QuestionQ242

Design security solutions for infrastructure

You have a Microsoft 365 subscription and an Azure subscription. Microsoft 365 Defender and Microsoft Defender for Cloud are enabled.

The Azure subscription has 50 virtual machines. Each virtual machine runs different applications on Windows Server 2019.

You need to recommend a solution that ensures only authorized applications can run on the virtual machines. If an unauthorized application tries to run or be installed, it must be automatically blocked until an administrator authorizes it.

Which security control should you recommend?

  • A app registrations in Azure AD
  • B Azure AD Conditional Access App Control policies
  • C app discovery anomaly detection policies in Microsoft Defender for Cloud Apps
  • D adaptive application controls in Defender for Cloud
Explanation

Adaptive application controls in Microsoft Defender for Cloud use machine learning to identify known-safe applications and generate application allowlists for virtual machines. The allowlist can mandate that only approved applications run, preventing unapproved software from executing until it is authorized.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!