sc900 Flashcards
(57 cards)
Microsoft Entra Verified ID
a service for securely managing and verifying digital credentials. It automates identity verification while maintaining privacy.
Microsoft Entra Permissions Management
a Cloud Infrastructure Entitlement Management (CIEM) solution that helps organizations manage permissions for identities and resources across Microsoft Azure, AWS, and GCP, supporting a Zero Trust security model with least privilege access.
Microsoft Entra ID Protection
helps organizations detect, investigate, and remediate identity-based risks by analyzing signals from user and workload identities. It integrates with tools like Conditional Access and SIEM for better security.
Six Foundational Pillars of Zero Trust
Identities, Device, Applications, Data, Infrastructure, Networks (IDADIN)
Data Residency
Refers to regulations governing the physical location where data can be stored and how it can be transferred, processed, or accessed internationally. These regulations vary by jurisdiction, making it crucial for organizations to be aware of local laws when handling data across borders.
Data Sovereignty
This principle states that data, especially personal data, is subject to the laws and regulations of the country or region in which it is collected, stored, or processed. This can create complexity as data may cross multiple jurisdictions, each with different laws.
Data Privacy:
transparency about the collection, use, and sharing of personal data. Organizations must comply with various laws and regulations to protect privacy
Authentication
is the process of verifying a person’s identity, proving they are who they claim to be.
Authorization
happens after authentication and determines what resources a person can access and what actions they can perform.
Four Pillars of Identity Infrastructure
Administration, Authentication, Authorization, Auditing
The Microsoft Service Trust Portal (STP)
how Microsoft protect data, maintain compliance
Microsoft Priva
is a set of privacy solutions designed to help organizations manage privacy operations, ensure compliance with regulations, and mitigate privacy risks.
Microsoft Purview
is a set of integrated data security, data governance, and data compliance solutions that can help organizations secure and govern their entire data estate, while helping them meet their compliance requirements
Data Loss Prevention (DLP) in Microsoft Purview
helps organizations protect sensitive information from being shared inappropriately.
Describe audit in Microsoft Purview (standard and premium)
log retention policies, high-value intelligent insights, and higher bandwidth to API.
The following authentication methods are available for SSPR:
Mobile app notification
Mobile app code
Email
Mobile phone
Office phone
Security questions
service password reset (SSPR) is a
feature of Microsoft Entra ID that allows users to change or reset their password, without administrator or help desk involvement
azure Bastion provides
secure RDP and SSH connectivity to all of the VMs in the virtual network for which it’s provisioned.
Microsoft Purview Compliance Manager
helps reduce risks related to data protection.
Microsoft Purview Communication Compliance
helps detect, capture, and address inappropriate messages that may lead to breaches or compliance incidents.
Microsoft Purview Data Lifecycle Management
provides tools for managing data retention and deletion, helping organizations meet compliance requirements.
Microsoft Purview data governance
enables organizations to securely manage, access, and utilize their data across a distributed environment while ensuring compliance, improving data quality, and supporting innovation.
Microsoft Purview Data Catalog
provides a comprehensive solution for organizing, managing, and securing data across the organization.
federation
When multiple identity providers work together where users only need to log in once, and their credentials can be used to access multiple applications