nerdexam
MicrosoftMicrosoft

AZ-500 · Question #277

AZ-500 Question #277: Real Exam Question with Answer & Explanation

Sign in or unlock AZ-500 to reveal the answer and full explanation for question #277. The question stem and answer options stay visible for context.

Submitted by akirajp· Mar 6, 2026Configure SIEM and threat detection solutions / Manage security monitoring with Microsoft Sentinel (SC-200 / AZ-500 Security Domain)

Question

Hotspot Question You have an Azure subscription named Subscription1 that contains the resources shown in the following table. You have an Azure subscription named Subscription2 that contains the following resources: - An Azure Sentinel workspace - An Azure Event Grid instance You need to ingest the CEF messages from the NVAs to Azure Sentinel. What should you configure for each subscription? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point. Answer:

Unlock AZ-500 to see the answer

You've previewed enough free AZ-500 questions. Unlock AZ-500 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#Azure Sentinel#CEF Log Ingestion#Event Hubs#Log Analytics Workspace
Full AZ-500 PracticeBrowse All AZ-500 Questions