Free SC-900 Microsoft Defender for Cloud Questions and Answers — Questions and Answers
Question 1: What is the primary function of Cloud Security Posture Management (CSPM) within Microsoft Defender for Cloud?
- To provide real-time threat protection for virtual machines and containers.
- To identify and remediate security misconfigurations across cloud resources. (Correct answer)
- To manage user access and permissions to cloud services.
- To automatically encrypt all data stored in the cloud.
Correct answer: To identify and remediate security misconfigurations across cloud resources.
CSPM is designed to identify and remediate security misconfigurations and vulnerabilities in cloud environments. It provides visibility into the security state of resources and offers recommendations to improve the overall security posture, which is reflected in the secure score.
Question 2: Which feature of Microsoft Defender for Cloud provides threat detection and protection for services like Azure App Service, Azure SQL, and Azure Storage?
- Cloud Security Posture Management (CSPM)
- Secure Score
- Cloud Workload Protection (CWP) (Correct answer)
- Regulatory Compliance Dashboard
Correct answer: Cloud Workload Protection (CWP)
Cloud Workload Protection (CWP) extends protection to specific cloud workloads. It provides advanced threat detection and protection capabilities tailored to different types of cloud services, beyond just virtual machines.
Question 3: An administrator needs to grant a developer temporary access to a specific port on an Azure virtual machine. Which Microsoft Defender for Cloud feature should be used to achieve this securely?
- Adaptive Application Controls
- Just-in-time (JIT) VM access (Correct answer)
- Azure Policy
- Network security group (NSG) rules
Correct answer: Just-in-time (JIT) VM access
Just-in-time (JIT) VM access locks down inbound traffic to your Azure VMs, reducing exposure to attacks while providing easy access to connect to VMs when needed. When a user requests access, Defender for Cloud checks permissions and, if approved, configures the Network Security Groups (NSGs) to allow inbound traffic to the requested ports for a limited time.
Question 4: Your organization needs to demonstrate compliance with the PCI DSS standard for your Azure environment. Which component of Microsoft Defender for Cloud provides a centralized view of your compliance status against this standard?
- Secure Score
- Cloud Workload Protection (CWP)
- Azure Monitor
- Regulatory Compliance Dashboard (Correct answer)
Correct answer: Regulatory Compliance Dashboard
The regulatory compliance dashboard in Microsoft Defender for Cloud provides insights into your compliance posture against a wide range of standards and regulations, such as ISO 27001, SOC TSP, and PCI DSS. It maps security recommendations to specific compliance controls.
Question 5: What is the purpose of the secure score in Microsoft Defender for Cloud?
- To measure and track the security posture of your cloud environment. (Correct answer)
- To calculate the monthly cost of your Azure security services.
- To assign a risk level to individual users based on their sign-in activity.
- To count the number of active threats detected in the last 24 hours.
Correct answer: To measure and track the security posture of your cloud environment.
The secure score is a numerical representation of your security posture. It is calculated based on security recommendations, and implementing these recommendations improves the score, helping you to track and prioritize security hardening efforts.
Question 6: Microsoft Defender for Cloud can protect resources in which of the following environments?
- Only Azure
- Only Azure and on-premises servers
- Azure, AWS, Google Cloud, and on-premises (Correct answer)
- Only Microsoft 365 services
Correct answer: Azure, AWS, Google Cloud, and on-premises
Microsoft Defender for Cloud is a multi-cloud and hybrid-cloud solution. It can protect not only Azure resources but also resources running in other cloud providers like AWS and Google Cloud, as well as on-premises servers, by using Azure Arc.
What is the primary function of Cloud Security Posture Management (CSPM) within Microsoft Defender for Cloud?