You have an Azure subscription that contains several Azure SQL databases and an Azure Sentinel workspace. You need to create a saved query in the workspace to find events reported by Azure Defender for SQL. What should you do?
A.
From Azure CLI, run the Get-AzOperationalInsightsWorkspace cmdlet.
B.
From the Azure SQL Database query editor, create a Transact-SQL query.
C.
From the Azure Sentinel workspace, create a Kusto query language query.
D.
From Microsoft SQL Server Management Studio (SSMS), create a Transact-SQL query.
This section is not available anymore. Please use the main Exam Page.AZ-500 Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
mehdimed
Highly Voted 2 years, 10 months agofrancis6170
Highly Voted 2 years, 7 months agoESAJRR
Most Recent 7 months, 2 weeks agoServerBrain
1 year, 1 month agomajstor86
1 year, 2 months agoligu
1 year, 2 months agoF117A_Stealth
1 year, 6 months agoEltooth
2 years, 1 month agokam117
2 years, 7 months agoSecurityAnalyst
2 years, 8 months ago