Microsoft Security, Compliance, and Identity Fundamentals (SC-900)Describe the capabilities of Microsoft Security solutionsEasy
A company requires a solution to manage and protect all corporate-owned and bring-your-own-device (BYOD) mobile devices and applications. This solution needs to enforce security policies, deploy applications, and help protect corporate data on these devices. Which Microsoft solution provides these capabilities?
- AMicrosoft Defender for Endpoint
- BAzure Information Protection
- CAzure AD Conditional Access
- DMicrosoft Intune
Show answer & explanationAnswer & explanation
Correct answer: D. Microsoft Intune
Microsoft Intune is a cloud-based unified endpoint management (UEM) solution that manages mobile devices, mobile applications, and PCs. It helps organizations protect corporate data by controlling how users access and use company resources.
Why the other options are wrong
- A. Microsoft Defender for Endpoint focuses on endpoint detection and response (EDR) and threat protection for devices, not general device management.
- B. Azure Information Protection focuses on classifying, labeling, and protecting documents and emails, not device management.
- C. Azure AD Conditional Access controls access to resources based on conditions, but doesn't manage devices or deploy applications.
Microsoft Intune
A cloud-based service focused on mobile device management (MDM) and mobile application management (MAM). It allows organizations to manage users' access to corporate resources and data.
- Manages corporate and BYOD devices.
- Deploys applications and enforces policies.
- Integrates with Azure AD and other Microsoft services.
Memory trick: Intune tunes up all devices and apps.