exam questions

Exam SC-200 All Questions

View all questions & answers for the SC-200 exam

Exam SC-200 topic 2 question 33 discussion

Actual exam question from Microsoft's SC-200
Question #: 33
Topic #: 2
[All SC-200 Questions]

You have an Azure subscription that has Microsoft Defender for Cloud enabled.

You have a virtual machine named Server1 that runs Windows Server 2022 and is hosted in Amazon Web Services (AWS).

You need to collect logs and resolve vulnerabilities for Server1 by using Defender for Cloud.

What should you install first on Server1?

  • A. the Microsoft Monitoring Agent
  • B. the Azure Monitor agent
  • C. the Azure Arc agent
  • D. the Azure Pipelines agent
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
teouba
Highly Voted 2 years, 1 month ago
Typical Microsoft Question.. In order to collect logs and connect to Defender for Cloud you need Azure monitor Agent, but first you also need to connect the machine to Azure so you have to install Azure Arc Agent which is actually called Azure Connected Machine Agent. So answering this question is impossible because the answers provided are as stupid as the question
upvoted 34 times
...
appieh4ck
Highly Voted 2 years, 4 months ago
Selected Answer: C
Azure Arc for servers installed on your EC2 instances https://learn.microsoft.com/en-us/azure/defender-for-cloud/quickstart-onboard-aws?pivots=env-settings
upvoted 18 times
nhmh90
2 years, 4 months ago
Other extensions should be enabled on the Arc-connected machines: -Microsoft Defender for Endpoint -VA solution (TVM/Qualys) -Log Analytics (LA) agent on Arc machines or Azure Monitor agent (AMA) Make sure the selected LA workspace has security solution installed. The LA agent and AMA are currently configured in the subscription level. All of your AWS accounts and GCP projects under the same subscription will inherit the subscription settings for the LA agent and AMA.
upvoted 1 times
...
uday1985
1 year, 11 months ago
Where the agent is required to be installed?? on the windows ? or on the EC2 instance?
upvoted 1 times
...
...
xRiot007
Most Recent 4 months, 2 weeks ago
Selected Answer: C
Non-Azure workloads require Arc before any monitoring is added, just like on-prem
upvoted 1 times
...
Sekpluz
11 months, 3 weeks ago
Selected Answer: C
First C and then B
upvoted 1 times
...
ecasjo
1 year, 1 month ago
I can't find anything called as "Azure Arc Agent" in the documentation. If this is the Azure Connected Machine agent why don't just call it like that?
upvoted 2 times
...
DChilds
1 year, 1 month ago
As of April 2024, the answer to this question is always the Microsoft Monitoring Agent, previously known as the Log Analytics Agent. The Microsoft Practice exams also highlight the agent even when Azure Arc is part of the choices.
upvoted 2 times
...
Murtuza
1 year, 5 months ago
To answer these type of ambiguous question its important to pay attention to " what must be installed first " typically in all cases it will be the ARC AGENT as your answer dont over think this
upvoted 4 times
...
chepeerick
1 year, 7 months ago
Correct
upvoted 1 times
...
donathon
1 year, 9 months ago
ARC is a pre-requisite and enable auto-provisioning.
upvoted 1 times
...
xping85
1 year, 9 months ago
The question says by using Defender for Cloud -> so Azure Monitor Agent is not the correct Answer. C is the correct answer
upvoted 1 times
...
XLR8T2
1 year, 10 months ago
La respuesta correc es la C: C. the Azure Arc agent Most Voted Ya que la pregunta hace mención que tambien se requiere resolver vulnerabilidades, al desplegar conectarte con la instancia de EC2 solo se instala AMA, pero para las vulnerabilidades necesitas Microsoft Defender for Server que contiene Microsoft Defender for Endpoint (VM) y esa extensión se instala con Azure Arc.
upvoted 1 times
...
billo79152718
2 years ago
Selected Answer: C
C. The Azure Arc Agent
upvoted 1 times
...
[Removed]
2 years, 3 months ago
Selected Answer: A
Option B (the Azure Monitor agent) is incorrect, as it is used for monitoring and collecting performance data, not security-related logs or vulnerability assessments. Option C (the Azure Arc agent) is also incorrect, as it is used for managing servers and other resources across different environments, but not specifically for collecting security-related logs or vulnerability assessments. Option D (the Azure Pipelines agent) is also incorrect, as it is used for building and deploying applications, not for security-related tasks. To collect logs and resolve vulnerabilities for Server1 using Defender for Cloud, you should install the Microsoft Monitoring Agent (MMA) on Server1 first
upvoted 3 times
Holii
2 years, 1 month ago
AMA agent is the replacement for the Legacy MMA agent...and can also be used for security-related logs (Syslog/CEF). This is simply a syntax issue between whether Azure Arc is preconfigured or not. Since MMA and AMA are options here, I assume it's C.
upvoted 3 times
...
...
Rockf0rd
2 years, 3 months ago
Selected Answer: C
In the following article, it is clearly indicated that installing Azure Arc is a prerequisite which is the first thing to do https://learn.microsoft.com/en-us/azure/defender-for-cloud/quickstart-onboard-aws?pivots=env-settings
upvoted 4 times
...
Lone__Wolf
2 years, 3 months ago
Selected Answer: C
I will go with C as B doesn't state the correct agent name 'Azure Connected Machine agent'. So 'Azure Arc Agent' makes more sense. Further 'Azure Connected Machine agent' and 'Microsoft Monitoring Agent' is not same.
upvoted 6 times
...
Raminjan
2 years, 3 months ago
This is from MS documentation - Non-Azure: To install the agent on physical servers and virtual machines hosted outside of Azure (that is, on-premises) or in other clouds, you must install the Azure Arc Connected Machine agent first, at no added cost.
upvoted 1 times
...
Subhakaran
2 years, 4 months ago
Selected Answer: B
To connect hybrid machines to Azure, you install the Azure Connected Machine agent on each machine. This agent does not replace the Azure Log Analytics agent / Azure Monitor Agent. The Log Analytics agent or Azure Monitor Agent for Windows and Linux is required in order to: Proactively monitor the OS and workloads running on the machine Manage it using Automation runbooks or solutions like Update Management Use other Azure services like Microsoft Defender for Cloud
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...