exam questions

Exam SC-200 All Questions

View all questions & answers for the SC-200 exam

Exam SC-200 topic 2 question 4 discussion

Actual exam question from Microsoft's SC-200
Question #: 4
Topic #: 2
[All SC-200 Questions]

You have a Microsoft 365 subscription that uses Azure Defender.
You have 100 virtual machines in a resource group named RG1.
You assign the Security Admin roles to a new user named SecAdmin1.
You need to ensure that SecAdmin1 can apply quick fixes to the virtual machines by using Azure Defender. The solution must use the principle of least privilege.
Which role should you assign to SecAdmin1?

  • A. the Security Reader role for the subscription
  • B. the Contributor for the subscription
  • C. the Contributor role for RG1
  • D. the Owner role for RG1
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
somsom
Highly Voted 4 years, 3 months ago
correct. contributors has edit, read and view access
upvoted 23 times
...
Eltooth
Highly Voted 4 years, 1 month ago
Agreed - Contributor rights on RG is minimum permission needed.
upvoted 10 times
...
Nikki0222
Most Recent 8 months, 2 weeks ago
C correct
upvoted 1 times
...
DChilds
1 year, 2 months ago
Selected Answer: C
This question was in the exam 27/04/2024.
upvoted 5 times
...
chepeerick
1 year, 8 months ago
option C as contributor to resource
upvoted 1 times
...
EricShon
1 year, 10 months ago
Selected Answer: C
https://learn.microsoft.com/en-us/azure/defender-for-cloud/permissions
upvoted 1 times
...
Apocalypse03
2 years, 6 months ago
Selected Answer: C
To ensure that SecAdmin1 can apply quick fixes to the virtual machines by using Azure Defender, while also following the principle of least privilege, you should assign the Contributor role for RG1 to SecAdmin1. The Contributor role for RG1 will allow SecAdmin1 to perform tasks such as deploying resources and modifying resource properties within RG1, but it will not grant them access to perform administrative tasks at the subscription level. This will allow SecAdmin1 to apply quick fixes to the virtual machines using Azure Defender, while still adhering to the principle of least privilege.
upvoted 10 times
...
Tx4free
3 years, 4 months ago
Selected Answer: C
Best answer
upvoted 5 times
...
liberty123
3 years, 4 months ago
Selected Answer: C
should be C
upvoted 4 times
...
Ana22
3 years, 4 months ago
Selected Answer: C
Correct
upvoted 4 times
...
stromnessian
3 years, 5 months ago
Selected Answer: C
Contributor role for RG.
upvoted 3 times
...
Task
4 years, 1 month ago
Agreed, correcr answer
upvoted 4 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...