Question 41

The issue for which team can be resolved by using Microsoft Defender for Office 365?
  • Question 42

    You have resources in Azure and Google cloud.
    You need to ingest Google Cloud Platform (GCP) data into Azure Defender.
    In which order should you perform the actions? To answer, move all actions from the list of actions to the answer area and arrange them in the correct order.

    Question 43

    You plan to create a custom Azure Sentinel query that will track anomalous Azure Active Directory (Azure AD) sign-in activity and present the activity as a time chart aggregated by day.
    You need to create a query that will be used to display the time chart. What should you include in the query?
  • Question 44

    Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
    After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
    You are configuring Azure Sentinel.
    You need to create an incident in Azure Sentinel when a sign-in to an Azure virtual machine from a malicious IP address is detected.
    Solution: You create a hunting bookmark.
    Does this meet the goal?
  • Question 45

    You have an Azure subscription that uses Microsoft Sentinel.
    You need to minimize the administrative effort required to respond to the incidents and remediate the security threats detected by Microsoft Sentinel.
    Which two features should you use? Each correct answer presents part of the solution.
    NOTE: Each correct selection is worth one point.