exam questions

Exam SC-100 All Questions

View all questions & answers for the SC-100 exam

Exam SC-100 topic 2 question 23 discussion

Actual exam question from Microsoft's SC-100
Question #: 23
Topic #: 2
[All SC-100 Questions]

You have a Microsoft 365 subscription and an Azure subscription. Microsoft 365 Defender and Microsoft Defender for Cloud are enabled.
The Azure subscription contains 50 virtual machines. Each virtual machine runs different applications on Windows Server 2019.
You need to recommend a solution to ensure that only authorized applications can run on the virtual machines. If an unauthorized application attempts to run or be installed, the application must be blocked automatically until an administrator authorizes the application.
Which security control should you recommend?

  • A. adaptive application controls in Defender for Cloud
  • B. app protection policies in Microsoft Endpoint Manager
  • C. app discovery anomaly detection policies in Microsoft Defender for Cloud Apps
  • D. Azure Security Benchmark compliance controls in Defender for Cloud
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
PlumpyTumbler
Highly Voted 1 year, 9 months ago
Selected Answer: A
This question is on here twice. Each time it's asked the same way but the answer options are different so look out. In this case A is correct. https://docs.microsoft.com/en-us/azure/defender-for-cloud/recommendations-reference#compute-recommendations
upvoted 14 times
...
cybrtrk
Most Recent 6 months, 2 weeks ago
Adaptive application controls don’t block. What am I missing here?
upvoted 3 times
...
Intrudire
7 months ago
Selected Answer: A
Answer does not meet the requirements, but it seems to be the closest answer. "If an unauthorized application attempts to run or be installed, the application must be blocked automatically until an administrator authorizes the application." "No enforcement options are currently available. Adaptive application controls are intended to provide security alerts if any application runs other than the ones you've defined as safe." https://learn.microsoft.com/en-us/azure/defender-for-cloud/adaptive-application-controls
upvoted 3 times
...
imsidrai
11 months, 3 weeks ago
C is the correct answer https://learn.microsoft.com/en-us/defender-cloud-apps/cloud-discovery-policies
upvoted 2 times
imsidrai
11 months, 3 weeks ago
No enforcement options are currently available. Adaptive application controls are intended to provide security alerts if any application runs other than the ones you've defined as safe.
upvoted 1 times
imsidrai
11 months, 3 weeks ago
adaptive control wont block/deny , it would only suggest/recommend, so NO for adaptive controls
upvoted 2 times
imsidrai
11 months, 2 weeks ago
Please disregard my comments above, The correct answer is B , Microsoft Endpoint manager which is now Intune Admin center has capability to block unauthorized applications and block all other executables, Adaptive control policies would only notify you.
upvoted 2 times
Intrudire
7 months ago
Intune doesnt seem to support Server. https://learn.microsoft.com/en-us/mem/intune/fundamentals/supported-devices-browsers
upvoted 1 times
...
...
...
...
...
zellck
1 year ago
Same as Question 19. https://www.examtopics.com/discussions/microsoft/view/94349-exam-sc-100-topic-4-question-19-discussion
upvoted 1 times
...
zellck
1 year ago
Selected Answer: A
C is the answer. https://learn.microsoft.com/en-us/azure/defender-for-cloud/adaptive-application-controls Adaptive application controls are an intelligent and automated solution for defining allowlists of known-safe applications for your machines. Often, organizations have collections of machines that routinely run the same processes. Microsoft Defender for Cloud uses machine learning to analyze the applications running on your machines and create a list of the known-safe software. Allowlists are based on your specific Azure workloads, and you can further customize the recommendations using the following instructions. When you've enabled and configured adaptive application controls, you'll get security alerts if any application runs other than the ones you've defined as safe.
upvoted 1 times
...
vitodobra
1 year, 2 months ago
Selected Answer: B
La respuesta correcta es B. Debe recomendar políticas de protección de aplicaciones en Microsoft Endpoint Manager. Esta solución permite configurar y administrar las políticas de protección de aplicaciones en todas las máquinas virtuales de forma centralizada. Las políticas de protección de aplicaciones permiten controlar qué aplicaciones pueden ejecutarse o instalarse en las máquinas virtuales. Si una aplicación no autorizada intenta ejecutarse o instalarse, la aplicación se bloqueará automáticamente hasta que un administrador autorice la aplicación. Las políticas de protección de aplicaciones se pueden configurar para permitir aplicaciones específicas, bloquear aplicaciones específicas o permitir que los usuarios finales soliciten la instalación de aplicaciones no autorizadas.
upvoted 2 times
...
TJ001
1 year, 5 months ago
Perfect A
upvoted 1 times
...
Sec_Arch_Chn
1 year, 6 months ago
Selected Answer: A
Adaptive application controls are an intelligent and automated solution for defining allowlists of known-safe applications for your machine Source: https://learn.microsoft.com/en-us/azure/defender-for-cloud/adaptive-application-controls
upvoted 3 times
...
Janusguru
1 year, 7 months ago
Adaptive application controls are an intelligent and automated solution for defining allowlists of known-safe applications for your machines.
upvoted 1 times
...
SAMSH
1 year, 8 months ago
Correct answer. was in 20Sep2020 exam
upvoted 1 times
...
Jasper666
1 year, 8 months ago
https://docs.microsoft.com/en-us/azure/defender-for-cloud/adaptive-application-controls and the feature that does this is "Identify software that's banned by your organization but is nevertheless running on your machines"
upvoted 1 times
...
tester18128075
1 year, 8 months ago
A is the correct answer
upvoted 1 times
...
Granwizzard
1 year, 8 months ago
Selected Answer: A
The correct answer is A because you don't have any other option that will block applications from running. But accordingly, with the latest info, the option to enforce adaptive applications is not available, so it will only alert.https://docs.microsoft.com/en-us/azure/defender-for-cloud/adaptive-application-controls#are-there-any-options-to-enforce-the-application-controls The question is mentioning to block the application from running, and the adaptive application controls don't have this capability available, so the answer shouldn't be correct.
upvoted 3 times
Janusguru
1 year, 7 months ago
Adaptive application controls are intended to provide security alerts if any application runs other than the ones you've defined as safe. It does not block or enforce.
upvoted 3 times
...
...
Alex_Burlachenko
1 year, 9 months ago
A. adaptive application controls - correct
upvoted 4 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...