Question 61

You have Microsoft Defender for Cloud assigned to Azure management groups.
You have a Microsoft Sentinel deployment.
During the triage of alerts, you require additional information about the security events, including suggestions for remediation. Which two components can you use to achieve the goal? Each correct answer presents a complete solution.
NOTE: Each correct selection is worth one point.
  • Question 62

    You need to recommend a solution to resolve the virtual machine issue. What should you include in the recommendation? (Choose Two)
  • Question 63

    Your company is moving all on-premises workloads to Azure and Microsoft 365. Vou need to design a security orchestration, automation, and response (SOAR) strategy in Microsoft Sentinel that meets the following requirements:
    * Minimizes manual intervention by security operation analysts
    * Supports Waging alerts within Microsoft Teams channels
    What should you include in the strategy?
  • Question 64

    Your on-premises network contains an e-commerce web app that was developed in Angular and Nodejs. The web app uses a MongoDB database. You plan to migrate the web app to Azure. The solution architecture team proposes the following architecture as an Azure landing zone.

    You need to provide recommendations to secure the connection between the web app and the database. The solution must follow the Zero Trust model.
    Solution: You recommend implementing Azure Key Vault to store credentials.
  • Question 65

    You receive a security alert in Microsoft Defender for Cloud as shown in the exhibit. (Click the Exhibit tab.)

    After remediating the threat which policy definition should you assign to prevent the threat from reoccurring?