You are a Teams administrator for Fabrikam. The security team requires that all files shared in Teams chats and channels are scanned for malware before users can download them. You need to ensure this scanning occurs without affecting user ability to upload files. What should you do?
Safe Attachments in Defender for Office 365 can scan files in SharePoint Online, OneDrive, and Teams. Configuring a policy for these workloads ensures files are scanned before download, meeting the security requirement without blocking uploads. This is the correct integrated solution.
Why this answer
Safe Attachments in Microsoft Defender for Office 365 is the correct solution because it provides malware scanning for files in SharePoint Online, OneDrive, and Microsoft Teams. By applying a Safe Attachments policy to these workloads, files are scanned asynchronously, and malicious files are blocked from download, ensuring security without hindering uploads.
Exam trap
The trap here is assuming DLP or Conditional Access can scan for malware; they address data leakage and access control, not antivirus scanning.