AZ-500
The Defender Alert Storm
Monday morning. You open Microsoft Defender for Cloud and find the Secure Score has dropped from 78% to 31% overnight. There are 247 new high-severity recommendations. The alerts dashboard shows a critical alert: "Possible outbound data exfiltration detected" on a Linux VM (linux-worker-03) in the production resource group. Additionally, Defender shows that 12 storage accounts have public network access enabled and 8 VMs have no endpoint protection installed. Your CISO has a board meeting in 2 hours.
STEP 1 OF 5 — FREE PREVIEW
Triage the situation. With 247 recommendations and a critical exfiltration alert, you must prioritise. Describe your triage framework — how do you decide what to address in the next 30 minutes vs what can wait? What is your first action specifically regarding the exfiltration alert?
🔒
Steps 2–5 require purchase
One-time purchase — lifetime access to all 5 AZ-500 labs
Sign in to purchase