Defender Vulnerability Management overview Flashcards
(14 cards)
What does Defender Vulnerability Management deliver?
Asset visibility, intelligent assessments, and built-in remediation tools for various platforms
Platforms include Windows, macOS, Linux, Android, iOS, and network devices.
What is the purpose of the Microsoft Defender Vulnerability Management Dashboard?
To provide a wide variety of useful information that helps identify issues and respond to those issues.
What can be filtered in the Defender Vulnerability Management dashboard?
Selected device groups
Filters apply throughout the vulnerability management pages.
What does the exposure score indicate?
Current state of your organization’s device exposure to threats and vulnerabilities
Factors include weaknesses, likelihood of breach, device value, and relevant alerts.
What is the goal related to the exposure score?
To lower the exposure score to be more secure
Achieved by remediating security configuration issues.
What does the Microsoft Secure Score for Devices reflect?
Security posture of operating systems, applications, network, accounts, and security controls
Aimed at increasing the score by remediating configuration issues.
What information does the device exposure distribution provide?
Number of devices exposed based on their exposure level
Includes details such as device names, exposure level, risk level, and health state.
What can be seen regarding expiring certificates?
Number of certificates that are expired or due to expire in the next 30, 60, or 90 days
Important for maintaining security compliance.
What are top security recommendations based on?
Organizational risk exposure and urgency
Users can view exceptions for recommendations that have exceptions.
What does the top vulnerable software section provide?
Real-time visibility into vulnerable software installed on network devices
Includes impact on organizational exposure score.
What can be tracked in the top remediation activities?
Remediation activities generated from security recommendations
Users can view details in the Remediation page.
What information is available in the top exposed devices section?
Exposed device names and their exposure level
Users can manage tags and initiate automated investigations from the device list.
What can be viewed in the top events section?
Top events and the number of impacted devices in the last seven days
Includes new vulnerabilities and configuration assessments.
What are the 10 Defender Vulnerability Management dashboard areas?
- Selected device groups
- Exposure score
- Microsoft Secure Score for Devices
- Device exposure distribution
- Expiring certificates
- Top security recommendations
- Top vulnerable software
- Top remediation activities
- Top exposed devices
- Top events