Start here! Get your feet wet with the Microsoft cloud and begin your journey to earning your Microsoft Certified: Azure Fundamentals certification!
Prepare and test your skills

Prepare and test your skills

Worked example. The correct answer is already marked and every option is explained below, so there is nothing to select here. To answer questions yourself, start the free trial.
An organization is designing a unified security operations strategy across its cloud and on-premises environments. The security team uses Microsoft Defender for Cloud to evaluate workload security posture, identify vulnerabilities, and detect active threats across their resources.
To centralize enterprise-wide security data, the team must stream alerts and telemetry from Defender for Cloud into a native cloud service that delivers Security Information and Event Management (SIEM), advanced threat intelligence, and automated incident correlation.
Which Azure service should the organization integrate with Microsoft Defender for Cloud to meet this requirement?
Keep the momentum going with these hand-picked practice scenarios
Want more questions like this?
Get a free certification question every week.
Microsoft Sentinel is a cloud-native Security Information and Event Management (SIEM) and Security Orchestration, Automation, and Response (SOAR) solution. Built directly on top of the Azure Monitor Logs and Log Analytics foundation, Sentinel ingests, correlates, and analyzes massive volumes of telemetry from diverse enterprise sources across multicloud, on-premises, and hybrid infrastructures.
Microsoft Sentinel natively integrates with Microsoft Defender for Cloud via built-in data connectors. When connected:
While Microsoft Defender for Cloud focuses on resource-level security posture and workload-specific threat detection, Microsoft Sentinel provides the enterprise-scale correlation, broad event aggregation, and threat hunting necessary for a modern security operations center.