ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 35 - SC-200 discussion

Report
Export

You provision Azure Sentinel for a new Azure subscription.

You are configuring the Security Events connector.

While creating a new rule from a template in the connector, you decide to generate a new alert for every event.

You create the following rule query.

By which two components can you group alerts into incidents? Each correct answer presents a complete solution.

NOTE: Each correct selection is worth one point.

A.

user

Answers
A.

user

B.

resource group

Answers
B.

resource group

C.

IP address

Answers
C.

IP address

D.

computer

Answers
D.

computer

Suggested answer: C, D
asked 05/10/2024
Krishna chaithanya
38 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first