ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 292 - AZ-500 discussion

Report
Export

You have an Azure Sentinel workspace.

You need to create a playbook.

Which two triggers will start the playbook? Each correct answer presents a complete solution, NOTE: Each correct selection is worth one point.

A.
An Azure Sentinel scheduled query rule is executed.
Answers
A.
An Azure Sentinel scheduled query rule is executed.
B.
An Azure Sentinel data connector is added.
Answers
B.
An Azure Sentinel data connector is added.
C.
An Azure Sentinel alert is generated.
Answers
C.
An Azure Sentinel alert is generated.
D.
An Azure Sentinel hunting query result is returned.
Answers
D.
An Azure Sentinel hunting query result is returned.
E.
An Azure Sentinel incident is created.
Answers
E.
An Azure Sentinel incident is created.
Suggested answer: C, E

Explanation:

https://docs.microsoft.com/en-us/azure/sentinel/tutorial-respond-threats-playbook

asked 02/10/2024
Guillaume Deterville
46 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first