You have an Azure Sentinel workspace. You need to manage incidents based on alerts generated by Microsoft Defender for Cloud Apps. What should you do first?
A.
From the Microsoft Defender for Cloud Apps portal, configure security extensions.
B.
From the Microsoft Defender for Cloud Apps portal, configure app connectors.
C.
From the Microsoft Defender for Cloud Apps portal, configure log collectors.
D.
From the Microsoft 365 Compliance admin center, add and configure a data connector.
Answer is A: Integrating with Microsoft Sentinel:
In the Defender for Cloud Apps portal, under the Settings cog, select Security extensions.
https://learn.microsoft.com/en-us/defender-cloud-apps/siem-sentinel
Thank you! These people posting the wrong answers is making a difficult learning process unbearable. It's almost like they are trying to sabotage others.
Integrating with Microsoft Sentinel
In the Defender for Cloud Apps portal, under the Settings cog, select Security extensions
https://learn.microsoft.com/en-us/defender-cloud-apps/siem-sentinel
my goodness, how one can learn if the same question has two different answers from the same source?
upvoted 2 times
...
...
This section is not available anymore. Please use the main Exam Page.MS-500 Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Broesweelies
Highly Voted 2 years, 9 months agoAnonymousse
2 years, 8 months agoDzuljzebari
Most Recent 2 years, 4 months agomhh
2 years, 7 months agoVJO
2 years, 7 months agoWedge34
2 years, 8 months agoArmored5772
2 years, 9 months agoAnonymousse
2 years, 8 months agoTavoGC
2 years, 1 month ago