You have a Microsoft 365 Enterprise E5 subscription. You use Microsoft Defender for Endpoint. You plan to use Microsoft 365 Attack simulator. What is a prerequisite for running Attack simulator?
A.
Enable multi-factor authentication (MFA).
B.
Configure Microsoft Defender for Office 365.
C.
Create a Conditional Access App Control policy for accessing Microsoft 365.
D.
Integrate Microsoft 365 Threat Intelligence and Microsoft Defender for Endpoint.
There are two different MS 365 Attack Simulators. The first one was retired. The new version is called "Defender for Office 365 Attack simulation training". Probably some questions are about the previous version and are not appropriate for the new version. For example, I didn't find the requirements for MFA for the new version.
I think It's D.
"If your organization has Microsoft 365 E5 or Microsoft Defender for Office 365 Plan 2, which includes Threat Investigation and Response capabilities, you can use Attack simulation training in the Microsoft 365 Defender portal"
See reference link: https://learn.microsoft.com/en-us/microsoft-365/security/office-365-security/attack-simulation-training-get-started?view=o365-worldwide
The correct answer is D. Integrate Microsoft 365 Threat Intelligence and Microsoft Defender for Endpoint.
To run the Microsoft 365 Attack simulator, a prerequisite is to integrate Microsoft 365 Threat Intelligence and Microsoft Defender for Endpoint.
Microsoft 365 Threat Intelligence provides insights into global attack trends and threat intelligence data, while Microsoft Defender for Endpoint offers endpoint protection and threat detection capabilities. By integrating these two services, you can enhance your security posture and leverage the full functionality of the Attack simulator.
The Attack simulator allows you to simulate real-world attack scenarios to assess your organization's security defenses and identify potential vulnerabilities. It helps you evaluate the effectiveness of your security controls, educate users about potential threats, and improve your overall security readiness.
Enabling multi-factor authentication (MFA) (option A) is a recommended security practice but not a prerequisite specifically for running the Attack simulator.
Configuring Microsoft Defender for Office 365 (option B) and creating a Conditional Access App Control policy for accessing Microsoft 365 (option C) are not prerequisites for running the Attack simulator. These are separate configurations related to securing Office 365 applications and implementing access controls.
Therefore, the correct prerequisite for running the Microsoft 365 Attack simulator is option D, integrating Microsoft 365 Threat Intelligence and Microsoft Defender for Endpoint.
Enabling multi-factor authentication (MFA), configuring Microsoft Defender for Office 365, or creating a Conditional Access App Control policy for accessing Microsoft 365 are not prerequisites for running Attack simulator, although they may be important security measures to implement in your environment.
Correct answer is D. Integrate Microsoft 365 Threat Intelligence and Microsoft Defender for Endpoint.
https://learn.microsoft.com/en-us/microsoft-365/security/office-365-security/attack-simulation-training-get-started?view=o365-worldwide#what-do-you-need-to-know-before-you-begin
- MFA is not listed as a requirement as it was before
- You'll use MDO for sure, but what do they mean by "Configuring"?
- No policy or whatsoever is needed
- Attack Simulation training falls under MDO and not MDE, so acquiring MDE licenses is not necessary at all
So guessing "configure" just means utilizing it; the correct answer would be B for the newer version of Attack Simulation...
Very strange question.
It is correct that the admin account doing the simulation needs MFA enabled, but not the users who are targeted by the campaign. But anwer D can also be correct as you dont know which plan the company has. If they have E 5 licenses, then the correct answer is A, but if they have E3 for example, you need to include Threat Investigation and Response capabilities
This section is not available anymore. Please use the main Exam Page.MS-500 Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
zerrowall
Highly Voted 2 years, 3 months agoJoeP1
2 years, 1 month agoDaniel830
Highly Voted 2 years, 7 months agoPhyMac
2 years, 4 months agoTanasi
1 year, 11 months agoMaxx4
Most Recent 1 year, 10 months agoMaxx4
1 year, 10 months agoRomanV
2 years agoTanasi
1 year, 11 months agoGatesBill
2 years agochickenroaster
2 years, 1 month agoamymay101
2 years, 3 months agoshouro88
2 years, 2 months agozerrowall
2 years, 3 months agoBroesweelies
2 years, 6 months agoAcbrownit
2 years, 6 months agoAnonymousse
2 years, 6 months agoErrr
2 years, 6 months agoMinminweng
2 years, 7 months agopete26
2 years, 7 months ago