Question 51

You plan to connect an external solution that will send Common Event Format (CEF) messages to Azure Sentinel.
You need to deploy the log forwarder.
Which three actions should you perform in sequence? To answer, move the appropriate actions form the list of actions to the answer area and arrange them in the correct order.

Question 52

The issue for which team can be resolved by using Microsoft Defender for Endpoint?
  • Question 53

    You have an Azure subscription that has Azure Defender enabled for all supported resource types.
    You create an Azure logic app named LA1.
    You plan to use LA1 to automatically remediate security risks detected in Azure Security Center.
    View the window
    You need to test LA1 in Security Center.
    What should you do? To answer, select the appropriate options in the answer area.
    NOTE: Each correct selection is worth one point.

    Question 54

    From Azure Sentinel, you open the Investigation pane for a high-severity incident as shown in the following exhibit.

    Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.
    NOTE: Each correct selection is worth one point.

    Question 55

    You need to implement Azure Defender to meet the Azure Defender requirements and the business requirements.
    What should you include in the solution? To answer, select the appropriate options in the answer area.
    NOTE: Each correct selection is worth one point.