AI-Enabled Policy for Preventing Impersonation Attacks in Exchange Online | MS-500 Exam Answer

AI-Enabled Policy for Preventing Impersonation Attacks in Exchange Online

Question

You are responsible for securing your organizations Exchange online environment.

To help prevent impersonation attacks, you wish to enable artificial intelligence (AI) as a policy for all users.

What should you configure?

Answers

Explanations

Click on the arrows to vote for the correct answer

A. B. C. D.

Correct Answer: C.

Option A is incorrect.

This is a notification sent from an organization's legal team to employees instructing them not to delete electronically stored information that may be relevant to a legal case.

Option B is incorrect.

This is a free security baseline offered by Microsoft.

Option D is incorrect.

This is a policy to protect against malicious attachments.

To know more about Mailbox Intelligence and other anti-phishing methods, please refer to the link below:

The correct answer for this question is C. Mailbox intelligence.

Mailbox intelligence is a feature in Exchange Online Protection that uses artificial intelligence and machine learning algorithms to analyze email messages and identify potentially malicious content. It can help prevent impersonation attacks by detecting when an email appears to be sent from a trusted source, such as an executive or a vendor, but is actually from an attacker trying to trick the recipient into taking a specific action, such as wiring money or sharing sensitive information.

Enabling mailbox intelligence for all users in Exchange Online can help protect against impersonation attacks and increase the overall security posture of the organization. It is important to note that while mailbox intelligence can be effective at detecting and blocking some types of impersonation attacks, it is not foolproof and should be used in conjunction with other security measures, such as multi-factor authentication and user education.

A. Litigation Hold is a feature in Exchange Online that allows organizations to preserve all email data related to a specific legal case or investigation. It is not related to preventing impersonation attacks.

B. Security defaults is a feature in Azure Active Directory that enforces a baseline level of security across an organization's Microsoft 365 environment. It includes settings such as requiring multi-factor authentication for all users and blocking legacy authentication protocols. While security defaults can help prevent some types of attacks, it is not specifically designed to prevent impersonation attacks.

D. Safe attachment policy is a feature in Exchange Online Protection that scans email attachments for malicious content and blocks them if necessary. While this can help prevent some types of attacks, such as those that use malicious attachments to deliver malware or ransomware, it is not specifically designed to prevent impersonation attacks.