ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 256 - SC-200 discussion

Report
Export

HOTSPOT

You have on-premises servers that run Windows Server.

You have a Microsoft Sentinel workspace named SW1. SW1 is configured to collect Windows Security log entries from the servers by using the Azure Monitor Agent data connector.

You plan to limit the scope of collected events to events 4624 and 462S only.

You need to use a PowerShell script to validate the syntax of the filter applied to the connector.

How should you complete the script? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.


Question 256
Correct answer: Question 256
asked 05/10/2024
ALBERTO BONATO
46 questions
User
0 comments
Sorted by

Leave a comment first