New Year Sale 2026! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Microsoft SC-200 Exam - Topic 1 Question 86 Discussion

Actual exam question for Microsoft's SC-200 exam
Question #: 86
Topic #: 1
[All SC-200 Questions]

You have a Microsoft 365 E5 subscription that uses Microsoft Defender XDR and contains a user named User1.

You need to ensure that User1 can manage Microsoft Defender XDR custom detection rules and Endpoint security policies. The solution must follow the principle of least privilege.

Which role should you assign to User1?

Show Suggested Answer Hide Answer
Suggested Answer: C

Contribute your Thoughts:

0/2000 characters
Maynard
3 months ago
Agreed, least privilege means Security Administrator is the way to go!
upvoted 0 times
...
Claribel
3 months ago
Surprised that Cloud Device Administrator is even an option here.
upvoted 0 times
...
Mitsue
3 months ago
Definitely not Desktop Analytics Administrator!
upvoted 0 times
...
Kristel
4 months ago
I think Security Operator could work too, but not sure.
upvoted 0 times
...
Refugia
4 months ago
Security Administrator is the right choice for this.
upvoted 0 times
...
Penney
4 months ago
The principle of least privilege makes me lean towards the Security Operator, but I’m worried it might not have enough access for what User1 needs.
upvoted 0 times
...
Justine
4 months ago
I feel like the Cloud Device Administrator could be relevant, but I'm not confident it gives the right permissions for custom detection rules.
upvoted 0 times
...
Elena
4 months ago
I remember practicing a question about roles, and I think the Security Operator was more about monitoring rather than managing.
upvoted 0 times
...
Carin
5 months ago
I think the Security Administrator role might be the right choice since it covers managing security policies, but I'm not entirely sure.
upvoted 0 times
...
Nadine
5 months ago
I'm a bit confused by the options. Desktop Analytics Administrator and Cloud Device Administrator don't seem relevant to the specific requirements mentioned in the question. I'll need to carefully compare the Security Operator and Security Administrator roles to determine the best fit.
upvoted 0 times
...
Amber
5 months ago
I'm pretty confident that the Security Operator role is the correct answer here. It allows the user to manage Defender XDR and Endpoint security, while following the principle of least privilege.
upvoted 0 times
...
Hester
5 months ago
Okay, let me think this through. The user needs to manage Defender XDR custom detection rules and Endpoint security policies, so I'm guessing the Security Administrator role would be the best fit since it has the necessary permissions.
upvoted 0 times
...
Mila
5 months ago
Hmm, I'm a bit unsure about this one. The question mentions custom detection rules and Endpoint security policies, so I'll need to make sure I understand the specific capabilities required for each role.
upvoted 0 times
...
Xenia
5 months ago
This looks like a straightforward question about assigning the appropriate role to a user for managing Microsoft Defender XDR. I'll need to carefully review the options and think about the principle of least privilege.
upvoted 0 times
...
Aliza
1 year ago
I bet User1 is thrilled to get this new role, as long as it's not the 'Janitor' role. That one's not very glamorous.
upvoted 0 times
Aliza
1 year ago
D) Cloud Device Administrator
upvoted 0 times
...
Yasuko
1 year ago
C) Security Administrator
upvoted 0 times
...
Rana
1 year ago
B) Security Operator
upvoted 0 times
...
Hubert
1 year ago
A) Desktop Analytics Administrator
upvoted 0 times
...
...
Lorean
1 year ago
I agree with Elden. The Security Administrator role would give User1 the necessary permissions to manage Microsoft Defender XDR custom detection rules and Endpoint security policies.
upvoted 0 times
...
Elden
1 year ago
I think User1 should be assigned the Security Administrator role.
upvoted 0 times
...
Nu
1 year ago
Hmm, the Cloud Device Administrator role could work, but it might be overkill. I'd go with the Security Administrator option.
upvoted 0 times
Rolf
1 year ago
Definitely, Security Administrator is the most suitable role for User1 in this scenario.
upvoted 0 times
...
Tamekia
1 year ago
I agree, Security Administrator follows the principle of least privilege.
upvoted 0 times
...
Luisa
1 year ago
Yeah, Security Administrator would give User1 the necessary permissions without going overboard.
upvoted 0 times
...
Marica
1 year ago
I think Security Administrator is the best choice for User1.
upvoted 0 times
...
...
Edna
1 year ago
Haha, the 'Janitor' role. I wonder if that one comes with a mop and bucket?
upvoted 0 times
...
Twanna
1 year ago
The Security Administrator role seems like the obvious choice here. User1 needs to manage custom detection rules and endpoint security policies, and this role provides the necessary permissions.
upvoted 0 times
Yolande
1 year ago
Great, let's go ahead and assign User1 the Security Administrator role then.
upvoted 0 times
...
Katheryn
1 year ago
Yes, I agree. It provides the necessary permissions for managing custom detection rules and endpoint security policies.
upvoted 0 times
...
Julieta
1 year ago
I think the Security Administrator role is the best option for User1.
upvoted 0 times
...
...

Save Cancel