exam questions

Exam MS-100 All Questions

View all questions & answers for the MS-100 exam

Exam MS-100 topic 2 question 33 discussion

Actual exam question from Microsoft's MS-100
Question #: 33
Topic #: 2
[All MS-100 Questions]

You have a Microsoft 365 subscription.
You recently configured a Microsoft SharePoint Online tenant in the subscription.
You plan to create an alert policy.
You need to ensure that an alert is generated only when malware is detected in more than five documents stored in SharePoint Online during a period of 10 minutes.
What should you do first?

  • A. Enable Microsoft Office 365 Cloud App Security.
  • B. Deploy Windows Defender Advanced Threat Protection (Windows Defender ATP).
  • C. Enable Microsoft Office 365 Analytics.
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Ronald82
Highly Voted 5 years, 7 months ago
Yes ATP, but here you guys mention the wrong ATP, it should be called either Office 365 ATP, or Microsoft 365 ATP. Windows Defender ATP will not take care of malicious files within SharePoint Online.
upvoted 44 times
VTHAR
4 years, 6 months ago
Yes, it should be Office 365 ATP.
upvoted 5 times
mikl
2 years, 8 months ago
Which is named : Microsoft Defender for Office 365 now.
upvoted 3 times
...
...
...
Cyclops74
Highly Voted 5 years, 4 months ago
I agree with both remarks: indeed you can enable malware detection in Cloud App Security, but you need an Office 365 ATP license. Since that is not mentioned, in this case the answer should be A. See: https://docs.microsoft.com/en-us/cloud-app-security/anomaly-detection-policy
upvoted 14 times
...
ijarosova
Most Recent 2 years, 1 month ago
Selected Answer: A
I vote A
upvoted 1 times
...
DeLoc
2 years, 2 months ago
Selected Answer: A
Office 365 Cloud App Security is a comprehensive security management and threat protection service that can be used to detect and respond to potential security threats in Microsoft 365, including SharePoint Online. It allows you to create policies that monitor activity and generate alerts based on specific criteria, such as the detection of malware in SharePoint documents.
upvoted 1 times
...
Startkabels
2 years, 5 months ago
Selected Answer: B
It's B. Nowadays this policy is made in the Purview portal (compliance.microsoft.com), under Alerts > New Alert policy: Activity is: Detected malware in file (description: Office 365 detected malware in either a SharePoint or OneDrive file). Learn more link in the top of the Alert Policy page brings you to an article that reads you need Defender for this. https://learn.microsoft.com/en-us/microsoft-365/compliance/alert-policies?redirectSourcePath=%252farticle%252f8927b8b9-c5bc-45a8-a9f9-96c732e58264&view=o365-worldwide
upvoted 1 times
vanr2000
2 years ago
The problem is, they're talking about Windows ATP, for the client, not SharePoint. That's the tricky part of the answer.
upvoted 1 times
...
...
simoen
2 years, 7 months ago
Selected Answer: A
cloud app security
upvoted 1 times
...
pozzetttt
2 years, 8 months ago
Selected Answer: A
The answer is A: You can test it! Cloud App Security Portal--> Control--> Policies--> Activity type equals "Malware detected in file'
upvoted 1 times
...
ados8
2 years, 9 months ago
Selected Answer: A
Many years in this needs to be correct with B with appropriate name Microsoft Defender for Office 365.
upvoted 3 times
mikl
2 years, 8 months ago
I tend to agree.
upvoted 1 times
...
...
aaron_roman
2 years, 10 months ago
Selected Answer: A
it should be a
upvoted 1 times
...
aaron_roman
2 years, 10 months ago
Selected Answer: A
it should be A based on: https://docs.microsoft.com/en-us/defender-cloud-apps/editions-cloud-app-security-o365 "Threat Detection Anomaly detection and behavioral analytics"
upvoted 1 times
...
TechMinerUK
2 years, 10 months ago
Selected Answer: B
B is correct however it is not Windows Defender ATP (Now named Microsoft Defender for Endpoint) but rather Microsoft Defender for Office 365 (Previously named Office 365 ATP). Windows Defender ATP would have never worked in this scenario since it is a client antivirus/anti-malware solution and Defender for Cloud Apps monitors connecting cloud apps e.g. abnormal data upload/download or new OAuth app connections
upvoted 3 times
...
DenisRossi
2 years, 10 months ago
Selected Answer: B
B is the correct, stop voting A.
upvoted 3 times
mikaiwhodakno
2 years, 10 months ago
Sorry but that is not correct. Look at the wording, Windows Defender ATP protects endpoints and PCs, it does not protect Sharepoint online, therefore the correct answer is A. This is commonly confused with the various products known as Cloud App Security, or Office 365 ATP (now Microsoft Defender for Office 365), which WILL scan and protect Sharepoint.
upvoted 3 times
DenisRossi
2 years, 10 months ago
I see, you are right! I've made a mistake with the names!!! Thank you!
upvoted 2 times
...
...
...
gaem
2 years, 10 months ago
Selected Answer: B
B is the right answer. Stop voting A
upvoted 1 times
mikaiwhodakno
2 years, 10 months ago
Sorry but that is not correct. Look at the wording, "Windows Defender ATP" protects endpoints and PCs, it does not protect Sharepoint online, therefore the correct answer is A. This is commonly confused with the various products known as Cloud App Security, or Office 365 ATP (now Microsoft Defender for Office 365), which WILL scan and protect Sharepoint. The "Windows" naming gives it away as the wrong answer.
upvoted 1 times
...
...
gaem
2 years, 11 months ago
Selected Answer: B
ATP is the answer
upvoted 1 times
mikaiwhodakno
2 years, 10 months ago
A is the answer: https://www.examtopics.com/discussions/microsoft/view/11495-exam-ms-101-topic-2-question-66-discussion/
upvoted 1 times
...
...
UltraMAGA
2 years, 11 months ago
The Answer is B, and the reason it is B is: "Tip Originally launched as Windows Defender ATP, in 2019, this EDR product was renamed Microsoft Defender ATP. At Ignite 2020, we launched the Microsoft Defender for Cloud XDR suite, and this EDR component was renamed Microsoft Defender for Endpoint. " Source: https://docs.microsoft.com/en-us/azure/defender-for-cloud/integration-defender-for-endpoint?tabs=windows
upvoted 2 times
...
joergsi
3 years, 3 months ago
Please check: https://docs.microsoft.com/en-us/defender-cloud-apps/editions-cloud-app-security-o365 Office 365 Cloud App Security is a subset of Microsoft Defender for Cloud Apps that provides enhanced visibility and control for Office 365. Office 365 Cloud App Security includes threat detection based on user activity logs, discovery of Shadow IT for apps that have similar functionality to Office 365 offerings, control app permissions to Office 365, and apply access and session controls.
upvoted 1 times
...
davem90
3 years, 5 months ago
Selected Answer: A
Microsoft Cloud App Security is now called Microsoft Defender for Cloud Apps. Defender for Cloud Apps supports malware detection for the following apps: Box Dropbox Google Workspace Office 365 (requires a valid license for Microsoft Defender for Office 365 P1) https://docs.microsoft.com/en-us/cloud-app-security/anomaly-detection-policy
upvoted 3 times
Durden871
3 years, 2 months ago
I doubt recent changes are reflected in the test, but I could be wrong.
upvoted 1 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago