nerdexam
Microsoft

SC-200 · Question #62

You are responsible for responding to Azure Defender for Key Vault alerts. During an investigation of an alert, you discover unauthorized attempts to access a key vault from a Tor exit node. What…

The correct answer is A. Key Vault firewalls and virtual networks. To be able to prevent unauthorized access to the key vault through suspicious IPs you have to change the networking settings under the key vault resource. https://docs.microsoft.com/en-us/azure/key-vault/general/network-security

Submitted by katya_ua· Apr 18, 2026Manage threat mitigation using Microsoft Defender for Cloud

Question

You are responsible for responding to Azure Defender for Key Vault alerts. During an investigation of an alert, you discover unauthorized attempts to access a key vault from a Tor exit node. What should you configure to mitigate the threat?

Options

  • AKey Vault firewalls and virtual networks
  • BAzure Active Directory (Azure AD) permissions
  • Crole-based access control (RBAC) for the key vault
  • Dthe access policy settings of the key vault

How the community answered

(21 responses)
  • A
    81% (17)
  • B
    5% (1)
  • C
    5% (1)
  • D
    10% (2)

Explanation

To be able to prevent unauthorized access to the key vault through suspicious IPs you have to change the networking settings under the key vault resource. https://docs.microsoft.com/en-us/azure/key-vault/general/network-security

Topics

#Azure Key Vault security#Network access control#Firewall#Threat mitigation

Community Discussion

No community discussion yet for this question.

Full SC-200 Practice