SC-200 Exam Question 96

You need to ensure that the Group1 members can meet the Microsoft Sentinel requirements.
Which role should you assign to Group1?
  • SC-200 Exam Question 97

    You have a custom Microsoft Sentinel workbook named Workbooks.
    You need to add a grid to Workbook1. The solution must ensure that the grid contains a maximum of 100 rows.
    What should you do?
  • SC-200 Exam Question 98

    Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
    After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
    You use Azure Security Center.
    You receive a security alert in Security Center.
    You need to view recommendations to resolve the alert in Security Center.
    Solution: From Regulatory compliance, you download the report.
    Does this meet the goal?
  • SC-200 Exam Question 99

    You have an Azure subscription that uses resource type for Cloud. You need to filter the security alerts view to show the following alerts:
    * Unusual user accessed a key vault
    * Log on from an unusual location
    * Impossible travel activity
    Which severity should you use?
  • SC-200 Exam Question 100

    You need to identify which mean time metrics to use to meet the Microsoft Sentinel requirements. Which workbook should you use?