Question 26

Your company uses Azure Sentinel.
A new security analyst reports that she cannot assign and dismiss incidents in Azure Sentinel. You need to resolve the issue for the analyst. The solution must use the principle of least privilege. Which role should you assign to the analyst?
  • Question 27

    The issue for which team can be resolved by using Microsoft Defender for Endpoint?
  • Question 28

    You have a Microsoft 365 subscription that uses Microsoft Defender XDR. You need to implement deception rules. The solution must ensure that you can limit the scope of the rules.
    What should you create first? A. device groups
  • Question 29

    You have an Azure subscription that contains a user named User1 and a Microsoft Sentinel workspace named WS1.
    You need to ensure that User1 can enable User and Entity Behavior Analytics (UEBA) for WS1. The solution must follow the principle of least privilege.
    Which roles should you assign to User1? To answer, select the appropriate options in the answer area.
    NOTE: Each correct selection is worth one point.

    Question 30

    You need to monitor the password resets. The solution must meet the Microsoft Sentinel requirements.
    What should you do? To answer, select the appropriate options in the answer area.
    NOTE: Each correct selection is worth one point.