exam questions

Exam MS-500 All Questions

View all questions & answers for the MS-500 exam

Exam MS-500 topic 2 question 30 discussion

Actual exam question from Microsoft's MS-500
Question #: 30
Topic #: 2
[All MS-500 Questions]

Your company has 500 computers.
You plan to protect the computers by using Microsoft Defender for Endpoint. Twenty of the computers belong to company executives.
You need to recommend a remediation solution that meets the following requirements:
✑ Microsoft Defender for Endpoint administrators must manually approve all remediation for the executives
✑ Remediation must occur automatically for all other users
What should you recommend doing from Microsoft Defender Security Center?

  • A. Configure 20 system exclusions on automation allowed/block lists
  • B. Configure two alert notification rules
  • C. Download an offboarding package for the computers of the 20 executives
  • D. Create two machine groups
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Maxx4
2 years ago
Selected Answer: D
The answer is D, Create two machine groups. Machine groups in Microsoft Defender Security Center allow you to group computers together based on specific criteria. In this case, you can create two machine groups: one for the executives and one for all other users. You can then configure different remediation settings for each machine group. For the executives, you can configure the remediation settings to require manual approval by a Microsoft Defender for Endpoint administrator. For all other users, you can configure the remediation settings to occur automatically. Here are the steps on how to create two machine groups in Microsoft Defender Security Center: Go to the Machine groups page in the Microsoft Defender Security Center console. Click Create machine group. Enter a name and description for the machine group. Select the Executives check box. Click Create. Repeat steps 3-5 to create the Other users machine group. Once the machine groups are created, you can configure the remediation settings for each machine group.
upvoted 2 times
...
heshmat2022
2 years, 9 months ago
In Microsoft Defender for Endpoint, you can create device groups and use them to: Limit access to related alerts and data to specific Azure AD user groups with assigned RBAC roles Configure different auto-remediation settings for different sets of devices Assign specific remediation levels to apply during automated investigations In an investigation, filter the Devices list to specific device groups by using the Group filter.
upvoted 2 times
...
arska
3 years, 3 months ago
Selected Answer: D
Simple is good.
upvoted 3 times
...
mbecile
3 years, 5 months ago
D - Keep it simple!
upvoted 1 times
...
mkoprivnj
3 years, 7 months ago
Selected Answer: D
D is correct!
upvoted 1 times
...
WMG
3 years, 11 months ago
Create two device groups, one for the rest and one group for the 20 computers that needs these specific settings. Groups are used to manage access to alerts, auto-remediation, remediation levels etc. https://docs.microsoft.com/en-us/microsoft-365/security/defender-endpoint/machine-groups?view=o365-worldwide
upvoted 4 times
...
SlimBoy
4 years, 1 month ago
The answer is correct
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...