Skip to main content
Answer needs confirmation
Question

You have 100 Azure virtual machines that run Windows Server. The virtual machines are onboarded to Microsoft Defender for Cloud.
You need to shut down a virtual machine automatically if Microsoft Defender for Cloud generates the "Antimalware disabled in the virtual machine" alert for the virtual machine.
What should you use in Microsoft Defender for Cloud?

Proposed answer
  • A. a logic app
  • B. a workbook
  • C. a security policy
  • D. adaptive network hardening

 

Suggested answer
  • A. a logic app

 

Comments

 

AvoKikinha

Highly Voted 2 years, 7 months ago 

Selected Answer: A

A) Correct! https://docs.microsoft.com/en-us/azure/defender-for-cloud/managing-and-responding-alerts "Trigger automated response - provides the option to trigger a logic app as a response to this security alert"

upvoted 8 times 

starseed

Most Recent 3 months ago 

Correct Logic app

upvoted 1 times 

syu31svc

1 year, 7 months ago 

Selected Answer: A

https://learn.microsoft.com/en-us/azure/defender-for-cloud/workflow-automation This feature can trigger consumption logic apps on security alerts, recommendations, and changes to regulatory compliance A is correct

upvoted 1 times 

Burnie

2 years ago 

Selected Answer: A

Correct.

upvoted 3 times 

xxxxx85xx

2 years, 8 months ago 

Correct Answer

upvoted 4 times