nerdexam
Microsoft

SC-900 · Question #109

What are three uses of Microsoft Cloud App Security? Each correct answer presents a complete solution. NOTE: Each correct selection is worth one point.

The correct answer is A. to discover and control the use of shadow IT C. to protect sensitive information hosted anywhere in the cloud E. to prevent data leaks to noncompliant apps and limit access to regulated data. Microsoft Cloud App Security (now Microsoft Defender for Cloud Apps) is a Cloud Access Security Broker (CASB) with three primary use cases reflected in the correct answers: (A) It discovers unsanctioned cloud apps used by employees (shadow IT) and allows admins to assess risk…

Submitted by andreas_gr· Apr 18, 2026Describe the capabilities of Microsoft security solutions

Question

What are three uses of Microsoft Cloud App Security? Each correct answer presents a complete solution. NOTE: Each correct selection is worth one point.

Options

  • Ato discover and control the use of shadow IT
  • Bto provide secure connections to Azure virtual machines
  • Cto protect sensitive information hosted anywhere in the cloud
  • Dto provide pass-through authentication to on-premises applications
  • Eto prevent data leaks to noncompliant apps and limit access to regulated data

How the community answered

(35 responses)
  • A
    91% (32)
  • B
    3% (1)
  • D
    6% (2)

Explanation

Microsoft Cloud App Security (now Microsoft Defender for Cloud Apps) is a Cloud Access Security Broker (CASB) with three primary use cases reflected in the correct answers: (A) It discovers unsanctioned cloud apps used by employees (shadow IT) and allows admins to assess risk and control usage. (C) It protects sensitive information hosted in cloud apps by applying DLP policies and inspecting content across cloud services. (E) It enforces session controls and app governance to prevent data from leaking to noncompliant or risky cloud apps and limits access to regulated data. Option B (secure VM connections) is a function of Azure Bastion or VPN/NSGs. Option D (pass-through authentication to on-premises apps) is a function of Azure AD Application Proxy.

Topics

#Microsoft Cloud App Security#Shadow IT#Data Loss Prevention#Cloud Security

Community Discussion

No community discussion yet for this question.

Full SC-900 Practice