お客様は、Microsoft Defender XDR を使用する Microsoft 365 サブスクリプションをご利用中です。このサブスクリプションには、Microsoft Entra に参加し、Microsoft Defender for Endpoint の既定のデバイス グループに属し、Microsoft Intune を使用して管理されている 500 台のデバイスが含まれています。 Microsoft Defenderの脆弱性管理を導入する必要があります。ソリューションは、管理作業を最小限に抑えるものでなければなりません。 Microsoft Defenderポータルで最初に何をすべきですか?
正解:C
To get Defender Vulnerability Management (TVM) working with Intune-managed devices, first enable the Intune connection in the Defender portal (Settings > Endpoints > Advanced features) and then use Endpoint Security Policies (Configuration profiles) in Intune or the Defender portal to deploy security settings and onboard devices, creating device groups in Entra ID to target these policies effectively for vulnerabilities and remediation. Here are the key configuration steps: In the Microsoft Defender Portal (security.microsoft.com): *-> 1. Connect to Intune: Go to Settings > Endpoints > Advanced features, find the "Microsoft Intune connection," and turn the toggle On, then Save. 2. Check Device Onboarding: Verify devices appear in the Assets > Devices inventory, showing their risk, exposure, and management status. 3. Use Device Groups: Navigate to Endpoints > Device groups, create/manage groups (e.g., for Windows 11) to filter vulnerability data and apply specific settings. In Microsoft Intune (Microsoft Endpoint Manager admin center): 1. Onboard Devices 2. Deploy Security Settings 3. Create Remediation Tasks Reference: https://learn.microsoft.com/en-us/intune/intune-service/protect/microsoft-defender-integrate