Microsoft Azure Security Engineer Associate AZ-500 Practice Question
Your company has an AWS Organization that contains about 300 member accounts. As an Azure security engineer, you need to onboard every current AWS account to Microsoft Defender for Cloud while minimizing ongoing administrative effort. Which onboarding approach should you choose?
Install Azure Arc-enabled servers agent on every EC2 instance in the organization.
Create one single-account AWS connector for each of the 300 member accounts.
Use Azure Lighthouse to delegate the AWS accounts to the Azure tenant and then enable Defender for Cloud.
Create an AWS Organization connector in Defender for Cloud that uses a CloudFormation StackSet deployed from the management account.
The AWS Organization connector is initiated from the AWS management (payer) account and deploys an AWS CloudFormation StackSet that creates a single cross-account role in every existing member account, letting you onboard all 300 accounts in one operation. Although any future AWS accounts added to the organization must still be onboarded manually, this option is far less work than creating 300 individual single-account connectors or installing Azure Arc on every server. Azure Lighthouse cannot register AWS environments with Defender for Cloud.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is Microsoft Defender for Cloud?
Open an interactive chat with Bash
What is an AWS CloudFormation StackSet?
Open an interactive chat with Bash
How does the AWS Organization connector simplify onboarding in Defender for Cloud?
Open an interactive chat with Bash
Microsoft Azure Security Engineer Associate AZ-500
Secure Azure using Microsoft Defender for Cloud and Microsoft Sentinel
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .