
Ultimate access to all questions.
Your organization holds a Microsoft 365 subscription and leverages Microsoft Defender for Identity for its cybersecurity needs. Recently, you have been alerted to incidents involving compromised identities within your network. To enhance your defense strategy, you need to propose a solution that makes certain accounts appear vulnerable and enticing to attackers. The goal is to trigger an alert whenever these accounts are targeted for exploitation. Which feature of Microsoft Defender for Identity should be included in your recommendation to achieve this?
A
sensitivity labels
B
custom user tags
C
standalone sensors
D
honeytoken entity tags
Explanation:
Honeytoken entities are used as traps for malicious actors. Any authentication associated with these honeytoken entities triggers an alert. This way, when attackers attempt to exploit these accounts, an alert is automatically triggered, thereby helping in identifying and responding to the threat.