exam questions

Exam SC-200 All Questions

View all questions & answers for the SC-200 exam

Exam SC-200 topic 6 question 3 discussion

Actual exam question from Microsoft's SC-200
Question #: 3
Topic #: 6
[All SC-200 Questions]

You have an Azure subscription that uses Microsoft Sentinel.

You need to minimize the administrative effort required to respond to the incidents and remediate the security threats detected by Microsoft Sentinel.

Which two features should you use? Each correct answer presents part of the solution.

NOTE: Each correct selection is worth one point.

  • A. Microsoft Sentinel workbooks
  • B. Azure Automation runbooks
  • C. Microsoft Sentinel automation rules
  • D. Microsoft Sentinel playbooks
  • E. Azure Functions apps
Show Suggested Answer Hide Answer
Suggested Answer: CD 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
smanzana
9 months, 1 week ago
Correct
upvoted 4 times
...
Hawklx
9 months, 2 weeks ago
same question as 37 topic 3
upvoted 4 times
...
MadLads
10 months ago
Selected Answer: CD
By using Microsoft Sentinel automation rules and Microsoft Sentinel playbooks, you can effectively automate the detection, response, and remediation processes, reducing the manual effort required and ensuring quicker and more consistent handling of security incidents.
upvoted 2 times
...
RedZtopics
1 year ago
for me B and D
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago