Given the management group hierarchy and the created definitions (Policy1, Initiative1, Initiative2, Initiative3), which of these definitions can be added as a Defender for Cloud security policy?
Choose an answer
Tap an option to check your answer.
Correct answer: Policy1 and Initiative1 only.
Why this is the answer
Defender for Cloud security policies are built on Azure Policy. You can assign individual Azure Policies (like Policy1) or Azure Policy Initiatives (like Initiative1) directly within Defender for Cloud to manage security configurations. Initiative2 and Initiative3 are not suitable because they are custom initiatives that include Policy1, which is already a security policy, but they are not themselves designed as security policies for Defender for Cloud. Defender for Cloud specifically integrates with Azure Policy definitions that are categorized as security policies or initiatives containing such policies.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed