Pre-Summer Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: validbest

Exam SC-200 All Questions
Exam SC-200 All Questions

View all questions & answers for the SC-200 exam

Microsoft Certified: Security Operations Analyst Associate SC-200 Question # 37 Topic 4 Discussion

SC-200 Exam Topic 4 Question 37 Discussion:
Question #: 37
Topic #: 4

You have a custom analytics rule to detect threats in Azure Sentinel.

You discover that the analytics rule stopped running. The rule was disabled, and the rule name has a prefix of AUTO DISABLED.

What is a possible cause of the issue?


A.

There are connectivity issues between the data sources and Log Analytics.


B.

The number of alerts exceeded 10,000 within two minutes.


C.

The rule query takes too long to run and times out.


D.

Permissions to one of the data sources of the rule query were modified.


Get Premium SC-200 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.