Valid SC-200 Dumps shared by EduDump.com for Helping Passing SC-200 Exam! EduDump.com now offer the newest SC-200 exam dumps, the EduDump.com SC-200 exam questions have been updated and answers have been corrected get the newest EduDump.com SC-200 dumps with Test Engine here:
You have a Microsoft Sentinel workspace that uses the Microsoft 365 Defender data connector. From Microsoft Sentinel, you investigate a Microsoft 365 incident. You need to update the incident to include an alert generated by Microsoft Defender for Cloud Apps. What should you use?
Correct Answer: D
Microsoft Sentinel incidents that originate from the Microsoft 365 Defender data connector are synchronized automatically with the Microsoft 365 Defender portal . To add or link an additional alert (for example, from Defender for Cloud Ap ps) to an existing incident, you must do it from the Microsoft 365 Defender portal's Alerts page , not directly in Sentinel. Once updated in Microsoft 365 Defender, the changes sync back to Sentinel, maintaining incident parity between both platforms. # Correct Answer: D. the Alerts page in the Microsoft 365 Defender portal