exam questions

Exam MS-101 All Questions

View all questions & answers for the MS-101 exam

Exam MS-101 topic 3 question 123 discussion

Actual exam question from Microsoft's MS-101
Question #: 123
Topic #: 3
[All MS-101 Questions]

You have a Microsoft 365 tenant.
You plan to manage incidents in the tenant by using the Microsoft 365 Defender.
Which Microsoft service source will appear on the Incidents page of the Microsoft 365 Defender portal?

  • A. Microsoft Sentinel
  • B. Azure Web Application Firewall
  • C. Microsoft Defender for Identity
  • D. Azure Arc
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️
Analyzing the attack in Microsoft Defender for Identity.
Microsoft 365 Defender allows analysts to filter alerts by detection source on the Alerts tab of the incidents page. In the following example, the detection source is filtered to Defender for Identity.

Reference:
https://docs.microsoft.com/en-us/microsoft-365/security/defender/first-incident-path-identity

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
PabloMoo
2 years, 6 months ago
I agree with answer C. Checked my Defender Incident portal to verify
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago