ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 81 - SC-200 discussion

Report
Export

You are configuring Microsoft Cloud App Security.

You have a custom threat detection policy based on the IP address ranges of your company’s United States-based offices.

You receive many alerts related to impossible travel and sign-ins from risky IP addresses.

You determine that 99% of the alerts are legitimate sign-ins from your corporate offices.

You need to prevent alerts for legitimate sign-ins from known locations.

Which two actions should you perform? Each correct answer presents part of the solution.

NOTE: Each correct selection is worth one point.

A.

Override automatic data enrichment.

Answers
A.

Override automatic data enrichment.

B.

Add the IP addresses to the corporate address range category.

Answers
B.

Add the IP addresses to the corporate address range category.

C.

Increase the sensitivity level of the impossible travel anomaly detection policy.

Answers
C.

Increase the sensitivity level of the impossible travel anomaly detection policy.

D.

Add the IP addresses to the other address range category and add a tag.

Answers
D.

Add the IP addresses to the other address range category and add a tag.

E.

Create an activity policy that has an exclusion for the IP addresses.

Answers
E.

Create an activity policy that has an exclusion for the IP addresses.

Suggested answer: A, D
asked 05/10/2024
Georgescu Andrei
39 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first