nerdexam
MicrosoftMicrosoft

MS-102 · Question #573

MS-102 Question #573: Real Exam Question with Answer & Explanation

The correct answer is C: Microsoft Defender for Cloud Apps. The Incidents page in Microsoft Defender XDR aggregates incidents only from security products that are part of the Defender XDR suite. Microsoft Defender for Cloud Apps (now part of Defender XDR as “App governance / Cloud Apps”) contributes alerts and incidents directly to the un

Submitted by kevin_r· Apr 18, 2026Manage security and threats by using Microsoft Defender XDR

Question

You have a Microsoft 365 tenant. You plan to manage incidents in the tenant by using the Microsoft Defender XDR. Which Microsoft service source will appear on the Incidents page of the Microsoft Defender portal?

Options

  • AAzure Web Application Firewall
  • BMicrosoft Sentinel
  • CMicrosoft Defender for Cloud Apps
  • DMicrosoft Purview

Explanation

The Incidents page in Microsoft Defender XDR aggregates incidents only from security products that are part of the Defender XDR suite. Microsoft Defender for Cloud Apps (now part of Defender XDR as “App governance / Cloud Apps”) contributes alerts and incidents directly to the unified incident queue.

Topics

#Microsoft Defender XDR#Defender for Cloud Apps#Incident sources

Community Discussion

No community discussion yet for this question.

Full MS-102 PracticeBrowse All MS-102 Questions