QuestionQ275

Design security operations, identity, and compliance capabilities

You have an Azure subscription with Microsoft Defender for Cloud enabled.

You are reviewing the Azure Security Benchmark V3 report shown in the following exhibit.

Question Image

You need to confirm whether Microsoft Defender for Servers is installed on every virtual machine running Windows.

Which compliance control should you evaluate?

  • A Asset Management
  • B Posture and Vulnerability Management
  • C Data Protection
  • D Endpoint Security
  • E Incident Response
Explanation

Endpoint Security covers endpoint detection and response and anti-malware controls for Azure endpoints. Microsoft Defender for Servers, integrated with Microsoft Defender for Endpoint, provides EDR capabilities for virtual machines; therefore, its deployment is evaluated under the Endpoint Security control domain.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!