Microsoft
AZ-500 · Question #393
You have an Azure Sentinel workspace. You need to create a playbook. Which two triggers will start the playbook? Each correct answer presents a complete solution. NOTE: Each correct selection is…
The correct answer is C. An Azure Sentinel alert is generated. E. An Azure Sentinel incident is created. https://docs.microsoft.com/en-us/azure/sentinel/tutorial-respond-threats-playbook
Submitted by the_admin· Mar 6, 2026Secure Azure using Microsoft Defender for Cloud and Microsoft Sentinel
Question
You have an Azure Sentinel workspace. You need to create a playbook. Which two triggers will start the playbook? Each correct answer presents a complete solution. NOTE: Each correct selection is worth one point.
Options
- AAn Azure Sentinel scheduled query rule is executed.
- BAn Azure Sentinel data connector is added.
- CAn Azure Sentinel alert is generated.
- DAn Azure Sentinel hunting query result is returned.
- EAn Azure Sentinel incident is created.
How the community answered
(25 responses)- A4% (1)
- B4% (1)
- C92% (23)
Explanation
https://docs.microsoft.com/en-us/azure/sentinel/tutorial-respond-threats-playbook
Community Discussion
No community discussion yet for this question.