This browser is no longer supported.
Upgrade to Microsoft Edge to take advantage of the latest features, security updates, and technical support.
Complete the provided questions.
A security engineer at Contoso needs to enable real-time runtime protection for Copilot Studio agents. Where in the Microsoft Defender portal are these settings configured?
Settings > Cloud Apps > Connected apps
System > Settings > Security for AI agents
Endpoints > Configuration management > Agent configuration
Cloud Apps > Policies > Policy management
After a security engineer enables protection for a Copilot Studio agent in the Microsoft Defender portal, a Power Platform admin needs to complete a step for protection to take effect. What must the Power Platform admin configure?
Grant the Defender for Cloud Apps service principal owner permissions on the Power Platform environment
Configure the App ID of the Microsoft Defender service in the Power Platform admin center
Enable the Defender for Cloud Apps connector in the Power Platform data loss prevention policy
Assign the Security Administrator role to the Copilot Studio environment service account
A security engineer wants to verify that real-time protection is active for a Copilot Studio agent after completing setup. What status indicator confirms the agent is protected?
The agent appears in the Microsoft Defender XDR Devices inventory
The agent shows a Connected status in the Security for AI settings
An alert is generated in Microsoft Defender XDR confirming agent enrollment
The agent appears in the Defender for Cloud Apps app governance dashboard
A security engineer is reviewing the identity model for Copilot Studio agents created after the tenant opted in to Microsoft Entra Agent Identity. Which statement correctly describes the identity Copilot Studio automatically assigns to these agents?
A user-assigned managed identity that the security team creates and assigns to the agent during deployment
A Microsoft Entra service principal with an 'Agent' subtype, automatically created and managed by Copilot Studio
The same App ID configured in the Power Platform admin center when enabling real-time protection
A legacy app registration that the agent owner must renew annually
You must answer all questions before checking your work.
Was this page helpful?
Need help with this topic?
Want to try using Ask Learn to clarify or guide you through this topic?