Free MS-500 Exam Braindumps (page: 35)

Page 35 of 86

Your company has 500 computers.
You plan to protect the computers by using Microsoft Defender Advanced Threat Protection (Windows Defender ATP). Twenty of the computers belong to company executives.

You need to recommend a remediation solution that meets the following requirements:
-Microsoft Defender ATP administrators must manually approve all remediation for the executives
-Remediation must occur automatically for all other users

What should you recommend doing from Microsoft Defender Security Center?

  1. Configure 20 system exclusions on automation allowed/block lists
  2. Configure two alert notification rules
  3. Download an offboarding package for the computers of the 20 executives
  4. Create two machine groups

Answer(s): D


Reference:

https://docs.microsoft.com/en-us/windows/security/threat-protection/windows-defender-atp/machine-groups-windows-defender-advanced-threat-protection



You have a Microsoft 365 Enterprise E5 subscription.
You use Microsoft Defender Advanced Threat Protection (Microsoft Defender ATP).
You need to integrate Microsoft Office 365 Threat Intelligence and Microsoft Defender ATP. Where should you configure the integration?

  1. From the Microsoft 365 admin center, select Settings, and then select Services & add-ins.
  2. From the Security & Compliance admin center, select Threat management, and then select Explorer.
  3. From the Microsoft 365 admin center, select Reports, and then select Security & Compliance.
  4. From the Security & Compliance admin center, select Threat management and then select Threat tracker.

Answer(s): B


Reference:

References:
https://docs.microsoft.com/en-us/office365/securitycompliance/integrate-office-365-ti-with-wdatp



Your network contains an on-premises Active Directory domain. The domain contains servers that run Windows Server and have advanced auditing enabled.

The security logs of the servers are collected by using a third-party SIEM solution.

You purchase a Microsoft 365 subscription and plan to deploy Microsoft Defender for Identity by using standalone sensors.
You need to ensure that you can detect when sensitive groups are modified and when malicious services are created.

What should you do?

  1. Turn off Delayed updates for the Microsoft Defender for Identity sensors.
  2. Configure auditing in the Microsoft 365 Compliance center.
  3. Turn on Delayed updates for the Microsoft Defender for Identity sensors.
  4. Integrate SIEM and Microsoft Defender for Identity.

Answer(s): D

Explanation:

Note:
There are several versions of this question in the exam. The questions in the exam have two different correct answers:
-Integrate SIEM and Microsoft Defender for Identity
-Configure Event Forwarding on the domain controllers

Other incorrect answer options you may see on the exam include the following:
-Configure Microsoft Defender for Identity notifications
-Modify the Domain synchronizer candidate settings on the Microsoft Defender for Identity sensors
-Enable the Audit account management Group Policy setting for the servers
-Configure auditing in the Microsoft 365 Defender portal


Reference:

https://docs.microsoft.com/en-us/azure-advanced-threat-protection/configure-event-forwarding



You have a Microsoft 365 subscription that uses a default domain name of fabrikam.com. You create a safe links policy, as shown in the following exhibit.

Which URL can a user safely access from Microsoft Word Online?

  1. fabrikam.phishing.fabrikam.com
  2. malware.fabrikam.com
  3. fabrikam.contoso.com
  4. www.malware.fabrikam.com

Answer(s): D


Reference:

References:
https://docs.microsoft.com/en-us/office365/securitycompliance/set-up-a-custom-blocked-urls-list-wtih-atp



Page 35 of 86



Post your Comments and Discuss Microsoft MS-500 exam with other Community members:

Romero commented on March 23, 2022
i never use these dumps sites but i had to do it for this exam as it is impossible to pass without using these question dumps.
UNITED STATES
upvote

Darville commented on February 09, 2023
I passed my exam thanks to this brain dumps. The dump is comprehensive and the practice questions were tough but effective.
UNITED STATES
upvote

Con2000 commented on April 25, 2022
This exam dumps is valid in South Africa.
SOUTH AFRICA
upvote

Willard commented on April 23, 2022
The questions are helpful for passing the exam as they are from actual exam but if you want to learn just books.
UNITED KINGDOM
upvote

Romero commented on March 23, 2022
I never use these dumps sites but I had to do it for this exam as it is impossible to pass without using these question dumps.
UNITED STATES
upvote

Manpreet commented on March 23, 2022
I passed the exam today. This exam questions dump is quite accurate.
UNITED STATES
upvote

IT. Boss commented on October 15, 2021
I just logged in to my account and I have officially passed the exam. Gerat job on these exam dumps guys.
CANADA
upvote

Tesla.101 commented on October 15, 2021
The practice questions are precise and spot-on. It helped me pass.
SINGAPORE
upvote

QandA Guy commented on July 20, 2021
I have just passed this exam. So I wanted to thank you guys.
MEXICO
upvote

Lim commented on June 24, 2020
Thank you for releasing the Mac version of the Xengine App. I can practice the questions and simulate the exam on my MacBook now.
SWEDEN
upvote

Romero commented on April 18, 2020
This fukcing dumps are real. Just passed my exam yesterday.
UNITED STATES
upvote

Amanda commented on April 09, 2020
To all you guys out there. First of all stay at home and try to schedule your exam online if available. Second I did mine exam yesterday and got my certificate. The Xengine Software is very cool.
UNITED STATES
upvote

TestGirl commented on October 18, 2019
The file had a lot of the questions from the exam. However, it was missing 15% of the questions from my exam
UNITED STATES
upvote