List of questions
Related questions
Question 56 - SC-200 discussion
You have the following environment:
Azure Sentinel
A Microsoft 365 subscription
Microsoft Defender for Identity
An Azure Active Directory (Azure AD) tenant
You configure Azure Sentinel to collect security logs from all the Active Directory member servers and domain controllers.
You deploy Microsoft Defender for Identity by using standalone sensors.
You need to ensure that you can detect when sensitive groups are modified in Active Directory.
Which two actions should you perform? Each correct answer presents part of the solution.
NOTE: Each correct selection is worth one point.
Configure the Advanced Audit Policy Configuration settings for the domain controllers.
Modify the permissions of the Domain Controllers organizational unit (OU).
Configure auditing in the Microsoft 365 compliance center.
Configure Windows Event Forwarding on the domain controllers.
0 comments
Leave a comment first