Security Recommendation Exclusions | Microsoft SC-200 Exam Solution

Secure Score Management

Question

If you have a security recommendation that is not applicable for your environment, and you don't want to negatively affect your secure score, which option is the most appropriated to use?

Answers

Explanations

Click on the arrows to vote for the correct answer

A. B. C. D.

Correct Answer: B Option B is correct.

It is recommended for disabling recommendations when they're inapplicable in your environment.

Option A, C & D are incorrect.

It is not possible and appropriate to do them.

Reference:

When it comes to managing security recommendations in an environment, it is important to consider the potential impact on the secure score. The secure score is a measurement of how well your organization is implementing security controls based on Microsoft's recommendations. If you have a security recommendation that is not applicable to your environment, there are a few options to consider:

A. Create an exemption for the recommendation: This option involves creating an exemption for the specific recommendation that is not applicable to your environment. This exemption will prevent the recommendation from negatively affecting your secure score. However, it is important to note that exemptions should only be used when necessary and should be carefully considered, as they can potentially introduce security risks.

B. Disable the recommendation: This option involves disabling the specific recommendation that is not applicable to your environment. While this will prevent the recommendation from negatively affecting your secure score, it may also impact other security controls that rely on this recommendation. It is important to carefully consider the potential impact of disabling a recommendation before doing so.

C. Create a new resource group and exempt the recommendation from the resource group: This option involves creating a new resource group specifically for the resources that the recommendation does not apply to. By exempting the recommendation from this resource group, it will not negatively impact your secure score. This option may be useful if the recommendation only applies to a specific set of resources.

D. Create a custom recommendation: This option involves creating a new custom recommendation that better aligns with your organization's specific needs. This option requires additional effort and resources but may be beneficial if the existing recommendations do not fit your organization's requirements.

In summary, the most appropriate option will depend on the specific recommendation and your organization's needs. It is important to carefully consider the potential impact of each option before making a decision.