exam questions

Exam SC-100 All Questions

View all questions & answers for the SC-100 exam

Exam SC-100 topic 7 question 2 discussion

Actual exam question from Microsoft's SC-100
Question #: 2
Topic #: 8
[All SC-100 Questions]

You need to recommend a solution to resolve the virtual machine issue.
What should you include in the recommendation?

  • A. Enable the Qualys scanner in Defender for Cloud.
  • B. Onboard the virtual machines to Microsoft Defender for Endpoint.
  • C. Create a device compliance policy in Microsoft Endpoint Manager.
  • D. Onboard the virtual machines to Azure Arc.
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Luke93
Highly Voted 2 years, 1 month ago
In the current Exam it takes 2 choices!! I took both onboarding choices (A & D)
upvoted 22 times
Ramye
11 months ago
Think you meant to say B & D as A is not a onboarding choice.
upvoted 3 times
...
Cock
1 year, 6 months ago
He is correct.In the exam 29.05.2023
upvoted 4 times
...
Aunehwet79
1 year, 11 months ago
Appreciate this Luke93
upvoted 6 times
...
...
AnonymousJhb
Highly Voted 2 years, 1 month ago
Selected Answer: A
A is correct: A = Go to MDC > recommendations > Search for = Machines should have a vulnerability assessment solution > select a vm > Fix > and you will be prompted to deploy the integrated vulnerabilty scanner powered by Qualys B = The question talks about "The secure score in Defender for Cloud shows that all the virtual machines generate the following recommendation: Machines should have a vulnerability assessment solution." > This has NOTHING to do with MDE C = The question talks about "The secure score in Defender for Cloud shows that all the virtual machines generate the following recommendation: Machines should have a vulnerability assessment solution." > This has NOTHING to do with MEM and device compliance. D = Since these 20 vms are mentioned in the Azure Enviroment - Azure Arc is not required NOT D
upvoted 13 times
whh13
6 months ago
Qualys has been deprecated by Microsoft as a vulnerability scanner, the replacement is Microsoft Defender Vulnerability Managemetn. Considering the age of the question, the answer is still valid. Defender for Endpoint is primarily focused on endpoint protection and threat detection, not vulnerability assessment.
upvoted 3 times
...
...
424ede1
Most Recent 2 months, 1 week ago
Selected Answer: D
AD 20 virtual machines are configured as application servers and are NOT onboarded to Microsoft Defender for Cloud. Onboarding them via Azure Arc brings these machines under Defender for Cloud, enabling built-in vulnerability scanning.
upvoted 1 times
...
ayadmawla
10 months ago
Selected Answer: B
If one answer then its B; if two answers then B+C A is deprecated (Enable vulnerability scanning with the integrated Qualys scanner (deprecated))
upvoted 5 times
Nian
6 months, 4 weeks ago
Correct. A is out. B is required as VMs are not onboarded. "20 virtual machines that are configured as application servers and are NOT onboarded to Microsoft Defender for Cloud" If two answers then also D for onboarding the AWS EC2 instances
upvoted 1 times
...
...
testgm
10 months, 2 weeks ago
Selected Answer: B
vulnerability scanning with the integrated Qualys scanner is already deprecated. You should go with answer of B. Onboard to defender for endpoint since it supports vulnerability assessment.
upvoted 4 times
...
slobav
1 year, 2 months ago
A. Enable the Qualys scanner in Defender for Cloud. B. Onboard the virtual machines to Microsoft Defender for Endpoint. https://www.youtube.com/watch?v=r-P-2lGzPFQ&list=PLQ2ktTy9rklhzzkSEZvDZT4QSIVUQZD-Y&index=9
upvoted 2 times
...
sherifhamed
1 year, 2 months ago
Selected Answer: B
To resolve the virtual machine issue and ensure that they are compliant with the HIPAA HITRUST standard, you should: B. Onboard the virtual machines to Microsoft Defender for Endpoint. Here's how this recommendation aligns with the requirements: Microsoft Defender for Cloud does not offer direct vulnerability scanning for virtual machines, but Microsoft Defender for Endpoint does. By onboarding the virtual machines to Microsoft Defender for Endpoint, you can enable vulnerability assessments and remediation for those virtual machines. This addresses the requirement for the virtual machines to be compliant in Defender for Cloud. Enabling vulnerability assessments through Microsoft Defender for Endpoint will help to address the secure score recommendation regarding the virtual machines needing a vulnerability assessment solution.
upvoted 2 times
...
KrissB
1 year, 3 months ago
A: . If you're using Microsoft Defender for Cloud’s standard tier for VMs, you can quickly deploy a vulnerability assessment solution powered by Qualys with no additional configuration or extra costs.
upvoted 1 times
...
ServerBrain
1 year, 3 months ago
Selected Answer: A
The answer is A, you to have a Qualys vulnerability scanner not just Defender for Cloud.
upvoted 1 times
...
zellck
1 year, 6 months ago
Selected Answer: A
A is the answer. https://learn.microsoft.com/en-us/azure/defender-for-cloud/deploy-vulnerability-assessment-vm When a machine is found that doesn't have a vulnerability assessment solution deployed, Defender for Cloud generates the security recommendation: Machines should have a vulnerability assessment solution. Use this recommendation to deploy the vulnerability assessment solution to your Azure virtual machines and your Azure Arc-enabled hybrid machines. Defender for Cloud includes vulnerability scanning for your machines at no extra cost. You don't need a Qualys license or even a Qualys account - everything's handled seamlessly inside Defender for Cloud. This page provides details of this scanner and instructions for how to deploy it.
upvoted 3 times
zellck
1 year, 6 months ago
Gotten this in May 2023 exam.
upvoted 2 times
...
...
Gurulee
1 year, 8 months ago
Selected Answer: A
Focusing on the VM issue with vuln scanning.
upvoted 2 times
...
awssecuritynewbie
1 year, 9 months ago
Selected Answer: A
I was thinking it should B but after reading the below section i have noticed that it really is A: The secure score in Defender for Cloud shows that all the virtual machines generate the following recommendation: Machines should have a vulnerability assessment solution. If all of the machines should have a vulnerability assessment solution then you should enable the Vulnerability access solution ...
upvoted 2 times
...
SaadKhamis
1 year, 9 months ago
Answer A & B are correct, IMHO. From https://learn.microsoft.com/en-us/azure/defender-for-cloud/deploy-vulnerability-assessment-vm Answer A is correct because of "Defender for Cloud includes vulnerability scanning for your machines at no extra cost. You don't need a Qualys license or even a Qualys account - everything's handled seamlessly inside Defender for Cloud. This page provides details of this scanner and instructions for how to deploy it." Answer B is correct because of "If you don't want to use the vulnerability assessment powered by Qualys, you can use Microsoft Defender for Endpoint's threat and vulnerability management or deploy a BYOL solution with your own Qualys license, Rapid7 license, or another vulnerability assessment solution."
upvoted 1 times
...
FabioDiabolik
1 year, 10 months ago
Answer A is correct, Defender for Cloud's integrated Qualys vulnerability scanner for Azure and hybrid machines, https://learn.microsoft.com/en-us/azure/defender-for-cloud/deploy-vulnerability-assessment-vm
upvoted 1 times
...
JohnBentass
1 year, 11 months ago
I will go for B as (IMHO) Qualys is for vulnerability and hotfix management
upvoted 1 times
...
Learner2022
2 years ago
Selected Answer: A
Defender for EndPoint does not have server licenses and those VMs are servers. So won’t be B.
upvoted 4 times
Gurulee
1 year, 8 months ago
Excellent point
upvoted 1 times
...
...
Charl
2 years ago
Selected Answer: B
As per answer, issue is they are NOT onboarded to Defender for Cloud
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...