Microsoft Security, Compliance, and Identity Fundamentals (SC-900)Describe the capabilities of Microsoft Security solutionsMedium

A compliance officer needs to ensure that all email communications within their Microsoft 365 environment are protected against sophisticated phishing attacks, business email compromise (BEC), and zero-day malware. They require advanced capabilities like impersonation detection, URL sandboxing, and attachment scanning before delivery. Which Microsoft 365 Defender service should be configured?

  1. AMicrosoft Defender for Endpoint
  2. BMicrosoft Defender for Cloud Apps
  3. CMicrosoft Defender for Identity
  4. DMicrosoft Defender for Office 365
Show answer & explanation

Correct answer: D. Microsoft Defender for Office 365

Microsoft Defender for Office 365 provides comprehensive protection against email-based threats, including advanced phishing, impersonation, and zero-day malware, through features like Safe Attachments (sandboxing) and Safe Links (URL scanning).

Why the other options are wrong

  • A. Microsoft Defender for Endpoint protects devices from threats, not email-specific attacks.
  • B. Microsoft Defender for Cloud Apps provides CASB functionality for cloud applications, not direct email threat protection.
  • C. Microsoft Defender for Identity protects Active Directory identities, not email content.

Microsoft Defender for Office 365

Protects against advanced threats in email, links, and collaboration tools like SharePoint and Teams.

  • Includes Safe Attachments for malware sandboxing.
  • Includes Safe Links for URL scanning.
  • Detects impersonation and phishing.

Memory trick: Defender for O365 is the 'mailman' who checks your email for bombs and bad links.

More Describe the capabilities of Microsoft Security solutions questions