
Answer-first summary for fast verification
Answer: Integrate Azure Policy with Azure Monitor and Azure Security Center to not only enforce security configurations but also enable real-time monitoring, alerting, and remediation of security issues related to sensitive data processing.
Option D is the most comprehensive and effective solution for ensuring ITAR compliance in the given scenario. It leverages the combined capabilities of Azure Policy, Azure Monitor, and Azure Security Center to enforce necessary security controls while providing real-time monitoring, alerting, and remediation. This approach addresses the dynamic nature of security threats and compliance requirements more effectively than the other options, which either lack real-time capabilities or do not fully align with ITAR's specific needs.
Author: LeetQuiz Editorial Team
Ultimate access to all questions.
No comments yet.
As a Microsoft Cybersecurity Architect, you are designing a solution for a manufacturing organization that processes sensitive data related to national security and must comply with the International Traffic in Arms Regulations (ITAR). The solution must enforce security controls in the Azure environment to ensure ITAR compliance, with considerations for real-time monitoring, alerting, and remediation of security issues. Which of the following approaches BEST meets these requirements? (Choose one)
A
Create custom Azure Policy definitions tailored to enforce specific security configurations for Azure services processing sensitive data, including encryption, network security, and access controls, without integrating additional monitoring tools.
B
Assign built-in Azure Policy initiatives focused on general industry standards like NIST SP 800-171 to resource groups, assuming these will fully address ITAR's specific requirements without further customization.
C
Utilize Azure Policy solely for auditing data processing activities and generating compliance reports, neglecting real-time security monitoring and alerting capabilities.
D
Integrate Azure Policy with Azure Monitor and Azure Security Center to not only enforce security configurations but also enable real-time monitoring, alerting, and remediation of security issues related to sensitive data processing.