Microsoft Cybersecurity Architect (SC-100)Design a Zero Trust strategy and architectureMedium
A global enterprise is migrating its legacy applications to a multi-cloud environment (Azure, AWS, GCP) while adopting a Zero Trust architecture. They need a centralized solution to collect security logs, detect threats across all cloud platforms and on-premises infrastructure, and automate responses to security incidents. Which Microsoft security service is best suited for this requirement?
- AMicrosoft 365 Defender
- BAzure Monitor
- CMicrosoft Sentinel
- DAzure Security Center (now Defender for Cloud)
Show answer & explanationAnswer & explanation
Correct answer: C. Microsoft Sentinel
Microsoft Sentinel is a cloud-native Security Information and Event Management (SIEM) and Security Orchestration, Automation, and Response (SOAR) solution that can ingest data from various sources, including multi-cloud environments and on-premises, for centralized threat detection and automated response.
Why the other options are wrong
- A. Microsoft 365 Defender focuses on endpoint, identity, email, and app security within the Microsoft 365 ecosystem.
- B. Azure Monitor is for collecting and analyzing telemetry data from Azure resources, not a full-fledged SIEM for multi-cloud threat detection and response.
- D. Azure Security Center (Defender for Cloud) provides cloud security posture management and workload protection primarily for Azure and hybrid environments, but Sentinel offers broader SIEM/SOAR capabilities across multiple clouds.
Microsoft Sentinel
A cloud-native Security Information and Event Management (SIEM) and Security Orchestration, Automation, and Response (SOAR) solution that provides intelligent security analytics across an enterprise.
- Ingests data from various sources (multi-cloud, on-premises, Microsoft 365).
- Uses AI and machine learning for threat detection.
- Includes SOAR capabilities for automated response.
- Scalable and cost-effective cloud-native solution.
Memory trick: Sentinel watches over all your clouds.