SC-200 Exam Question 26

Your company uses Azure Sentinel to manage alerts from more than 10,000 IoT devices.
A security manager at the company reports that tracking security threats is increasingly difficult due to the large number of incidents.
You need to recommend a solution to provide a custom visualization to simplify the investigation of threats and to infer threats by using machine learning.
What should you include in the recommendation?
  • SC-200 Exam Question 27

    You need to use an Azure Resource Manager template to create a workflow automation that will trigger an automatic remediation when specific security alerts are received by Azure Security Center.
    How should you complete the portion of the template that will provision the required Azure resources? To answer, select the appropriate options in the answer area.
    NOTE: Each correct selection is worth one point.

    SC-200 Exam Question 28

    Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
    After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
    You have Linux virtual machines on Amazon Web Services (AWS).
    You deploy Azure Defender and enable auto-provisioning.
    You need to monitor the virtual machines by using Azure Defender.
    Solution: You enable Azure Arc and onboard the virtual machines to Azure Arc.
    Does this meet the goal?
  • SC-200 Exam Question 29

    You have an Azure subscription linked to an Azure Active Directory (Azure AD) tenant. The tenant contains two users named User1 and User2.
    You plan to deploy Azure Defender.
    You need to enable User1 and User2 to perform tasks at the subscription level as shown in the following table.

    The solution must use the principle of least privilege.
    Which role should you assign to each user? To answer, drag the appropriate roles to the correct users. Each role may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.

    SC-200 Exam Question 30

    You need to implement Microsoft Defender for Cloud to meet the Microsoft Defender for Cloud requirements and the business requirements. What should you include in the solution? To answer, select the appropriate options in the answer are a. NOTE: Each correct selection is worth one point.