You have an Azure AD tenant that syncs with an Active Directory Domain Services (AD DS) domain.
You have an on-premises datacenter that contains 100 servers. The servers run Windows Server and are backed up by using Microsoft Azure Backup Server (MABS).
You are designing a recovery solution for ransomware attacks. The solution follows Microsoft Security Best Practices.
You need to ensure that a compromised administrator account cannot be used to delete the backups
What should you do?
Select an option, then click Submit answer.
-
○
From a Recovery Services vault generate a security PIN for critical operations.
-
○
From Azure Backup, configure multi-user authorization by using Resource Guard.
-
○
From Microsoft Azure Backup Setup, register MABS with a Recovery Services vault
-
○
From Azure AD Privileged identity Management (PIM), create a role assignment for the Backup Contributor role.