List of questions
Related questions
Question 119 - SC-200 discussion
You have a third-party security information and event management (SIEM) solution.
You need to ensure that the SIEM solution can generate alerts for Azure Active Directory (Azure AD) sign-events in near real time.
What should you do to route events to the SIEM solution?
A.
Create an Azure Sentinel workspace that has a Security Events connector.
B.
Configure the Diagnostics settings in Azure AD to stream to an event hub.
C.
Create an Azure Sentinel workspace that has an Azure Active Directory connector.
D.
Configure the Diagnostics settings in Azure AD to archive to a storage account.
Your answer:
0 comments
Sorted by
Leave a comment first