exam questions

Exam SC-100 All Questions

View all questions & answers for the SC-100 exam

Exam SC-100 topic 1 question 31 discussion

Actual exam question from Microsoft's SC-100
Question #: 31
Topic #: 1
[All SC-100 Questions]

You are designing a security operations strategy based on the Zero Trust framework.

You need to minimize the operational load on Tier 1 Microsoft Security Operations Center (SOC) analysts.

What should you do?

  • A. Enable built-in compliance policies in Azure Policy.
  • B. Enable self-healing in Microsoft 365 Defender.
  • C. Automate data classification.
  • D. Create hunting queries in Microsoft 365 Defender.
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
WRITER00347
Highly Voted 1 year, 4 months ago
Among the options provided, B. Enable self-healing in Microsoft 365 Defender is the one that aligns most closely with this goal. Self-healing capabilities in Microsoft 365 Defender can automatically detect, investigate, and remediate security threats, which would otherwise require manual intervention by SOC analysts. By automating these processes, you can minimize the operational load on Tier 1 analysts and allow them to focus on more complex security issues. Options A, C, and D are relevant to various aspects of security and compliance but don't specifically target the operational load on Tier 1 SOC analysts in the same way that option B does. Therefore, the correct answer is: B. Enable self-healing in Microsoft 365 Defender.
upvoted 19 times
...
cyber_sa
Highly Voted 1 year, 2 months ago
Selected Answer: B
got this in exam 6oct23. passed with 896 marks. I answered B
upvoted 8 times
...
Arockia
Most Recent 11 months, 1 week ago
To minimize the operational load on Tier 1 Microsoft Security Operations Center (SOC) analysts while designing a security operations strategy based on the Zero Trust framework, the recommended action is: B. Enable self-healing in Microsoft 365 Defender: Enabling self-healing capabilities in Microsoft 365 Defender can significantly reduce the operational load on Tier 1 SOC analysts. Self-healing features automate the detection and remediation of common security issues and threats, allowing for faster response times and reducing the need for manual intervention. By automating the remediation process, Tier 1 analysts can focus on more complex and critical security incidents, improving efficiency and productivity.
upvoted 1 times
...
sherifhamed
1 year, 2 months ago
Selected Answer: B
To minimize the operational load on Tier 1 Microsoft Security Operations Center (SOC) analysts as part of a Zero Trust security operations strategy, you should recommend enabling self-healing in Microsoft 365 Defender (Option B). Here's why this recommendation is appropriate: A. Enable built-in compliance policies in Azure Policy: While compliance policies are essential for maintaining security and compliance, they do not directly address minimizing the operational load on SOC analysts. These policies help in ensuring that resources are compliant with organizational standards but may require SOC analysts to review and remediate non-compliant resources.
upvoted 4 times
...
bronyrafon
1 year, 2 months ago
ChatGPT says option C...
upvoted 1 times
...
ThePrinceJozef
1 year, 3 months ago
Selected Answer: B
BBBBBBBBBBBBB
upvoted 3 times
...
ServerBrain
1 year, 3 months ago
Selected Answer: B
B is the correct answer
upvoted 3 times
...
Lippes
1 year, 4 months ago
Selected Answer: B
Would go for B
upvoted 4 times
...
Victory007
1 year, 4 months ago
Selected Answer: B
https://techcommunity.microsoft.com/t5/microsoft-365-defender-blog/self-healing-in-microsoft-365-defender/ba-p/1729527. https://techcommunity.microsoft.com/t5/microsoft-365-defender-blog/self-healing-in-microsoft-365-defender/ba-p/1729527
upvoted 4 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...