Free SC-200 Exam Braindumps (page: 9)

Page 8 of 79

HOTSPOT (Drag and Drop is not supported).
You need to create an advanced hunting query to investigate the executive team issue.
How should you complete the query? To answer, select the appropriate options in the answer area.
Note: Each correct selection is worth one point.
Hot Area:

  1. See Explanation section for answer.

Answer(s): A

Explanation:



DRAG DROP (Drag and Drop is not supported).
You need to configure DC1 to meet the business requirements.
Which four actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
Select and Place:

  1. See Explanation section for answer.

Answer(s): A

Explanation:



Step 1: log in to https://portal.atp.azure.com as a global admin
Step 2: Create the instance -
Step 3. Connect the instance to Active Directory
Step 4. Download and install the sensor.


Reference:

https://docs.microsoft.com/en-us/defender-for-identity/install-step1 https://docs.microsoft.com/en-us/defender-for-identity/install-step4



HOTSPOT
-
You have an Azure DevOps organization that uses Microsoft Defender for DevOps. The organization contains an Azure DevOps repository named Repo1 and an Azure Pipelines pipeline named Pipeline1. Pipeline1 is used to build and deploy code stored in Repo1.
You need to ensure that when Pipeline1 runs, Microsoft Defender for Cloud can perform secret scanning of the code in Repo1.
What should you install in the organization, and what should you add to the YAML file of Pipeline1? To answer, select the appropriate options in the answer area.
Note: Each correct selection is worth one point.

  1. See Explanation section for answer.

Answer(s): A

Explanation:



You have an Azure subscription that uses Microsoft Sentinel.
You need to minimize the administrative effort required to respond to the incidents and remediate the security threats detected by Microsoft Sentinel.
Which two features should you use? Each correct answer presents part of the solution.
Note: Each correct selection is worth one point.

  1. Microsoft Sentinel workbooks
  2. Azure Automation runbooks
  3. Microsoft Sentinel automation rules
  4. Microsoft Sentinel playbooks
  5. Azure Functions apps

Answer(s): C,D






Post your Comments and Discuss Microsoft SC-200 exam with other Community members:

SC-200 Discussions & Posts