HOTSPOT
-
You have a Microsoft Sentinel workspace that has User and Entity Behavior Analytics (UEBA) enabled.
You need to identify all the log entries that relate to security-sensitive user actions performed on a server named Server1. The solution must meet the following requirements:
• Only include security-sensitive actions by users that are NOT members of the IT department.
• Minimize the number of false positives.
How should you complete the query? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
ACSC
Highly Voted 2 years, 4 months agotirajvid
1 year, 11 months agoDaraVasu
Highly Voted 2 years, 4 months agosmanzana
Most Recent 10 months, 4 weeks ago7d801bf
11 months, 3 weeks agoDChilds
1 year, 2 months agoKurdd
1 year, 7 months agochepeerick
1 year, 7 months agodonathon
1 year, 10 months agodevop23
1 year, 11 months ago