SC-200 · Question #378
You have a Microsoft 365 E5 subscription that contains a database server named DB1. DB1 is onboarded to Microsoft Defender XDR. You need to ensure that DB1 appears on the attack surface map. What…
The correct answer is B. a critical asset rule. To ensure DB1 appears on the attack surface map in Microsoft Defender XDR, it must be designated as a critical asset.
Question
You have a Microsoft 365 E5 subscription that contains a database server named DB1. DB1 is onboarded to Microsoft Defender XDR. You need to ensure that DB1 appears on the attack surface map. What should you configure?
Options
- Aan asset rule
- Ba critical asset rule
- Ca sensitive entity tag
- Da honeytoken entity tag
How the community answered
(25 responses)- A8% (2)
- B72% (18)
- C4% (1)
- D16% (4)
Why each option
To ensure DB1 appears on the attack surface map in Microsoft Defender XDR, it must be designated as a critical asset.
An "asset rule" is not a specific configuration within Microsoft Defender XDR used to explicitly display assets on the attack surface map; the critical asset designation is the relevant feature.
In Microsoft Defender XDR, assets explicitly designated as "critical assets" are prioritized and included in the attack surface map view as part of Attack Surface Management. This feature allows security teams to focus on the most important assets and their potential exposure.
A "sensitive entity tag" helps categorize assets based on their data sensitivity but does not automatically ensure their display on the attack surface map as a prioritized asset.
A "honeytoken entity tag" marks an asset as a decoy for deception purposes, not for inclusion on a standard attack surface map as a production asset.
Concept tested: Microsoft Defender XDR critical assets and attack surface management
Source: https://learn.microsoft.com/en-us/microsoft-365/security/defender-vulnerability-management/tvm-critical-assets?view=o365-worldwide
Community Discussion
No community discussion yet for this question.