Your organization wants to implement a zero-trust security model for on-premises and cloud resources. As part of this strategy, you need to ensure that all access requests are authenticated and authorized based on dynamic risk signals. Which Microsoft security solution should you use to enforce conditional access policies based on real-time risk?
Trap 1: Microsoft Intune
Intune manages device compliance and configuration but does not enforce access policies at the authentication level.
Trap 2: Microsoft Sentinel
Sentinel is a SIEM for security information and event management, not for access control policies.
Trap 3: Microsoft Defender for Cloud
Defender for Cloud provides security posture management and threat protection but does not enforce conditional access policies.
- A
Microsoft Entra ID Conditional Access
Entra ID Conditional Access enforces access policies based on user, device, location, and risk signals, supporting zero-trust.
- B
Microsoft Intune
Why wrong: Intune manages device compliance and configuration but does not enforce access policies at the authentication level.
- C
Microsoft Sentinel
Why wrong: Sentinel is a SIEM for security information and event management, not for access control policies.
- D
Microsoft Defender for Cloud
Why wrong: Defender for Cloud provides security posture management and threat protection but does not enforce conditional access policies.