SC-200 Exam Question 11

You have a Microsoft Sentinel workspace named workspace1 that contains custom Kusto queries.
You need to create a Python-based Jupyter notebook that will create visuals. The visuals will display the results of the queries and be pinned to a dashboard. The solution must minimize development effort.
What should you use to create the visuals?
  • SC-200 Exam Question 12

    You deploy Azure Sentinel.
    You need to implement connectors in Azure Sentinel to monitor Microsoft Teams and Linux virtual machines in Azure. The solution must minimize administrative effort.
    Which data connector type should you use for each workload? To answer, select the appropriate options in the answer area.
    NOTE: Each correct selection is worth one point.

    SC-200 Exam Question 13

    You are configuring Azure Sentinel.
    You need to send a Microsoft Teams message to a channel whenever a sign-in from a suspicious IP address is detected.
    Which two actions should you perform in Azure Sentinel? Each correct answer presents part of the solution.
    NOTE: Each correct selection is worth one point.
  • SC-200 Exam Question 14

    You have an Azure subscription that contains a Log Analytics workspace.
    You need to enable just-in-time (JIT) VM access and network detections for Azure resources.
    Where should you enable Azure Defender?
  • SC-200 Exam Question 15

    You have a playbook in Azure Sentinel.
    When you trigger the playbook, it sends an email to a distribution group.
    You need to modify the playbook to send the email to the owner of the resource instead of the distribution group.
    What should you do?