Microsoft Defender for Cloud Apps Flashcards
7 cards from real SC-900 practice questions. Tap to flip, then mark Knew It or Still Learning — missed cards come back until you master them.
Read the first 7 Microsoft Defender for Cloud Apps flashcards as text
What type of security solution is Microsoft Defender for Cloud Apps primarily classified as?
Answer: Cloud Access Security Broker (CASB)
Microsoft Defender for Cloud Apps is a Cloud Access Security Broker (CASB) that provides visibility, data control, and threat protection for cloud apps.
Which feature of Microsoft Defender for Cloud Apps helps organizations discover unsanctioned cloud applications being used by employees?
Answer: Cloud Discovery
Cloud Discovery analyzes traffic logs to identify cloud apps in use across the organization, revealing Shadow IT.
What term describes the use of unauthorized or unapproved cloud applications within an organization that Defender for Cloud Apps helps identify?
Answer: Shadow IT
Shadow IT refers to cloud apps and services used by employees without IT department knowledge or approval, which Cloud Discovery helps uncover.
Which of the following is NOT one of the four pillars of the Cloud Access Security Broker (CASB) framework that Defender for Cloud Apps provides?
Answer: Network Segmentation
The four CASB pillars are Visibility, Compliance, Data Security, and Threat Protection — Network Segmentation is not a CASB pillar.
What does Conditional Access App Control in Microsoft Defender for Cloud Apps enable?
Answer: Real-time session monitoring and control of user activity in cloud apps
Conditional Access App Control uses reverse proxy architecture to monitor and control user sessions and access to cloud apps in real time.
How does Microsoft Defender for Cloud Apps connect to supported third-party cloud applications to gain deeper visibility?
Answer: Via App Connectors using provider APIs
App Connectors use APIs provided by cloud service providers to connect Defender for Cloud Apps and give visibility into activities and data within those platforms.
Which Microsoft Defender for Cloud Apps capability allows administrators to set policies that trigger alerts when unusual user behavior is detected?
Answer: Anomaly Detection Policies
Anomaly Detection Policies use behavioral analytics and machine learning to detect unusual activities that could indicate a threat.