ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 233 - SC-200 discussion

Report
Export

You have a Microsoft Sentinel workspace that uses the Microsoft 365 Defender data connector.

From Microsoft Sentinel, you investigate a Microsoft 365 incident.

You need to update the incident to include an alert generated by Microsoft Defender for Cloud Apps.

What should you use?

A.

the entity side panel of the Timeline card in Microsoft Sentinel

Answers
A.

the entity side panel of the Timeline card in Microsoft Sentinel

B.

the investigation graph on the Incidents page of Microsoft Sentinel

Answers
B.

the investigation graph on the Incidents page of Microsoft Sentinel

C.

the Timeline tab on the Incidents page of Microsoft Sentinel

Answers
C.

the Timeline tab on the Incidents page of Microsoft Sentinel

D.

the Alerts page in the Microsoft 365 Defender portal

Answers
D.

the Alerts page in the Microsoft 365 Defender portal

Suggested answer: A
asked 05/10/2024
Lizbeth Perea Joseph
34 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first