QuestionQ183

Design security solutions for applications and data

For a Microsoft cloud environment, recommend a security architecture that follows the Zero Trust principles in the Microsoft Cybersecurity Reference Architectures (MCRA).

Which security methodologies should be included in the recommendation? Each methodology may be used once, more than once, or not at all.

Drag & Drop
Business continuity
Data classification
Just-in-time (JIT) access
Segmenting access
Assume breach
Verify explicitly
Use least privilege access
Explanation

Microsoft Zero Trust maps data classification to explicit verification because authorization uses all available data signals. It maps JIT access to least privilege because privileges are granted only when needed, and it maps segmenting access to assuming breach because segmentation limits an incident’s blast radius.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!