<< Prev Question Next Question >>

Question 41/130

You have a Microsoft subscription that has Microsoft Defender for Cloud enabled You configure the Azure logic apps shown in the following table.

You need to configure an automatic action that will run if a Suspicious process executed alert is triggered. The solution must minimize administrative effort.
Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.

LEAVE A REPLY

Your email address will not be published. Required fields are marked *

Question List (130q)
Question 1: You create a hunting query in Azure Sentinel. You need to re...
Question 2: You need to ensure that the configuration of HuntingQuery1 m...
Question 3: You need to implement the scheduled rule for incident genera...
Question 4: You have an Azure subscription. You need to stream the Micro...
Question 5: Your company uses Microsoft Sentinel A new security analyst ...
Question 6: You have a Microsoft 365 tenant that uses Microsoft Exchange...
Question 7: You need to implement the ASIM query for DNS requests. The s...
Question 8: You have 50 on-premises servers. You have an Azure subscript...
Question 9: You have a Microsoft 365 E5 subscription that uses Microsoft...
Question 10: You have a Microsoft 365 subscription that uses Microsoft De...
Question 11: You have an Azure subscription named Sub1 and a Microsoft 36...
Question 12: You have a Microsoft Sentinel workspace named sws1. You need...
Question 13: You manage the security posture of an Azure subscription tha...
Question 14: You need to deploy the native cloud connector to Account! to...
Question 15: Your company deploys Azure Sentinel. You plan to delegate th...
Question 16: You are informed of a new common vulnerabilities and exposur...
Question 17: You have an Azure subscription that uses Microsoft Sentinel....
Question 18: You use Azure Sentinel. You need to use a built-in role to p...
Question 19: You have a Microsoft 365 subscription that uses Microsoft De...
Question 20: You have a Microsoft 365 E5 subscription that uses Microsoft...
Question 21: You have a Microsoft 365 subscription that uses Microsoft De...
Question 22: You are configuring Microsoft Cloud App Security. You have a...
Question 23: You need to meet the Microsoft Sentinel requirements for App...
Question 24: You plan to create a custom Azure Sentinel query that will p...
Question 25: You have a Microsoft 365 E5 subscription that uses Microsoft...
Question 26: You have a Microsoft Sentinel workspace named Workspace1 and...
Question 27: You have resources in Azure and Google cloud. You need to in...
Question 28: Note: This question is part of a series of questions that pr...
Question 29: You need to modify the anomaly detection policy settings to ...
Question 30: You have a Microsoft 365 subscription that uses Microsoft De...
Question 31: You need to implement the Defender for Cloud requirements. W...
Question 32: You need to assign a role-based access control (RBAC) role t...
Question 33: You use Microsoft Sentinel. You need to receive an alert in ...
Question 34: You have a Microsoft Sentinel workspace. You enable User and...
Question 35: Your on-premises network contains an Active Directory Domain...
Question 36: You have an Azure subscription that uses resource type for C...
Question 37: You are configuring Azure Sentinel. You need to send a Micro...
Question 38: You have a Microsoft 365 E5 subscription that uses Microsoft...
Question 39: You have two Azure subscriptions that use Microsoft Defender...
Question 40: You receive an alert from Azure Defender for Key Vault. You ...
Question 41: You have a Microsoft subscription that has Microsoft Defende...
Question 42: You have a Microsoft 365 subscription that uses Microsoft Pu...
Question 43: You have an Azure subscription that contains 100 Linux virtu...
Question 44: You need to implement the query for Workbook1 and Webapp1. T...
Question 45: You have a Microsoft Sentinel workspace named SW1. In SW1. y...
Question 46: You have a Microsoft 365 E5 subscription that contains 200 W...
Question 47: Your company uses Azure Sentinel to manage alerts from more ...
Question 48: You need to visualize Azure Sentinel data and enrich the dat...
Question 49: The issue for which team can be resolved by using Microsoft ...
Question 50: You have an Azure Sentinel deployment in the East US Azure r...
Question 51: You plan to connect an external solution that will send Comm...
Question 52: You need to complete the query for failed sign-ins to meet t...
Question 53: You have an Azure subscription that uses Microsoft Defender ...
Question 54: You have a custom Microsoft Sentinel workbook named Workbook...
Question 55: You have a Microsoft Sentinel workspace that contains a cust...
Question 56: You need to receive a security alert when a user attempts to...
Question 57: You have an Azure subscription that uses Microsoft Defender ...
Question 58: You have a Microsoft Sentinel workspace that contains an Azu...
Question 59: You have an Azure subscription that contains a Log Analytics...
Question 60: You have an Azure subscription that has Microsoft Defender f...
Question 61: You have a Microsoft Sentinel workspace named workspace1 and...
Question 62: You create a new Azure subscription and start collecting log...
Question 63: You have an on-premises datacenter that contains a custom we...
Question 64: You are configuring Azure Sentinel. You need to send a Micro...
Question 65: You have a Microsoft Sentinel workspace. A Microsoft Sentine...
Question 66: You have an Azure Functions app that generates thousands of ...
Question 67: You have a Microsoft 365 subscription that uses Microsoft 36...
Question 68: You have a Microsoft 365 subscription that uses Azure Defend...
Question 69: You need to meet the Microsoft Defender for Cloud Apps requi...
Question 70: You have an Azure subscription linked to an Azure Active Dir...
Question 71: You need to create the test rule to meet the Azure Sentinel ...
Question 72: From Azure Sentinel, you open the Investigation pane for a h...
Question 73: You have an Azure subscription that contains a Log Analytics...
Question 74: You have an Azure subscription that uses Microsoft Defender ...
Question 75: You have 50 Microsoft Sentinel workspaces. You need to view ...
Question 76: Note: This question is part of a series of questions that pr...
Question 77: You use Azure Sentinel. You need to receive an immediate ale...
Question 78: You have an existing Azure logic app that is used to block A...
Question 79: You have an Azure subscription. The subscription contains 10...
Question 80: You have an Azure Storage account that will be accessed by m...
Question 81: You provision a Linux virtual machine in a new Azure subscri...
Question 82: You have a Microsoft 365 subscription that uses Microsoft 36...
Question 83: You have 500 on-premises Windows 11 devices that use Microso...
Question 84: You need to configure DC1 to meet the business requirements....
Question 85: Note: This question is part of a series of questions that pr...
Question 86: You have a Microsoft Sentinel workspace that has User and En...
Question 87: You have an Azure subscription that uses Microsoft Sentinel ...
Question 88: You have an Azure subscription that uses Microsoft Defender ...
Question 89: You have on-premises servers that run Windows Server. You ha...
Question 90: You have a Microsoft Sentinel workspace named SW1. You need ...
Question 91: You have an Azure Sentinel workspace. You need to test a pla...
Question 92: You open the Cloud App Security portal as shown in the follo...
Question 93: You have four Azure subscriptions. One of the subscriptions ...
Question 94: You have a Microsoft Sentinel workspace that contains the fo...
Question 95: You have a Microsoft 365 subscription that uses Microsoft De...
Question 96: Note: This question is part of a series of questions that pr...
Question 97: You are investigating an incident in Azure Sentinel that con...
Question 98: You have an Azure subscription that has Azure Defender enabl...
Question 99: You have a Microsoft Sentinel workspace that has a default d...
Question 100: You have a Microsoft 365 E5 subscription that uses Microsoft...
Question 101: You have an Azure subscription. You need to delegate permiss...
Question 102: You have a Microsoft 365 E5 subscription that contains a dev...
Question 103: You have a Microsoft 365 subscription that uses Microsoft 36...
Question 104: You have an Azure subscription that uses Microsoft Defender ...
Question 105: Your company uses Azure Security Center and Azure Defender. ...
Question 106: You are responsible for responding to Azure Defender for Key...
Question 107: You have a Microsoft 365 subscription that uses Microsoft De...
Question 108: You have an Azure subscription that uses Microsoft Defender ...
Question 109: You have an Azure subscription that uses Microsoft Defender ...
Question 110: You have the following advanced hunting query in Microsoft 3...
Question 111: You have an Azure subscription that contains 50 virtual mach...
Question 112: You have a Microsoft 365 subscription that contains 1,000 Wi...
Question 113: You have a Microsoft Sentinel playbook that is triggered by ...
Question 114: You have a Microsoft 365 E5 subscription that uses Microsoft...
Question 115: You have an Azure subscription that use Microsoft Defender f...
Question 116: You have a playbook in Azure Sentinel. When you trigger the ...
Question 117: You have the resources shown in the following table. (Exhibi...
Question 118: You have a Microsoft 365 E5 subscription that contains two u...
Question 119: Note: This question is part of a series of questions that pr...
Question 120: You have a Microsoft 365 subscription You need to identify a...
Question 121: You have a Microsoft Sentinel workspace You develop a custom...
Question 122: You need to implement Microsoft Defender for Cloud to meet t...
Question 123: You have an Azure subscription that contains a user named Us...
Question 124: You have a Microsoft 365 subscription that has Microsoft 365...
Question 125: You have the following KQL query. (Exhibit)...
Question 126: You have an Azure subscription that uses Microsoft Defender ...
Question 127: You have a Microsoft 365 E5 subscription that uses Microsoft...
Question 128: Which rule setting should you configure to meet the Microsof...
Question 129: You have a Microsoft Sentine1 workspace that contains a cust...
Question 130: You need to create an advanced hunting query to investigate ...