SC-900 · Question #75
Which feature provides the extended detection and response (XDR) capability of Azure Sentinel?
The correct answer is C. integration with Microsoft 365 Defender. Extended Detection and Response (XDR) is a security approach that correlates telemetry and alerts across multiple security domains - endpoint, identity, email, cloud apps - into a unified detection and response platform. Microsoft Sentinel (formerly Azure Sentinel) achieves XDR…
Question
Which feature provides the extended detection and response (XDR) capability of Azure Sentinel?
Options
- Aintegration with the Microsoft 365 compliance center
- Bsupport for threat hunting
- Cintegration with Microsoft 365 Defender
- Dsupport for Azure Monitor Workbooks
How the community answered
(46 responses)- A2% (1)
- B7% (3)
- C89% (41)
- D2% (1)
Explanation
Extended Detection and Response (XDR) is a security approach that correlates telemetry and alerts across multiple security domains - endpoint, identity, email, cloud apps - into a unified detection and response platform. Microsoft Sentinel (formerly Azure Sentinel) achieves XDR capability through its deep integration with Microsoft 365 Defender, which covers these domains. Together, they form Microsoft's unified SIEM+XDR solution: Sentinel provides SIEM and SOAR capabilities while M365 Defender provides the cross-domain XDR signals. Threat hunting (B) and Azure Monitor Workbooks (D) are capabilities Sentinel has independently and do not define its XDR capability. Integration with the Microsoft 365 compliance center (A) relates to compliance, not XDR.
Topics
Community Discussion
No community discussion yet for this question.