exam questions

Exam SC-100 All Questions

View all questions & answers for the SC-100 exam

Exam SC-100 topic 4 question 25 discussion

Actual exam question from Microsoft's SC-100
Question #: 25
Topic #: 4
[All SC-100 Questions]

Your company plans to evaluate the security of its Azure environment based on the principles of the Microsoft Cloud Adoption Framework for Azure.

You need to recommend a cloud-based service to evaluate whether the Azure resources comply with the National Institute of Standards and Technology (NIST) Cybersecurity Framework (CSF).

What should you recommend?

  • A. Compliance Manager in Microsoft Purview
  • B. Microsoft Defender for Cloud
  • C. Microsoft Sentinel
  • D. Microsoft Defender for Cloud Apps
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
sherifhamed
Highly Voted 1 year, 8 months ago
Selected Answer: B
B. Microsoft Defender for Cloud Microsoft Defender for Cloud (formerly known as Azure Security Center) is a comprehensive cloud security management system that helps you monitor and improve the security of your Azure resources. It provides continuous security assessment based on various compliance standards, including NIST CSF. It offers recommendations and best practices to help you align with the NIST CSF and other security frameworks. The other options (A, C, and D) have different purposes and are not specifically designed for evaluating compliance with NIST CSF
upvoted 7 times
...
sweetykaur
Most Recent 4 months, 1 week ago
Selected Answer: B
B. Microsoft Defender for Cloud Microsoft Defender for Cloud provides a comprehensive security management solution that helps you assess, detect, and respond to threats across your Azure environment. It includes built-in assessments based on industry standards, including the NIST Cybersecurity Framework, to ensure your resources comply with best practices.
upvoted 1 times
...
macka2005
11 months, 3 weeks ago
Selected Answer: A
Looks like purview is now the preferred way https://learn.microsoft.com/en-us/compliance/regulatory/offering-nist-csf#use-microsoft-purview-compliance-manager-to-assess-your-risk
upvoted 3 times
ariania
10 months, 3 weeks ago
Sure, but in this case the question states "evaluate whether the Azure resources comply" - so we want to look at Keyvaults, storageaccounts, resourcegroups and what not. Defender for Cloud is the tool for that (not purview).
upvoted 3 times
...
...
fuzzycr
1 year, 2 months ago
Selected Answer: B
https://learn.microsoft.com/en-us/azure/defender-for-cloud/regulatory-compliance-dashboard
upvoted 1 times
...
Ramye
1 year, 4 months ago
Selected Answer: B
B. Defender for Cloud "Defender for Cloud continually assesses the environment-in-scope against standards. Based on assessments, it shows in-scope resources as being compliant or noncompliant with the standard, and provides remediation recommendations." Source: https://learn.microsoft.com/en-us/azure/defender-for-cloud/update-regulatory-compliance-packages#add-a-regulatory-standard-to-your-dashboard
upvoted 2 times
...
ServerBrain
1 year, 9 months ago
Selected Answer: B
Ans is B, all-day!
upvoted 2 times
...
Ario
1 year, 11 months ago
Selected Answer: C
While options A (Compliance Manager in Microsoft Purview) and D (Microsoft Defender for Cloud Apps) also offer security-related features, they are more focused on specific areas such as compliance management and application security, respectively. Option B (Microsoft Defender for Cloud) primarily focuses on protecting cloud workloads. However, for evaluating compliance with the NIST CSF across the Azure environment as a whole, Microsoft Sentinel is the most suitable choice.
upvoted 4 times
...
zellck
2 years, 1 month ago
Selected Answer: B
B is the answer. https://learn.microsoft.com/en-us/azure/defender-for-cloud/regulatory-compliance-dashboard Microsoft Defender for Cloud helps streamline the process for meeting regulatory compliance requirements, using the regulatory compliance dashboard. Defender for Cloud continuously assesses your hybrid cloud environment to analyze the risk factors according to the controls and best practices in the standards that you've applied to your subscriptions. The dashboard reflects the status of your compliance with these standards. When you enable Defender for Cloud on an Azure subscription, the Microsoft cloud security benchmark is automatically assigned to that subscription. This widely respected benchmark builds on the controls from the Center for Internet Security (CIS), PCI-DSS and the National Institute of Standards and Technology (NIST) with a focus on cloud-centric security.
upvoted 2 times
zellck
2 years ago
Gotten this in May 2023 exam.
upvoted 5 times
...
...
El_m_o
2 years, 1 month ago
Selected Answer: B
Regulatory Compliance Dashboard has the Azure compliance data. Compliance Manager aggregates this and Office 365 compliance data. For the question, RCD is more direct and actionable.
upvoted 2 times
...
promto
2 years, 2 months ago
Selected Answer: B
https://learn.microsoft.com/en-us/azure/defender-for-cloud/update-regulatory-compliance-packages#add-a-regulatory-standard-to-your-dashboard
upvoted 2 times
...
shinda
2 years, 2 months ago
Selected Answer: B
https://learn.microsoft.com/en-us/azure/defender-for-cloud/review-security-recommendations
upvoted 3 times
...
OK2020
2 years, 2 months ago
Selected Answer: B
https://learn.microsoft.com/en-us/azure/defender-for-cloud/update-regulatory-compliance-packages#add-a-regulatory-standard-to-your-dashboard
upvoted 3 times
...
janesb
2 years, 2 months ago
Selected Answer: A
it is the Compliance Manager in Microsoft Purview for sure https://learn.microsoft.com/en-us/compliance/regulatory/offering-nist-csf#use-microsoft-purview-compliance-manager-to-assess-your-risk
upvoted 4 times
...
aris
2 years, 2 months ago
Selected Answer: A
https://learn.microsoft.com/en-us/compliance/regulatory/offering-nist-csf
upvoted 4 times
...
_adem
2 years, 2 months ago
Selected Answer: B
https://learn.microsoft.com/en-us/azure/defender-for-cloud/update-regulatory-compliance-packages https://learn.microsoft.com/en-us/azure/defender-for-cloud/regulatory-compliance-dashboard
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...