ExamGecko
Home Home / Microsoft / SC-200

Microsoft SC-200 Practice Test - Questions Answers, Page 10

Question list
Search
Search

List of questions

Search

Related questions











You need to ensure that the configuration of HuntingQuery1 meets the Microsoft Sentinel requirements.

What should you do?

A.

Add HuntingQuery1 to a livestream.

A.

Add HuntingQuery1 to a livestream.

Answers
B.

Create a watch list.

B.

Create a watch list.

Answers
C.

Create an Azure Automation rule.

C.

Create an Azure Automation rule.

Answers
D.

Add HuntingQuery1 to favorites.

D.

Add HuntingQuery1 to favorites.

Answers
Suggested answer: D

HOTSPOT

You need to implement the Microsoft Sentinel NRT rule for monitoring the designated break glass account. The solution must meet the Microsoft Sentinel requirements.

How should you complete the query? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.


Question 92
Correct answer: Question 92

HOTSPOT

You need to monitor the password resets. The solution must meet the Microsoft Sentinel requirements.

What should you do? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.


Question 93
Correct answer: Question 93

You need to ensure that the processing of incidents generated by rulequery1 meets the Microsoft Sentinel requirements.

What should you create first?

A.

a playbook with an incident trigger

A.

a playbook with an incident trigger

Answers
B.

a playbook with an entity trigger

B.

a playbook with an entity trigger

Answers
C.

an Azure Automation rule

C.

an Azure Automation rule

Answers
D.

a playbook with an alert trigger

D.

a playbook with an alert trigger

Answers
Suggested answer: A

You need to implement the Defender for Cloud requirements.

Which subscription-level role should you assign to Group1?

A.

Security Admin

A.

Security Admin

Answers
B.

Owner

B.

Owner

Answers
C.

Security Assessment Contributor

C.

Security Assessment Contributor

Answers
D.

Contributor

D.

Contributor

Answers
Suggested answer: B

You need to implement the scheduled rule for incident generation based on rulequery1.

What should you configure first?

A.

entity mapping

A.

entity mapping

Answers
B.

custom details

B.

custom details

Answers
C.

event grouping

C.

event grouping

Answers
D.

alert details

D.

alert details

Answers
Suggested answer: D

You need to ensure that the Group1 members can meet the Microsoft Sentinel requirements.

Which role should you assign to Group1?

A.

Microsoft Sentinel Automation Contributor

A.

Microsoft Sentinel Automation Contributor

Answers
B.

Logic App Contributor

B.

Logic App Contributor

Answers
C.

Automation Operator

C.

Automation Operator

Answers
D.

Microsoft Sentinel Playbook Operator

D.

Microsoft Sentinel Playbook Operator

Answers
Suggested answer: D

HOTSPOT

You need to implement Azure Defender to meet the Azure Defender requirements and the business requirements.

What should you include in the solution? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.


Question 98
Correct answer: Question 98

Explanation:

You need to remediate active attacks to meet the technical requirements.

What should you include in the solution?

A.

Azure Automation runbooks

A.

Azure Automation runbooks

Answers
B.

Azure Logic Apps

B.

Azure Logic Apps

Answers
C.

Azure Functions

C.

Azure Functions

Answers
D.

Azure Sentinel livestreams

D.

Azure Sentinel livestreams

Answers
Suggested answer: B

Explanation:

Reference:

https://docs.microsoft.com/en-us/azure/sentinel/automate-responses-with-playbooks

HOTSPOT

You need to create an advanced hunting query to investigate the executive team issue.

How should you complete the query? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.


Question 100
Correct answer: Question 100
Total 295 questions
Go to page: of 30