A ransomware playbook assumes an attacker who already has Contributor will try to delete Recovery Services vault backup points. Which security controls should the security engineer enable for Azure Backup?
Select an answer to reveal the explanation.
Short Explanation
Contributor with a delete streak is why Backup soft delete and the extra authorization gates exist—security PIN or multi-user authorization. Don’t “fix” ransomware by turning backups off or by only stretching retention.
Full Explanation
Azure Backup security features harden Recovery Services vaults and Backup vaults against destructive operations by privileged attackers. Soft delete retains deleted backup data for a recovery window, and additional authorization mechanisms such as a security PIN or multi-user authorization raise the bar beyond a single Contributor acting alone. Retention length alone does not stop malicious delete. Disabling backups or elevating the attacker removes recovery options rather than protecting them.