ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 176 - SC-200 discussion

Report
Export

HOTSPOT

You have a Microsoft Sentinel workspace that has User and Entity Behavior Analytics (UEBA) enabled.

You need to identify all the log entries that relate to security-sensitive user actions performed on a server named Server1. The solution must meet the following requirements:

• Only include security-sensitive actions by users that are NOT members of the IT department.

• Minimize the number of false positives.

How should you complete the query? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.


Question 176
Correct answer: Question 176

Explanation:

asked 05/10/2024
SULIMAN ALGHURAIR
35 questions
User
0 comments
Sorted by

Leave a comment first