QuestionQ136

Design security operations, identity, and compliance capabilities

You have an Azure subscription with Microsoft Defender for Cloud enabled.

You need to enforce ISO 27001:2013 standards for newly deployed resources in the subscription. The solution must ensure that noncompliant resources are detected automatically.

What should you use?

  • A Azure Blueprints
  • B the regulatory compliance dashboard in Defender for Cloud
  • C Azure Policy
  • D Azure role-based access control (Azure RBAC)
Explanation

Azure Policy enforces governance and regulatory requirements at subscription scope and continuously evaluates resource configurations, identifying resources that do not comply. In Defender for Cloud, regulatory compliance standards are implemented through Azure Policy initiatives; the Regulatory compliance dashboard displays the resulting assessments rather than enforcing the standards itself.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!