Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Exam (elaborations)

Microsoft SC-200 Study Guide Latest

Rating
-
Sold
-
Pages
5
Grade
A+
Uploaded on
16-02-2024
Written in
2023/2024

Microsoft SC-200 Study Guide Latest Threat and vulnerability management - provides real-time visibility and helps identify ways to improve your security posture. attack surface reduction (ASR) - eliminates risky or unnecessary surface areas and restricts dangerous code from running. Advanced protection - uses machine learning and deep analysis to protect against file-based malware advanced persistent threats (APT) - Associated in high severity alerts uses continuous, clandestine, and sophisticated hacking techniques to gain access to a system and remain inside for a prolonged period of time, with potentially destructive consequences. High Severity Alert - credential theft tools activities, ransomware activities not associated with any group, tampering with security sensors, or any malicious activities indicative of a human adversary. Medium Severity Alert - observed behaviors typical of attack stages, anomalous registry change, execution of suspicious files Low Severity Alert - Alerts on threats associated with prevalent malware. hack-tools, non-malware hack tools, such as running exploration commands, clearing logs, isolated security tool by a user in organization. Informational (Grey) Alerts - might not be considered harmful to the network but can drive organizational security awareness on potential security issues. MDE vs MD AV Alert Severity - AV scope represents the absolute severity of the detected threat (malware) and is assigned based on the risk of the individual. MDE represent risk on device and risk to the organization. Incident Linking - You can create a new incident from the alert or link to an existing incident. Where can remediation actions be reviewed? - Action Center Automated investigation and remediation (AIR) - Full automation - (recommended) means remediation actions are taken automatically on artifacts determined to be malicious. Semi-automation - some remediation actions are taken automatically, but other remediation actions await approval before being taken What are the 7 pillars of MS ATP - Threat & Vulnerability management, Attack Surface Reduction, Next Generation AV, EDR, Auto investigation & Remediation, Microsoft Threat Experts, Management & APIs Hardware Isolation - Isolates untrusted websites and documents in a container Application Control - Allows only trusted applications to run Ransomware protection - Controlled Folder Access - Network Protection - Prevents any app from accessing dangerous locations Web Protection - Exploit Protection - Device control - Graph API - Where is attack surface reduction located? - MDE Endpoint Security Attack Surface reduction What is SmartScreen? - checks files that you download from the web against a list of reported malicious software sites and programs known to be unsafe Where is controlled folder access? - MDE Devices Configuration profiles Endpoint protection Request Remediation - creates an activity item which can be used to monitor the remediation progress of this recommendation Remediation Progress - is a real-time reflection of the endpoint patch state that is continuously assessed by the defender for Endpoint sensor What services does azure defender protect? - Servers, app services, Azure SQL DBs, Storage, Kubernetes, Container registries, key vault

Show more Read less
Institution
Microsoft SC-200
Course
Microsoft SC-200









Whoops! We can’t load your doc right now. Try again or contact support.

Written for

Institution
Microsoft SC-200
Course
Microsoft SC-200

Document information

Uploaded on
February 16, 2024
Number of pages
5
Written in
2023/2024
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

  • advanced protection
$9.49
Get access to the full document:

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF


Also available in package deal

Thumbnail
Package deal
Microsoft SC-200 Exam Package Deal
-
9 2024
$ 104.41 More info

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
Academicmines University Of California - Davis- School Of Medicine
View profile
Follow You need to be logged in order to follow users or courses
Sold
93
Member since
3 year
Number of followers
55
Documents
2689
Last sold
2 months ago
Academicmines store

Academicmines store is a comprehensive resource for students and professionals alike, offering a wide range of academic materials. It specializes in selling notes, test banks, exams, study guides, summaries, and case studies. It also helps students with working out assignments in any field. These materials are designed to aid in understanding complex topics, preparing for exams, and enhancing knowledge in various subjects. The store is a one-stop-shop for anyone looking to excel in their studies or professional development, providing high-quality, reliable resources that cater to a variety of learning styles and needs. The store\'s offerings are not only diverse but also meticulously organized, making it easy for customers to find exactly what they need. Whether it\'s a detailed case study for a business course or a comprehensive study guide for a science exam, Academicmines is committed to helping its customers achieve their academic and professional goals.

Read more Read less
4.1

17 reviews

5
9
4
3
3
3
2
1
1
1

Trending documents

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Frequently asked questions