Microsoft Security, Compliance, and Identity Fundamentals (SC-900)Describe the capabilities of Microsoft Security solutionsMedium
A global enterprise needs to manage and secure all corporate-owned and employee-owned mobile devices (smartphones, tablets) and applications. They require capabilities to enforce device compliance, deploy applications, and remotely wipe devices if lost or stolen. Which Microsoft security solution is designed for this comprehensive endpoint management?
- AMicrosoft Defender for Identity
- BMicrosoft Intune
- CMicrosoft Defender for Cloud
- DAzure Sentinel
Show answer & explanationAnswer & explanation
Correct answer: B. Microsoft Intune
Microsoft Intune is a cloud-based unified endpoint management (UEM) solution. It manages mobile devices, mobile applications, and PCs by enforcing policies, deploying apps, and providing data protection capabilities like remote wipe.
Why the other options are wrong
- A. Microsoft Defender for Identity protects user identities and Active Directory, not device management.
- C. Microsoft Defender for Cloud focuses on cloud security posture and workload protection, not endpoint management.
- D. Azure Sentinel is a SIEM/SOAR solution for security monitoring and incident response, not endpoint management.
Microsoft Intune
A cloud-based service focused on mobile device management (MDM) and mobile application management (MAM) that helps organizations manage and secure endpoints and applications.
- Enforces device compliance and security policies
- Deploys and manages applications on devices
- Provides remote actions like wipe, lock, and restart
Memory trick: Intune tunes up all your devices.