<< Prev Question Next Question >>

Question 13/29

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You are configuring Azure Sentinel.
You need to create an incident in Azure Sentinel when a sign-in to an Azure virtual machine from a malicious IP address is detected.
Solution: You create a scheduled query rule for a data connector.
Does this meet the goal?

LEAVE A REPLY

Your email address will not be published. Required fields are marked *

Question List (29q)
Question 1: Your company deploys Azure Sentinel. You plan to delegate th...
Question 2: The issue for which team can be resolved by using Microsoft ...
Question 3: You use Azure Sentinel to monitor irregular Azure activity. ...
Question 4: You need to configure the Azure Sentinel integration to meet...
Question 5: Note: This question is part of a series of questions that pr...
Question 6: You use Azure Defender. You have an Azure Storage account th...
Question 7: You have an Azure Sentinel deployment in the East US Azure r...
Question 8: You deploy Azure Sentinel. You need to implement connectors ...
Question 9: You are configuring Azure Sentinel. You need to send a Micro...
Question 10: Note: This question is part of a series of questions that pr...
Question 11: You plan to create a custom Azure Sentinel query that will t...
Question 12: The issue for which team can be resolved by using Microsoft ...
Question 13: Note: This question is part of a series of questions that pr...
Question 14: You recently deployed Azure Sentinel. You discover that the ...
Question 15: You have resources in Azure and Google cloud. You need to in...
Question 16: You need to implement Azure Sentinel queries for Contoso and...
Question 17: You need to use an Azure Resource Manager template to create...
Question 18: You are informed of a new common vulnerabilities and exposur...
Question 19: Your company uses Azure Sentinel to manage alerts from more ...
Question 20: You need to visualize Azure Sentinel data and enrich the dat...
Question 21: You plan to create a custom Azure Sentinel query that will p...
Question 22: You have an Azure Sentinel workspace. You need to test a pla...
Question 23: You open the Cloud App Security portal as shown in the follo...
Question 24: Your company deploys the following services: Microsoft Defen...
Question 25: Note: This question is part of a series of questions that pr...
Question 26: You receive an alert from Azure Defender for Key Vault. You ...
Question 27: Your company uses line-of-business apps that contain Microso...
Question 28: You are responsible for responding to Azure Defender for Key...
Question 29: Your company uses Azure Sentinel. A new security analyst rep...