Question 66

You have an Azure Storage account that will be accessed by multiple Azure Functions apps during the development of an application.
You need to hide Microsoft Defender for Cloud alerts for the storage account.
Which entity type and field should you use in a suppression rule? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Question 67

You have a Microsoft 365 E5 subscription that contains a device named Device 1. Device 1 is enrolled in Microsoft Defender for End point.
Device1 reports an incident that includes a file named File1 exe as evidence.
You initiate the Collect Investigation Package action and download the ZIP file.
You need to identify the first and last time File1.exe was executed.
What should you review in the investigation package?
  • Question 68

    You need to modify the anomaly detection policy settings to meet the Cloud App Security requirements.
    Which policy should you modify?
  • Question 69

    You have an Azure subscription named Sub1 that uses Microsoft Defender for Cloud.
    You need to assign the PCI DSS 4.0 initiative to Sub1 and have the initiative displayed in the Defender for Cloud Regulatory compliance dashboard.
    From Security policies in the Environment settings, you discover that the option to add more industry and regulatory standards is unavailable.
    What should you do first?
  • Question 70

    You have an Azure Storage account that will be accessed by multiple Azure Function apps during the development of an application.
    You need to hide Azure Defender alerts for the storage account.
    Which entity type and field should you use in a suppression rule? To answer, select the appropriate options in the answer area.
    NOTE: Each correct selection is worth one point.