
Ultimate access to all questions.
Your organization currently holds an Azure subscription that has implemented enhanced security measures via Microsoft Defender for Cloud. Recently, your company has entered into a contractual agreement with the United States government. As part of this new agreement, you are required to ensure that the existing Azure subscription is compliant with NIST Special Publication 800-53, which outlines the security and privacy controls for federal information systems and organizations. What is the initial step you should take to review the current subscription for NIST 800-53 compliance?
A
From Defender for Cloud, enable Defender for Cloud plans.
B
From Azure Policy, assign a built-in initiative that has a scope of the subscription.
C
From Microsoft Defender for Cloud Apps, create an access policy for cloud applications.
D
From Azure Policy, assign a built-in policy definition that has a scope of the subscription.