nerdexam
Microsoft

SC-200 · Question #186

You have an Azure subscription that uses Microsoft Defender for Cloud and contains a user named User1. You need to ensure that User1 can modify Microsoft Defender for Cloud security policies. The…

The correct answer is B. Security Admin. Security reader: Has rights to view Defender for Cloud items such as recommendations, alerts, policy, and health. Can't make changes. Security admin: Has the same view rights as security reader. Can also update the security policy and dismiss alerts…

Submitted by carter_n· Apr 18, 2026Manage threat mitigation using Microsoft Defender for Cloud

Question

You have an Azure subscription that uses Microsoft Defender for Cloud and contains a user named User1. You need to ensure that User1 can modify Microsoft Defender for Cloud security policies. The solution must use the principle of least privilege. Which role should you assign to User1?

Options

  • ASecurity operator
  • BSecurity Admin
  • COwner
  • DContributor

How the community answered

(37 responses)
  • A
    5% (2)
  • B
    89% (33)
  • C
    3% (1)
  • D
    3% (1)

Explanation

Security reader: Has rights to view Defender for Cloud items such as recommendations, alerts, policy, and health. Can't make changes. Security admin: Has the same view rights as security reader. Can also update the security policy and dismiss alerts. https://learn.microsoft.com/en-us/azure/defender-for-cloud/tutorial-security-policy#who-can-edit- security-policies

Topics

#Azure RBAC#Microsoft Defender for Cloud#Security Policies#Least Privilege

Community Discussion

No community discussion yet for this question.

Full SC-200 Practice