You have an Azure subscription that uses Microsoft Defender for Cloud and 50 Azure VMs running Windows Server. To forward any detected security exploits from the VMs to Defender for Cloud, which VM extension should you enable?
Choose an answer
Tap an option to check your answer.
Correct answer: Vulnerability assessment for machines.
Why this is the answer
The correct answer is Vulnerability assessment for machines. This extension is specifically designed to integrate with Microsoft Defender for Cloud to identify and forward security vulnerabilities and exploits detected on your Azure VMs. It provides continuous scanning and reporting of security misconfigurations and known vulnerabilities. The Guest Configuration agent is used for auditing and configuring operating system settings, not for forwarding security exploits. The Azure Automanage Machine Configuration extension for Windows is a broader management tool for consistent configuration across VMs, not solely focused on security exploit detection for Defender for Cloud. The Microsoft Dependency agent collects data about processes running on the VM and their dependencies, primarily for Azure Monitor's Service Map feature, not for forwarding security exploits to Defender for Cloud.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed