New Year Sale 2026! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Microsoft SC-200 Exam - Topic 10 Question 33 Discussion

Actual exam question for Microsoft's SC-200 exam
Question #: 33
Topic #: 10
[All SC-200 Questions]

You create an Azure subscription.

You enable Azure Defender for the subscription.

You need to use Azure Defender to protect on-premises computers.

What should you do on the on-premises computers?

Show Suggested Answer Hide Answer
Suggested Answer: A

Security Center collects data from your Azure virtual machines (VMs), virtual machine scale sets, IaaS containers, and non-Azure (including on-premises) machines to monitor for security vulnerabilities and threats.

Data is collected using:

The Log Analytics agent, which reads various security-related configurations and event logs from the machine and copies the data to your workspace for analysis. Examples of such data are: operating system type and version, operating system logs (Windows event logs), running processes, machine name, IP addresses, and logged in user.

Security extensions, such as the Azure Policy Add-on for Kubernetes, which can also provide data to Security Center regarding specialized resource types.


https://docs.microsoft.com/en-us/azure/security-center/security-center-enable-data-collection

Contribute your Thoughts:

0/2000 characters
Johnetta
4 months ago
Wait, are you sure about that? Sounds a bit off.
upvoted 0 times
...
Armanda
4 months ago
Nope, it's definitely the Log Analytics agent!
upvoted 0 times
...
Alecia
4 months ago
I thought it was the Connected Machine agent?
upvoted 0 times
...
Ruby
5 months ago
Definitely agree, that's the way to go!
upvoted 0 times
...
Nieves
5 months ago
You need to install the Log Analytics agent for Azure Defender.
upvoted 0 times
...
Glen
5 months ago
I feel like the Hybrid Runbook Worker role is more about automation, so I don't think that's what we need here.
upvoted 0 times
...
Gail
5 months ago
I’m a bit confused about the Dependency agent and its role. Does it relate to Azure Defender, or is it for something else?
upvoted 0 times
...
Leatha
5 months ago
I remember practicing a similar question, and I think the Connected Machine agent is the right choice for connecting on-premises computers to Azure.
upvoted 0 times
...
Shalon
5 months ago
I think we need to install the Log Analytics agent for Azure Defender to work with on-premises machines, but I'm not entirely sure.
upvoted 0 times
...
Jovita
5 months ago
Option B sounds tempting, but I don't think that's quite right. I remember learning that the client files need to be manually managed, not automatically downloaded.
upvoted 0 times
...
Jade
5 months ago
Okay, let me think this through step-by-step. SSH keys are typically stored in a binary format, and PEM is a way to encode that binary data in a text-based format. So A, PEM, is the correct answer.
upvoted 0 times
...

Save Cancel