List of questions
Related questions
Question 165 - SC-200 discussion
You provision Azure Sentinel for a new Azure subscription.
You are configuring the Security Events connector.
While creating a new rule from a template in the connector, you decide to generate a new alert for every event.
You create the following rule query.
By which two components can you group alerts into incidents? Each correct answer presents a complete solution.
NOTE: Each correct selection is worth one point.
A.
a workbook
B.
a hunting query
C.
a notebook
D.
a playbook
Your answer:
0 comments
Sorted by
Leave a comment first