Question 36

Your company deploys Azure Sentinel.
You plan to delegate the administration of Azure Sentinel to various groups.
You need to delegate the following tasks:
* Create and run playbooks
* Create workbooks and analytic rules.
The solution must use the principle of least privilege.
Which role should you assign for each task? To answer, drag the appropriate roles to the correct tasks. Each role may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.
NOTE: Each correct selection is worth one point.

Question 37

You need to ensure that the configuration of HuntingQuery1 meets the Microsoft Sentinel requirements.
What should you do?
  • Question 38

    You need to meet the Microsoft Defender for Cloud Apps requirements
    What should you do? To answer. select the appropriate options in the answer area.
    NOTE: Each correct selection is worth one point.

    Question 39

    You have an Azure subscription that has Azure Defender enabled for all supported resource types.
    You need to configure the continuous export of high-severity alerts to enable their retrieval from a third-party security information and event management (SIEM) solution.
    To which service should you export the alerts?
  • Question 40

    You need to configure DC1 to meet the business requirements.
    Which four actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.