated with these honeytoken entities triggers an alert. Settings>Identities>Entity tags>Honey Token> Add Users or Devices https://docs.microsoft.com/en-us/defender-for-identity/manage-sensitive-honeytoken-accounts

Topics

#Microsoft Defender for Identity#Azure Identity Protection#Honeytoken accounts#Identity security

Community Discussion

No community discussion yet for this question.

Full SC-200 Practice