Question 61

You provision a Linux virtual machine in a new Azure subscription.
You enable Azure Defender and onboard the virtual machine to Azure Defender.
You need to verify that an attack on the virtual machine triggers an alert in Azure Defender.
Which two Bash commands should you run on the virtual machine? Each correct answer presents part of the solution.
NOTE: Each correct selection is worth one point.
  • Question 62

    The issue for which team can be resolved by using Microsoft Defender for Endpoint?
  • Question 63

    You create a new Azure subscription and start collecting logs for Azure Monitor.
    You need to configure Azure Security Center to detect possible threats related to sign-ins from suspicious IP addresses to Azure virtual machines. The solution must validate the configuration.
    Which three actions should you perform in a sequence? To answer, move the appropriate actions from the list of action to the answer area and arrange them in the correct order.

    Question 64

    You deploy Azure Sentinel.
    You need to implement connectors in Azure Sentinel to monitor Microsoft Teams and Linux virtual machines in Azure. The solution must minimize administrative effort.
    Which data connector type should you use for each workload? To answer, select the appropriate options in the answer area.
    NOTE: Each correct selection is worth one point.

    Question 65

    You provision Azure Sentinel for a new Azure subscription. You are configuring the Security Events connector.
    While creating a new rule from a template in the connector, you decide to generate a new alert for every event. You create the following rule query.

    By which two components can you group alerts into incidents? Each correct answer presents a complete
    solution.
    NOTE: Each correct selection is worth one point.