ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 213 - SC-200 discussion

Report
Export

You have a Microsoft Sentinel workspace that has user and Entity Behavior Analytics (UEBA) enabled for Signin Logs.

You need to ensure that failed interactive sign-ins are detected.

The solution must minimize administrative effort.

What should you use?

A.

a scheduled alert query

Answers
A.

a scheduled alert query

B.

a UEBA activity template

Answers
B.

a UEBA activity template

C.

the Activity Log data connector

Answers
C.

the Activity Log data connector

D.

a hunting query

Answers
D.

a hunting query

Suggested answer: B
asked 05/10/2024
Riaan Cilliers
32 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first