Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam SC-100 All Questions

View all questions & answers for the SC-100 exam

Exam SC-100 topic 7 question 1 discussion

Actual exam question from Microsoft's SC-100
Question #: 1
Topic #: 8
[All SC-100 Questions]

HOTSPOT -
You need to recommend a solution to meet the AWS requirements.
What should you include in the recommendation? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Hot Area:

Show Suggested Answer Hide Answer
Suggested Answer:
Box 1: Microsoft Defender for servers
Scenario: Notify security administrators at Fabrikam if any AWS EC2 instances are noncompliant with secure score recommendations.
Defender for Servers is one of the enhanced security features available in Microsoft Defender for Cloud. You can use it to add threat detection and advanced defenses to your Windows and Linux machines that exist in hybrid and multicloud environments.
Available Defender for Server plans
Defender for Servers offers you a choice between two paid plans.
Both include automatic onboarding for resources in Azure, AWS, GCP.

Plan 1 includes the following benefits:
Automatic onboarding for resources in Azure, AWS, GCP
Microsoft threat and vulnerability management
Flexibility to use Microsoft Defender for Cloud or Microsoft 365 Defender portal
A Microsoft Defender for Endpoint subscription that includes access to alerts, software inventory, Vulnerability Assessment and an automatic integration with
Microsoft Defender for Cloud.
Plan 2 includes everything in Plan 1 plus some additional benefits.

Box 2: Microsoft Sentinel -

Scenario: AWS Requirements -
Fabrikam identifies the following security requirements for the data hosted in ContosoAWS1:
Ensure that the security administrators can query AWS service logs directly from the Azure environment.
Use the Amazon Web Services (AWS) connectors to pull AWS service logs into Microsoft Sentinel.
Note: These connectors work by granting Microsoft Sentinel access to your AWS resource logs. Setting up the connector establishes a trust relationship between
Amazon Web Services and Microsoft Sentinel. This is accomplished on AWS by creating a role that gives permission to Microsoft Sentinel to access your AWS logs.
Reference:
https://docs.microsoft.com/en-us/azure/defender-for-cloud/defender-for-servers-introduction https://docs.microsoft.com/en-us/azure/defender-for-cloud/recommendations-reference-aws https://docs.microsoft.com/en-us/azure/sentinel/connect-aws

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
d3an
Highly Voted 2 years, 1 month ago
The requirement is to identify EC2 instances which are noncompliant with secure score recommendations. Secure Score = Defender for Cloud.
upvoted 48 times
davidkoc
2 years, 1 month ago
I agree with d3an. https://learn.microsoft.com/en-us/azure/architecture/guide/aws/aws-azure-security-solutions
upvoted 8 times
blopfr
2 years ago
an to complete https://learn.microsoft.com/en-us/azure/defender-for-cloud/quickstart-onboard-aws?pivots=env-settings native AWS connector, defender for server will be for advanced threat protection
upvoted 2 times
...
...
...
SelloLed
Highly Voted 2 years ago
Defender for Cloud Microsoft Sentinel https://learn.microsoft.com/en-us/azure/sentinel/connect-aws?tabs=s3
upvoted 19 times
...
Ramye
Most Recent 10 months ago
This line "Defender for Servers is one of the enhanced security features available in Microsoft Defender for Cloud." is making me think twice to choose the correct answer between Defender for Cloud and Defeder for servers. Any clarifications?
upvoted 3 times
...
Murtuza
10 months, 2 weeks ago
Microsoft Defender for Cloud provides "Cloud Security Posture Management" (CSPM), providing a security analysis of all the resources in your cloud estates
upvoted 3 times
...
slobav
1 year, 1 month ago
Box1: Defender for Cloud Box2: Microsoft Sentinel https://www.youtube.com/watch?v=r-P-2lGzPFQ&list=PLQ2ktTy9rklhzzkSEZvDZT4QSIVUQZD-Y&index=9 Question 108
upvoted 1 times
...
ServerBrain
1 year, 2 months ago
secure score recommendations are in Defender for Cloud. I'm going with Defender for Cloud and Sentinel.
upvoted 2 times
ServerBrain
1 year, 2 months ago
and the case study says: Defender for Cloud is configured to assess all the resources in Sub1 for compliance to the HIPAA HITRUST standard. Currently, resources that are noncompliant with the HIPAA HITRUST standard are remediated manually. This applies to AWS instances and machines in the Sub. Therefore is Defender for Cloud to give you secure score recommendations.
upvoted 1 times
...
...
Cock
1 year, 5 months ago
In the exam 29.05.2023
upvoted 2 times
...
zellck
1 year, 5 months ago
1. Defender for Cloud 2. Microsoft Sentinel https://learn.microsoft.com/en-us/azure/defender-for-cloud/quickstart-onboard-aws?pivots=env-settings With cloud workloads commonly spanning multiple cloud platforms, cloud security services must do the same. Microsoft Defender for Cloud protects workloads in Azure, Amazon Web Services (AWS), Google Cloud Platform (GCP), GitHub and Azure DevOps (ADO). https://learn.microsoft.com/en-us/azure/sentinel/connect-aws?tabs=s3 Use the Amazon Web Services (AWS) connectors to pull AWS service logs into Microsoft Sentinel. These connectors work by granting Microsoft Sentinel access to your AWS resource logs. Setting up the connector establishes a trust relationship between Amazon Web Services and Microsoft Sentinel. This is accomplished on AWS by creating a role that gives permission to Microsoft Sentinel to access your AWS logs.
upvoted 4 times
zellck
1 year, 5 months ago
Gotten this in May 2023 exam.
upvoted 1 times
...
...
Gurulee
1 year, 8 months ago
For requirement: “ Notify security administrators at Fabrikam if any AWS EC2 instances are noncompliant with secure score recommendations” >> Even though Defender for servers is a prerequisite to get secure score and recommendations in Defender for Cloud, I lean towards where we get recommendations: “ Native cloud connector (recommended) - Provides an agentless connection to your AWS account that you can extend with Defender for Cloud's Defender plans to secure your AWS resources: Cloud Security Posture Management (CSPM) assesses your AWS resources according to AWS-specific security recommendations and reflects your security posture in your secure score. ”
upvoted 1 times
Gurulee
1 year, 8 months ago
Defender for Cloud is dependent on Defender for Servers for Secure score and recommendations
upvoted 2 times
...
...
AzureJobsTillRetire
1 year, 8 months ago
For box1, it is Microsoft Defender for servers. Microsoft Defender for servers is part of Microsoft Defender for Cloud. This answer is more specific and should be chosen over the general Microsoft Defender for Cloud. If the option is not available, we can choose Defender for Cloud as well.
upvoted 4 times
...
SofiaLorean
1 year, 9 months ago
Box 1 is Microsoft Defender for Cloud https://techcommunity.microsoft.com/t5/itops-talk-blog/step-by-step-how-to-connect-aws-machines-to-microsoft-defender/ba-p/3251096
upvoted 3 times
...
nieprotetkniteeetr
1 year, 10 months ago
Defender for cloud for EC2 https://learn.microsoft.com/en-us/azure/defender-for-cloud/recommendations-reference-aws
upvoted 1 times
...
piwiwiwiwiwiw
1 year, 11 months ago
You can't view a secure score in Defender for servers. You configure defender for servers so that you can receive logs for AWS.You review a secure score in defender for cloud.
upvoted 3 times
AzureJobsTillRetire
1 year, 8 months ago
That is correct, you first need Defender for servers and then you can view scores in Defender for servers. The question does not ask where you should view scores, and it asks what you should include in the recommendation. We should include both Defender for servers and Defender for cloud in the recommendation. But since Defender for servers is part of Defender for cloud, and it is more specific, I would vote for Defender for servers.
upvoted 2 times
...
...
Xyz_40
2 years ago
MDC and Sentinel
upvoted 2 times
...
drod
2 years ago
For AWS EC2 its Defender for cloud https://learn.microsoft.com/en-us/azure/defender-for-cloud/quickstart-onboard-aws?pivots=env-settings
upvoted 4 times
...
zts
2 years, 2 months ago
Answer is correct.
upvoted 1 times
JakeCallham
2 years ago
No its not itsmicrosoft defender for cloud. not microsoft defender for servers
upvoted 2 times
JakeCallham
2 years ago
sorry, i take it back, youre right
upvoted 1 times
ginseng
1 year, 9 months ago
Defender for Cloud and Sentinel.
upvoted 1 times
...
...
...
...
TheMCT
2 years, 2 months ago
https://docs.microsoft.com/en-us/azure/sentinel/connect-aws?tabs=s3 Use the Amazon Web Services (AWS) connectors to pull AWS service logs into Microsoft Sentinel. These connectors work by granting Microsoft Sentinel access to your AWS resource logs. Setting up the connector establishes a trust relationship between Amazon Web Services and Microsoft Sentinel. This is accomplished on AWS by creating a role that gives permission to Microsoft Sentinel to access your AWS logs.
upvoted 5 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...