Defender for Cloud alerts remain visible only in the Defender for Cloud blade and never become Microsoft Sentinel incidents. What should the Azure security engineer enable?
Select an answer to reveal the explanation.
Short Explanation
If alerts are stuck in Defender for Cloud, open Sentinel and flip on the Microsoft Defender for Cloud data connector. Tick the right subscriptions so those alerts can become incidents. That connector is the bridge—not XDR rename games.
Full Explanation
The Microsoft Defender for Cloud data connector brings Defender for Cloud alerts into Microsoft Sentinel so analytics and incidents can form there. Configuration includes selecting the Azure subscriptions that should contribute alerts. Microsoft Defender XDR or Microsoft 365 Defender naming and Security Copilot plugins are not the first-class AZ-500 answer for this connector skill.