Pre-Summer Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: validbest

Exam SC-200 All Questions
Exam SC-200 All Questions

View all questions & answers for the SC-200 exam

Microsoft Certified: Security Operations Analyst Associate SC-200 Question # 71 Topic 8 Discussion

SC-200 Exam Topic 8 Question 71 Discussion:
Question #: 71
Topic #: 8

You need to ensure that the processing of incidents generated by rulequery1 meets the Microsoft Sentinel requirements.

What should you create first?


A.

a playbook with an incident trigger


B.

a playbook with an entity trigger


C.

an Azure Automation rule


D.

a playbook with an alert trigger


Get Premium SC-200 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.