SC-200 Exam Question 81

You need to create the analytics rule to meet the Azure Sentinel requirements.
What should you do? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

SC-200 Exam Question 82

You use Microsoft Sentinel.
You need to receive an alert in near real-time whenever Azure Storage account keys are enumerated. Which two actions should you perform? Each correct answer presents part of the solution. NOTE: Each correct selection is worth one point
  • SC-200 Exam Question 83

    You need to modify the anomaly detection policy settings to meet the Cloud App Security requirements.
    Which policy should you modify?
  • SC-200 Exam Question 84

    You need to add notes to the events to meet the Azure Sentinel requirements.
    Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of action to the answer area and arrange them in the correct order.

    SC-200 Exam Question 85

    You have an Azure Sentinel deployment.
    You need to query for all suspicious credential access activities.
    Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.