Flows and Defender Suites Flashcards

(12 cards)

1
Q

Flow 1

A

NMCI Machine connected in office (NVD is considered Flow 1)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Flow 2

A

NMCI Machine is connected at home via VPN, (uses) RSA tools/PulseSecureAzure VPN)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Flow 3

A

Personal Device on Home IE (Connected through VPN)

MDCA restricts Flow 3 from downloading.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

MDC (Cloud)

A

monitors Cloud native resources like VM’s, and VNETS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

MDE (Endpoint)

A

Monitors endpoints like the NMCI devices & NEPs

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

MDI (Identity)

A

Monitors identity services via sensors on domain controllers/active directory

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

MDO (office)

A

works with exchange online protection to manage spam/malware filters

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

MDA (Applications)

A

Monitors apps and used to block or allow apps.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Where to find CA policies?

A

Microsoft ExtraID —> Security —> Conditional Access Policies —> Policies

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

MDCA (Cloud Applications)

A

restricts Flow 3 from downloading.

Users in IA policy Violators can’t login due to CA

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Breakglass Account

A

Emergency account used if all other accounts lose access. It’s a global account that is exempt to CA.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What are the the Microsoft Defender Suites?

A

MDC (Cloud)
MDE (Endpoint)
MDI (Identity)
MDO (office)
MDA (Applications)
MDCA (Cloud Applications)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly