Question 1 of 30
A company is implementing Microsoft Defender for Office 365 to enhance its email security posture. The security team is particularly concerned about phishing attacks and wants to configure the anti-phishing policies effectively. They plan to use the impersonation protection feature to safeguard against attackers who may attempt to impersonate high-profile executives. Which of the following configurations would best ensure that emails appearing to come from these executives are thoroughly scrutinized while minimizing false positives?
Configure impersonation protection for specific users and enable the option to block emails that fail the impersonation checks.
Set up impersonation protection for all users without any exceptions, allowing all emails to pass through if they are from internal domains.
Implement impersonation protection only for external domains, disregarding internal communications entirely.
Enable impersonation protection but do not configure any specific users, allowing the system to learn from user behavior over time.

Preparing for Microsoft SC-200 Microsoft Security Operations Analyst? Now land the interview.

73% of qualified candidates get rejected because of weak resumes. Build an ATS-optimized, recruiter-ready resume in under 5 minutes - free to start.

Build My Resume Free