Microsoft Defender for Cloud Flashcards
7 cards from real SC-900 practice questions. Tap to flip, then mark Knew It or Still Learning — missed cards come back until you master them.
Read the first 7 Microsoft Defender for Cloud flashcards as text
How does Microsoft Defender for Cloud extend protection to AWS environments?
Answer: Through native AWS connectors that extend CSPM and workload protection to AWS resources without requiring Azure Arc
Defender for Cloud includes native AWS connectors that automatically extend CSPM and specific workload protection plans to AWS resources.
What is a security initiative in Microsoft Defender for Cloud?
Answer: A collection of Azure Policy definitions grouped together to achieve a specific security or compliance goal
A security initiative groups multiple Azure Policy definitions together to work toward a common security goal, such as meeting a specific compliance standard.
What does the Attack Path Analysis feature in Microsoft Defender for Cloud do?
Answer: Identifies potential paths attackers could exploit to reach critical assets and prioritizes remediations to block them
Attack Path Analysis uses graph-based algorithms to discover and visualize potential attack paths through your environment so you can prioritize the most impactful fixes.
What is the purpose of File Integrity Monitoring (FIM) in Microsoft Defender for Cloud?
Answer: To track changes to OS files, Windows registry, and application software that may indicate an attack or compromise
FIM monitors critical operating system files, registry settings, and application files for unexpected changes that could signal a breach or ongoing attack.
How does Microsoft Defender for Cloud use Azure Policy?
Answer: It uses Azure Policy to continuously assess resources against security configurations and can enforce remediations automatically
Defender for Cloud leverages Azure Policy definitions and initiatives to continuously assess resources and can automatically enforce or deny non-compliant configurations.
What is the Microsoft Cloud Security Benchmark (MCSB)?
Answer: Microsoft's prescriptive cloud security guidance that maps controls to common compliance frameworks like CIS and NIST
The MCSB is Microsoft's comprehensive cloud security best-practice guidance that maps to common compliance frameworks, serving as the default initiative in Defender for Cloud.
How does Microsoft Defender for Cloud correlate security alerts to reduce analyst fatigue?
Answer: It uses AI to automatically group related individual alerts into security incidents representing attack campaigns
Defender for Cloud applies AI-driven fusion to correlate related alerts into incidents, helping analysts understand the full scope of an attack rather than investigating individual alerts.