makeporngreatagain.pro
yeahporn.top
hd xxx

Practice Test 4 | Microsoft Azure Security Technologies | AZ-500 | Dumps | Mock Test

4,007

You are an internal auditor for a large retail company. The company has a number of Azure virtual machines (VMS) that run critical business processes with customers and partners around the world. The last audit performed on your Azure infrastructure identified missing security controls on these VMS according to ISO/IEC 27001:2013 Information Security Management Standards (ISMS).
To satisfy this requirement you assign Azure built-in policy initiative ISO/IEC 27001:2013 to Subscription1, as shown in the exhibit. Your next audit report shows that only newly created VMS satisfy the ISMS. You need to remediate all VMs.

Which of the following steps should you take to fulfill the above question requirement?

A. Create a custom Policy Initiative definition
B. Modify the ISO/IEC 27001:2013 Policy Initiative assignment
C. Create a custom security Policy definition
D. Review security recommendations in Microsoft Defender for Cloud

Correct Answers: B and D

  • Option B is Correct because You should modify the ISO/IEC 27001:2013 initiative assignment. During the assignment process, you have to set the option Create a remediation task to Yes. Your existing vulnerable resources will only be evaluated if this is set to Yes. Newly created resources are always evaluated. The assigned policy initiative then evaluates your existing Azure resources according to the business rules defined in the policy initiative and creates a remediation task in Microsoft Defender for Cloud’s recommendations.
  • Option D is Correct because You should also review security recommendations in Microsoft Defender for Cloud and remediate your vulnerable resources if any.
  • Option A is Incorrect because You should not create a custom Policy Initiative definition. To simplify management, multiple security policies can be grouped together into an Initiative. After an Initiative is defined, it has to be assigned to a resource. Only Initiative assignment enforces the defined rules on a resource. Creating an Initiative definition does not meet the goal
  • Option C is Incorrect because You should not create a custom security Policy definition. Security policy definitions are definitions of business rules, described in JSON format. After a Policy is defined, it has to be assigned to a resource. Only the assignment enforces the policy (business rules) on the respective resource. Creating a custom Policy definition does not meet the goal.

Reference:

Comments are closed, but trackbacks and pingbacks are open.

baseofporn.com https://www.opoptube.com
Ads Blocker Image Powered by Code Help Pro

Ads Blocker Detected!!!

We have detected that you are using extensions to block ads. Please support us by disabling these ads blocker.