exam questions

Exam AZ-500 All Questions

View all questions & answers for the AZ-500 exam

Exam AZ-500 topic 3 question 28 discussion

Actual exam question from Microsoft's AZ-500
Question #: 28
Topic #: 3
[All AZ-500 Questions]

You have an Azure virtual machine named VM1.
From Microsoft Defender for Cloud, you get the following high-severity recommendation: `Install endpoint protection solutions on virtual machine`.
You need to resolve the issue causing the high-severity recommendation.
What should you do?

  • A. Add the Microsoft Antimalware extension to VM1.
  • B. Install Microsoft System Center Security Management Pack for Endpoint Protection on VM1.
  • C. Add the Network Watcher Agent for Windows extension to VM1.
  • D. Onboard VM1 to Microsoft Defender for Endpoint.
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Anarchira
Highly Voted 2 years, 2 months ago
Selected Answer: D
D: Onboard VM1 to Microsoft Defender for Endpoint. Microsoft Defender for Endpoint provides advanced threat protection for Windows VMs in Azure, and by onboarding VM1, you can ensure that it is protected against malware and other threats. This will also help you to comply with security policies and regulations. Option A (Add the Microsoft Antimalware extension to VM1) is incorrect because this option only adds basic antivirus protection to VM1 and may not provide the level of protection required to comply with security policies and regulations. Option B (Install Microsoft System Center Security Management Pack for Endpoint Protection on VM1) is also incorrect because this option is designed for on-premises System Center environments and may not be applicable to Azure VMs. Option C (Add the Network Watcher Agent for Windows extension to VM1) is also incorrect because this option is used for network monitoring and troubleshooting and does not provide endpoint protection.
upvoted 20 times
...
yassou_123
Highly Voted 2 years, 6 months ago
Selected Answer: D
D should be the answer
upvoted 7 times
...
mmmyo
Most Recent 1 month, 1 week ago
Selected Answer: D
EDR > Basic Antivirus protection
upvoted 1 times
...
cassucena
6 months, 3 weeks ago
Selected Answer: A
Antimalware
upvoted 1 times
...
pentium75
10 months, 3 weeks ago
Selected Answer: D
Though both A and D would resolve the alert, MS documentation mentions only Defender, System Center Endpoint Protection, TrendMicro, McAfee and Sophos in relation to it.
upvoted 1 times
pentium75
10 months, 3 weeks ago
https://learn.microsoft.com/en-us/azure/defender-for-cloud/endpoint-protection-recommendations-technical
upvoted 1 times
...
...
JaridB
1 year, 1 month ago
Selected Answer: D
To resolve the high-severity recommendation "Install endpoint protection solutions on virtual machine" in Microsoft Defender for Cloud for your Azure virtual machine named VM1, the appropriate action is to onboard VM1 to Microsoft Defender for Endpoint. This solution aligns with Microsoft's guidance on ensuring that virtual machines have endpoint protection, particularly to address high-severity alerts related to missing endpoint protection solutions​​.
upvoted 1 times
...
mrt007
1 year, 2 months ago
The correct answer is A. Add the Microsoft Antimalware extension to VM1. Microsoft Defender for Cloud recommends installing endpoint protection solutions on your virtual machine. The Microsoft Antimalware extension is a real-time protection capability that helps identify and remove viruses, spyware, and other malicious software. By adding this extension to VM1, you can help protect it from threats and thus resolve the high-severity recommendation.
upvoted 2 times
xRiot007
10 months, 1 week ago
This is old. Nowadays most of the security is under the Microsoft Defender umbrella, so D is a better answer.
upvoted 1 times
...
...
Tognan
1 year, 3 months ago
Selected Answer: D
Add the Microsoft Antimalware extension to VM1: This option might seem relevant, but Microsoft Antimalware is a legacy product replaced by Microsoft Defender for Endpoint. Onboarding to Defender for Endpoint offers a more comprehensive and up-to-date security solution. Correct answer is D
upvoted 1 times
...
[Removed]
1 year, 6 months ago
Windows Defender Defender for Cloud recommends Endpoint protection should be installed on your machines when Get-MpComputerStatus runs and the result is AMServiceEnabled: False Defender for Cloud recommends Endpoint protection health issues should be resolved on your machines when Get-MpComputerStatus runs and any of the following occurs: Any of the following properties are false: AMServiceEnabled AntispywareEnabled RealTimeProtectionEnabled BehaviorMonitorEnabled IoavProtectionEnabled OnAccessProtectionEnabled
upvoted 1 times
...
Obama_boy
1 year, 6 months ago
Selected Answer: D
To resolve the high-severity recommendation from Microsoft Defender for Cloud, you should **onboard VM1 to Microsoft Defender for Endpoint**. So, the correct answer is **D**. This will ensure that the virtual machine has the necessary endpoint protection, which is crucial for maintaining the security and integrity of your system. Microsoft Defender for Endpoint is a holistic, cloud-delivered endpoint security solution that includes risk-based vulnerability management and assessment, attack surface reduction, behavioral-based and cloud-powered next-generation protection, endpoint detection and response (EDR), automatic investigation and remediation, managed hunting services, rich APIs, and unified security management. It provides strong defense against a wide range of threats and sophisticated attacks, fulfilling the recommendation's requirement.
upvoted 1 times
...
Obama_boy
1 year, 6 months ago
Selected Answer: D
The correct answer is D. Onboard VM1 to Microsoft Defender for Endpoint. Microsoft Defender for Endpoint is a security platform for intelligent protection, detection, investigation, and response. It can help you to prevent, detect, and respond to advanced cyberthreats on your Azure virtual machines. To use Microsoft Defender for Endpoint, you need to onboard your virtual machines to the service. Option A is incorrect. The Microsoft Antimalware extension is a legacy solution that provides real-time protection against viruses, spyware, and other malicious software. However, it does not integrate with Microsoft Defender for Cloud and does not provide the same level of protection as Microsoft Defender for Endpoint.
upvoted 1 times
...
Saadjanjua
1 year, 7 months ago
Selected Answer: D
D answer
upvoted 1 times
...
flafernan
1 year, 7 months ago
Selected Answer: D
Given the specific high-severity recommendation provided by Microsoft Defender for Cloud, which is "Install endpoint protection solutions on the virtual machine", the answer that best meets these security requirements is: D. Integrate VM1 with Microsoft Defender for Endpoint. This option provides a more comprehensive solution, including advanced protection capabilities, advanced threat detection, incident investigation, and automatic threat response. It's a choice more in line with the advanced security needs indicated by Microsoft Defender for Cloud's high severity recommendation.
upvoted 1 times
...
Feraso
1 year, 7 months ago
Selected Answer: A
Answer A: It's confusing as from initial look you would go with option D, however, I have tested in the lab and the recommendation was resolved once I installed the Antimalware extension.
upvoted 2 times
...
tweleve
1 year, 8 months ago
In exam 13 Oct
upvoted 4 times
...
[Removed]
1 year, 9 months ago
It A tested in lab
upvoted 3 times
...
ErikPJordan
1 year, 9 months ago
Selected Answer: D
Microsoft Antimalware is not the same as end point protection
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...