New Year Sale 2026! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Microsoft SC-200 Exam - Topic 7 Question 72 Discussion

Actual exam question for Microsoft's SC-200 exam
Question #: 72
Topic #: 7
[All SC-200 Questions]

You have an Azure subscription that has the enhanced security features in Microsoft Defender for Cloud enabled and contains a user named User1.

You need to ensure that User1 can export alert data from Defender for Cloud. The solution must use the principle of least privilege.

Which role should you assign to User1?

Show Suggested Answer Hide Answer
Suggested Answer: C

Contribute your Thoughts:

0/2000 characters
Belen
3 months ago
Really? I thought they needed more permissions to export data.
upvoted 0 times
...
Aretha
3 months ago
Definitely not Owner, that’s way too much access!
upvoted 0 times
...
Clorinda
3 months ago
Wait, why not Contributor? Seems like overkill.
upvoted 0 times
...
Rutha
4 months ago
I agree, Reader is the way to go!
upvoted 0 times
...
Carole
4 months ago
User1 should get the Reader role for least privilege.
upvoted 0 times
...
Jennie
4 months ago
I’m leaning towards the Reader role too, but I wonder if there’s a specific role for exporting data that I might have missed in my studies.
upvoted 0 times
...
Ashley
4 months ago
I feel like the User Access Administrator role could be relevant, but it seems like overkill for just exporting alerts.
upvoted 0 times
...
Pilar
4 months ago
I remember practicing a question about role assignments, and I think the Contributor role might be too much access for just exporting data.
upvoted 0 times
...
Mohammad
5 months ago
I think User1 might need the Reader role since they only need to export alert data, but I'm not completely sure.
upvoted 0 times
...
Celeste
5 months ago
I've got this one! The Reader role is the way to go. It provides the necessary permissions to export alert data from Defender for Cloud without giving User1 too much access.
upvoted 0 times
...
Lorenza
5 months ago
I'm a bit confused on this one. Is the Contributor role sufficient, or do I need to go with something more specific like the Reader role? I'll need to double-check the details on each role.
upvoted 0 times
...
Renato
5 months ago
Okay, I think I know the answer here. The User Access Administrator role should give User1 the ability to export alert data from Defender for Cloud without granting them unnecessary permissions.
upvoted 0 times
...
Haley
5 months ago
Hmm, I'm not too familiar with the different Azure roles and their permissions. I'll need to do some research on that to figure out the right one to assign to User1.
upvoted 0 times
...
Shawna
5 months ago
This seems straightforward. I'll need to review the Azure role definitions to determine which one allows exporting alert data from Defender for Cloud while following the principle of least privilege.
upvoted 0 times
...
Chuck
5 months ago
Okay, I've got this. Fred and his team are performing qualitative risk analysis by combining the probability and impact of the risks to prioritize them. I'm confident I can answer this correctly.
upvoted 0 times
...
Freeman
5 months ago
Definitely going with an audited implementation like OpenZeppelin is the way to go. That way, I can focus on customizing the token to my needs without worrying about the core functionality.
upvoted 0 times
...
Mitsue
5 months ago
I think it's apply_amps.sh, but I feel a bit shaky on that—didn't we go over something similar in practice questions last week?
upvoted 0 times
...
Omega
5 months ago
These multiple-choice questions always try to trick you with subtle wording. I'll cross out anything that sounds obviously wrong first.
upvoted 0 times
...
Ines
5 months ago
I think we definitely need to test the application with the peripheral to ensure it handles inputs and outputs correctly. That seems really important.
upvoted 0 times
...
Marylou
2 years ago
Ha! Imagine giving User1 the C) Owner role just to let them export some alerts. That's like using a bazooka to kill a fly. I vote for D) Reader.
upvoted 0 times
...
Gayla
2 years ago
B) User Access Administrator sounds like overkill to me. I'd go with D) Reader - it seems to fit the requirement of being able to export alert data without giving too much control.
upvoted 0 times
Truman
2 years ago
Yeah, I think giving User1 the Reader role is the most secure choice here.
upvoted 0 times
...
Brinda
2 years ago
I agree, D) Reader seems like the best option for this scenario.
upvoted 0 times
...
Kanisha
2 years ago
I think A) Contributor might be too much access for just exporting alert data.
upvoted 0 times
...
Torie
2 years ago
Reader it is then, let's go with that.
upvoted 0 times
...
Julie
2 years ago
I agree, D) Reader seems like the best option for least privilege.
upvoted 0 times
...
Jerry
2 years ago
I agree, it seems like the most appropriate role for exporting alert data.
upvoted 0 times
...
Stephanie
2 years ago
I think D) Reader is the best choice for User1.
upvoted 0 times
...
...
Devon
2 years ago
Definitely not C) Owner. That would be way too much power for this task. I think D) Reader is the best choice to follow the principle of least privilege.
upvoted 0 times
Ulysses
2 years ago
Yes, D) Reader would be the best choice to limit User1's access.
upvoted 0 times
...
Cassie
2 years ago
I agree, C) Owner is definitely too much power for just exporting alert data.
upvoted 0 times
...
...

Save Cancel