Winter Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: bigdisc65

Pass SC-200 Exam Guide

Page: 7 / 13
Question 28

You have an Azure subscription that has Microsoft Defender for Cloud enabled.

You have a virtual machine named Server! that runs Windows Server 2022 and is hosted in Amazon Web Services (AWS).

You need to collect logs and resolve vulnerabilities for Server1 by using Defender for Cloud.

What should you install first on Server1?

Options:

A.

the Microsoft Monitoring Agent

B.

the Azure Arc agent

C.

the Azure Monitor agent

D.

the Azure Pipelines agent

Question 29

You have a Microsoft Sentinel workspace.

You need to create a KQL query that will identify successful sign-ins from multiple countries during the last three hours.

How should you complete the query? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point

Options:

Question 30

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.

After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.

You use Azure Security Center.

You receive a security alert in Security Center.

You need to view recommendations to resolve the alert in Security Center.

Solution: From Regulatory compliance, you download the report.

Does this meet the goal?

Options:

A.

Yes

B.

No

Question 31

You need to visualize Azure Sentinel data and enrich the data by using third-party data sources to identify indicators of compromise (IoC).

What should you use?

Options:

A.

notebooks in Azure Sentinel

B.

Microsoft Cloud App Security

C.

Azure Monitor

D.

hunting queries in Azure Sentinel

Page: 7 / 13
Exam Code: SC-200
Exam Name: Microsoft Security Operations Analyst
Last Update: Nov 21, 2024
Questions: 294
SC-200 pdf

SC-200 PDF

$31.5  $90
SC-200 Engine

SC-200 Testing Engine

$36.75  $105
SC-200 PDF + Engine

SC-200 PDF + Testing Engine

$49  $140