Microsoft Security, Compliance, and Identity Fundamentals (SC-900)Describe the capabilities of Microsoft Security solutionsMedium
A compliance officer needs to ensure that all email communications within their Microsoft 365 environment are protected against sophisticated phishing attacks, business email compromise (BEC), and zero-day malware. They require advanced capabilities like impersonation detection, URL sandboxing, and attachment scanning before delivery. Which Microsoft 365 Defender service should be configured?
- AMicrosoft Defender for Endpoint
- BMicrosoft Defender for Cloud Apps
- CMicrosoft Defender for Identity
- DMicrosoft Defender for Office 365
Show answer & explanationAnswer & explanation
Correct answer: D. Microsoft Defender for Office 365
Microsoft Defender for Office 365 provides comprehensive protection against email-based threats, including advanced phishing, impersonation, and zero-day malware, through features like Safe Attachments (sandboxing) and Safe Links (URL scanning).
Why the other options are wrong
- A. Microsoft Defender for Endpoint protects devices from threats, not email-specific attacks.
- B. Microsoft Defender for Cloud Apps provides CASB functionality for cloud applications, not direct email threat protection.
- C. Microsoft Defender for Identity protects Active Directory identities, not email content.
Microsoft Defender for Office 365
Protects against advanced threats in email, links, and collaboration tools like SharePoint and Teams.
- Includes Safe Attachments for malware sandboxing.
- Includes Safe Links for URL scanning.
- Detects impersonation and phishing.
Memory trick: Defender for O365 is the 'mailman' who checks your email for bombs and bad links.