You receive a security alert in Microsoft Defender for Cloud as shown in the exhibit. (Click the Exhibit tab.)
After remediating the threat which policy definition should you assign to prevent the threat from reoccurring?
This one comes up in practice sets too. A lines up with "public access should be disallowed" which is exactly what the Defender alert called out. Official docs and practice exams both highlight this policy for public container issues. If anyone's got a different take let me know, but pretty sure it's A.
Don't think it's C here. The question is specifically about public access to storage accounts, not shared key usage. A covers that exact misconfig according to recent exam-style practice. People tend to mix up public and shared key exposures so that's the trap I see a lot.