You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
- content: "Microsoft Defender for Cloud covers three pillars of cloud security. Which pillar provides visibility to help you understand your current security situation and provides hardening recommendations?"
explanation: "Correct. The CSPM pillar of Microsoft Defender for Cloud provides visibility and to help you understand your current security situation and provides hardening recommendations."
23
-
- content: "Cloud workload protection (CWP)"
24
-
isCorrect: false
25
-
explanation: "Incorrect. Although CWP is an important pillar of cloud security for Microsoft Defender for Cloud, it's focused on detecting and resolving threats for resources, workload, and services. It works with the CSPM pillar."
26
-
- content: "Microsoft Cloud security benchmark"
27
-
isCorrect: false
28
-
explanation: "Incorrect. The Microsoft cloud security benchmark (MCSB) provides prescriptive best practices and recommendations to help improve the security of workloads, data, and services on Azure and your multicloud environment."
29
-
- content: "An organization wants to add vulnerability scanning for its Azure resources to view, investigate, and remediate the findings directly within Microsoft Defender for Cloud. What functionality of Microsoft Defender for Cloud would they need to consider?"
30
-
choices:
31
-
- content: "Secure score and recommendations functionality that are part of the CSPM pillar of Microsoft Defender for Cloud."
32
-
isCorrect: false
33
-
explanation: "Incorrect. Secure score and recommendations functionality doesn't include vulnerability scanning."
34
-
- content: "The enhanced functionality that is provided through the Microsoft Defender plans and is part of the CWP pillar of Microsoft Defender for Cloud."
35
-
isCorrect: true
36
-
explanation: "Correct. Microsoft Defender plans provide enhanced security features for your workloads, including vulnerability scanning."
37
-
- content: "Security Benchmarks"
38
-
isCorrect: false
39
-
explanation: "Incorrect. The Microsoft cloud security benchmark (MCSB) provides prescriptive best practices and recommendations to help improve the security of workloads, data, and services on Azure, it doesn't provide vulnerability scanning."
40
-
- content: "Which framework does Microsoft Defender for Cloud apply as a default initiative for security and compliance and provides best practices and recommendations to help improve the security of workloads, data, and services on Azure and your multicloud environment?"
41
-
choices:
42
-
- content: "Microsoft Cloud security benchmark"
43
-
isCorrect: true
44
-
explanation: "Correct. The Microsoft cloud security benchmark that is automatically assigned to every subscription in Microsoft Defender for Cloud."
45
-
- content: "The Center for Internet Security (CIS) framework"
46
-
isCorrect: false
47
-
explanation: "Incorrect. Although the MCSB builds on the controls from the Center for Internet Security (CIS) and the National Institute of Standards and Technology (NIST) with a focus on cloud-centric security, it's the MCSB that is automatically applied as a default initiative."
48
-
- content: "The National Institute of Standards and Technology (NIST) framework"
49
-
isCorrect: false
50
-
explanation: "Incorrect. Although the MCSB builds on the controls from the Center for Internet Security (CIS) and the National Institute of Standards and Technology (NIST) with a focus on cloud-centric security, it's the MCSB that is automatically applied as a default initiative."
51
-
- content: "Which capability allows you to manage your connected DevOps environments and provides your security teams with visibility to discovered issues within those environments?"
52
-
choices:
53
-
- content: "The Defender for DevOps console"
54
-
isCorrect: true
55
-
explanation: "Correct. The Defender for DevOps console allows you to manage your connected DevOps environments and provides your security teams with a high level overview of discovered issues that may exist within them."
56
-
- content: "Secure score"
57
-
isCorrect: false
58
-
explanation: "Incorrect. Although secure score in Microsoft Defender for Cloud provides single score so that you can tell, at a glance, your current security situation, it does not provide specific visibility to your DevOps environments. ."
59
-
- content: "The Microsoft cloud security benchmark (MCSB)"
60
-
isCorrect: false
61
-
explanation: "Incorrect. The Microsoft cloud security benchmark (MCSB) provides prescriptive best practices and recommendations to help improve the security of workloads, data, and services on Azure and your multicloud environment."
- content: "Microsoft Defender for Cloud covers three pillars of cloud security. Which pillar provides visibility to help you understand your current security situation and provides hardening recommendations?"
explanation: "Correct. The CSPM pillar of Microsoft Defender for Cloud provides visibility and to help you understand your current security situation and provides hardening recommendations."
23
+
- content: "Cloud workload protection (CWP)"
24
+
isCorrect: false
25
+
explanation: "Incorrect. Although CWP is an important pillar of cloud security for Microsoft Defender for Cloud, it's focused on detecting and resolving threats for resources, workload, and services. It works with the CSPM pillar."
26
+
- content: "Microsoft Cloud security benchmark"
27
+
isCorrect: false
28
+
explanation: "Incorrect. The Microsoft cloud security benchmark (MCSB) provides prescriptive best practices and recommendations to help improve the security of workloads, data, and services on Azure and your multicloud environment."
29
+
- content: "An organization wants to add vulnerability scanning for its Azure resources to view, investigate, and remediate the findings directly within Microsoft Defender for Cloud. What functionality of Microsoft Defender for Cloud would they need to consider?"
30
+
choices:
31
+
- content: "Secure score and recommendations functionality that are part of the CSPM pillar of Microsoft Defender for Cloud."
32
+
isCorrect: false
33
+
explanation: "Incorrect. Secure score and recommendations functionality doesn't include vulnerability scanning."
34
+
- content: "The enhanced functionality that is provided through the Microsoft Defender plans and is part of the cloud workload protection platform (CWPP) pillar of Microsoft Defender for Cloud."
35
+
isCorrect: true
36
+
explanation: "Correct. Microsoft Defender plans provide enhanced security features for your workloads, including vulnerability scanning."
37
+
- content: "Security Benchmarks"
38
+
isCorrect: false
39
+
explanation: "Incorrect. The Microsoft cloud security benchmark (MCSB) provides prescriptive best practices and recommendations to help improve the security of workloads, data, and services on Azure, it doesn't provide vulnerability scanning."
40
+
- content: "Which framework does Microsoft Defender for Cloud apply as a default initiative for security and compliance and provides best practices and recommendations to help improve the security of workloads, data, and services on Azure and your multicloud environment?"
41
+
choices:
42
+
- content: "Microsoft Cloud security benchmark"
43
+
isCorrect: true
44
+
explanation: "Correct. The Microsoft cloud security benchmark that is automatically assigned to every subscription in Microsoft Defender for Cloud."
45
+
- content: "The Center for Internet Security (CIS) framework"
46
+
isCorrect: false
47
+
explanation: "Incorrect. Although the MCSB builds on the controls from the Center for Internet Security (CIS) and the National Institute of Standards and Technology (NIST) with a focus on cloud-centric security, it's the MCSB that is automatically applied as a default initiative."
48
+
- content: "The National Institute of Standards and Technology (NIST) framework"
49
+
isCorrect: false
50
+
explanation: "Incorrect. Although the MCSB builds on the controls from the Center for Internet Security (CIS) and the National Institute of Standards and Technology (NIST) with a focus on cloud-centric security, it's the MCSB that is automatically applied as a default initiative."
51
+
- content: "Which capability allows you to manage your connected DevOps environments and provides your security teams with visibility to discovered issues within those environments?"
52
+
choices:
53
+
- content: "The Defender for DevOps console"
54
+
isCorrect: true
55
+
explanation: "Correct. The Defender for DevOps console allows you to manage your connected DevOps environments and provides your security teams with a high level overview of discovered issues that may exist within them."
56
+
- content: "Secure score"
57
+
isCorrect: false
58
+
explanation: "Incorrect. Although secure score in Microsoft Defender for Cloud provides single score so that you can tell, at a glance, your current security situation, it doesn't provide specific visibility to your DevOps environments."
59
+
- content: "The Microsoft cloud security benchmark (MCSB)"
60
+
isCorrect: false
61
+
explanation: "Incorrect. The Microsoft cloud security benchmark (MCSB) provides prescriptive best practices and recommendations to help improve the security of workloads, data, and services on Azure and your multicloud environment."
62
+
- content: "An organization wants to understand what generative AI applications and models are running in their cloud environment and whether they're securely configured. Which capability in Microsoft Defender for Cloud addresses this need?"
explanation: "Correct. AI SPM maintains an AI Bill of Materials (AI BOM) that catalogs your organization's generative AI workloads and assesses their security posture, surfacing recommendations and attack path analysis specific to AI."
67
+
- content: "AI threat protection"
68
+
isCorrect: false
69
+
explanation: "Incorrect. AI threat protection detects active threats targeting generative AI workloads in real time, such as prompt injection attacks and data leakage. Discovering and assessing the security posture of AI workloads is the role of AI security posture management (AI SPM)."
70
+
- content: "Cloud security explorer"
71
+
isCorrect: false
72
+
explanation: "Incorrect. The cloud security explorer lets security teams run graph-based queries to investigate security risks across cloud resources. It is not specifically focused on discovering and assessing the security posture of AI workloads."
0 commit comments