ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 38 - SC-200 discussion

Report
Export

You have a custom analytics rule to detect threats in Azure Sentinel.

You discover that the analytics rule stopped running. The rule was disabled, and the rule name has a prefix of AUTO DISABLED.

What is a possible cause of the issue?

A.

There are connectivity issues between the data sources and Log Analytics.

Answers
A.

There are connectivity issues between the data sources and Log Analytics.

B.

The number of alerts exceeded 10,000 within two minutes.

Answers
B.

The number of alerts exceeded 10,000 within two minutes.

C.

The rule query takes too long to run and times out.

Answers
C.

The rule query takes too long to run and times out.

D.

Permissions to one of the data sources of the rule query were modified.

Answers
D.

Permissions to one of the data sources of the rule query were modified.

Suggested answer: D

Explanation:

Reference: https: //doc s. m ic rosoft. co m/en-u s/azu re/se ntine l/tutorial-detect-th reats-c ustom

asked 05/10/2024
Angelica Caldeo
41 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first