HOTSPOT
-
You have a Microsoft Sentinel workspace that has User and Entity Behavior Analytics (UEBA) enabled.
You need to identify all the log entries that relate to security-sensitive user actions performed on a server named Server1. The solution must meet the following requirements:
• Only include security-sensitive actions by users that are NOT members of the IT department.
• Minimize the number of false positives.
How should you complete the query? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
ACSC
Highly Voted 2 years, 3 months agotirajvid
1 year, 10 months agoDaraVasu
Highly Voted 2 years, 2 months agosmanzana
Most Recent 9 months, 1 week ago7d801bf
10 months agoDChilds
1 year agoKurdd
1 year, 6 months agochepeerick
1 year, 6 months agodonathon
1 year, 8 months agodevop23
1 year, 10 months ago