Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Microsoft SC-100 Exam - Topic 4 Question 40 Discussion

You have an Azure subscription that has Microsoft Defender for Cloud enabled.You need to enforce ISO 27001:2013 standards for new resources deployed to the subscription. The solution must ensure that noncompliant resources are automatically detected.What should you use?
D) Azure Policy
A) Azure Blueprints
B) the regulatory compliance dashboard in Defender for Cloud
C) Azure role-based access control (Azure RBAC)

Microsoft SC-100 Exam - Topic 4 Question 40 Discussion

Actual exam question for Microsoft's SC-100 exam
Question #: 40
Topic #: 4
[All SC-100 Questions]

You have an Azure subscription that has Microsoft Defender for Cloud enabled.

You need to enforce ISO 27001:2013 standards for new resources deployed to the subscription. The solution must ensure that noncompliant resources are automatically detected.

What should you use?

Show Suggested Answer Hide Answer
Suggested Answer: D

Contribute your Thoughts:

0/2000 characters
Amie
10 months ago
Azure RBAC? That’s more about permissions, not compliance.
upvoted 0 times
...
Goldie
10 months ago
I disagree, the regulatory compliance dashboard is more for monitoring than enforcement.
upvoted 0 times
...
Lorriane
10 months ago
Wait, can Azure Blueprints do that too? I'm not sure.
upvoted 0 times
...
Rasheeda
10 months ago
Definitely agree, Azure Policy can enforce standards automatically.
upvoted 0 times
...
Marvel
10 months ago
I think Azure Policy is the way to go for compliance.
upvoted 0 times
...
Ardella
11 months ago
Azure RBAC seems more focused on permissions rather than compliance, so I don't think that's the answer.
upvoted 0 times
...
Sharmaine
11 months ago
I feel like the regulatory compliance dashboard in Defender for Cloud is more about monitoring than enforcing standards.
upvoted 0 times
...
Denny
11 months ago
I'm not entirely sure, but I remember something about Azure Blueprints being used for compliance frameworks. Could that be relevant?
upvoted 0 times
...
Wendell
11 months ago
I think Azure Policy might be the right choice here since it can enforce compliance and automatically detect noncompliant resources.
upvoted 0 times
...
Kris
11 months ago
I'm pretty confident that Azure Blueprints is the way to go. It allows you to define a compliant environment and then deploy it consistently, which is exactly what this question is asking for. The other options don't seem as well-suited for this specific task.
upvoted 0 times
...
Alise
11 months ago
Azure RBAC is more about managing access and permissions, so I don't think that's the right solution for enforcing compliance standards. I'm leaning towards either Azure Blueprints or Azure Policy as the best options here.
upvoted 0 times
...
Marsha
11 months ago
Azure Policy seems like a good choice for this scenario. You can create custom policy definitions to ensure new resources comply with the ISO 27001:2013 standards, and then assign those policies to your subscription.
upvoted 0 times
...
Chuck
11 months ago
I'm a bit confused on this one. I know Defender for Cloud has some compliance features, but I'm not sure if the regulatory compliance dashboard specifically enforces ISO 27001:2013. I'll need to look into that option a bit more.
upvoted 0 times
...
Teddy
11 months ago
I think Azure Blueprints would be the best option here. It allows you to define a set of Azure resources that implement the ISO 27001:2013 standards, and then deploy those resources consistently across your subscription.
upvoted 0 times
...
Vallie
11 months ago
Hmm, this looks like a tricky one. I'll need to think through the details of OpenID Connect and how it relates to the Okta integration network.
upvoted 0 times
...
Kristal
11 months ago
I'm a bit confused on the different VPN technologies and their specific features. I'll have to think this through carefully.
upvoted 0 times
...
Yesenia
12 months ago
Hmm, this seems like a tricky one. I'll need to think through the permissions and roles carefully to figure out the right approach.
upvoted 0 times
...
Jennifer
12 months ago
I'm pretty sure portsentry and scanlogd can detect stealth port scans, but I'm not sure about the other options. I'll need to review those a bit more closely.
upvoted 0 times
...
Lyda
2 years ago
True, but Blueprints don't enforce ongoing compliance like Azure Policy does.
upvoted 0 times
...
Allene
2 years ago
Isn't Azure Blueprints also a candidate? It sets up environment standards.
upvoted 0 times
...
Keva
2 years ago
Agreed, Azure Policy can detect noncompliant resources easily.
upvoted 0 times
...
Charlena
2 years ago
I think the answer has to be Azure Policy. It checks compliance automatically.
upvoted 0 times
...
Allene
2 years ago
Yeah, it's about Azure subscriptions and Microsoft Defender for Cloud.
upvoted 0 times
...
Lyda
2 years ago
The exam question seems straightforward. Anyone knows what to use for enforcing ISO 27001:2013?
upvoted 0 times
...

Save Cancel