nerdexam
MicrosoftMicrosoft

AZ-500 · Question #583

AZ-500 Question #583: Real Exam Question with Answer & Explanation

Sign in or unlock AZ-500 to reveal the answer and full explanation for question #583. The question stem and answer options stay visible for context.

Submitted by femi9· Mar 6, 2026Secure Azure using Microsoft Defender for Cloud and Microsoft Sentinel

Question

You have an Azure subscription that contains a Microsoft Sentinel workspace named Sentinel1. Sentinel1 is NOT onboarded to the Unified security operations platform in Microsoft 365. You need to create a new playbook in Sentinel1. The solution must support the use of automation rules. Which type of playbook should you create?

Options

  • Aa playbook with an incident trigger only
  • Ba playbook with an alert trigger only
  • Ca playbook with an entity trigger only
  • Da playbook with an incident trigger or an alert trigger
  • Ea playbook with an alert trigger or an entity trigger

Unlock AZ-500 to see the answer

You've previewed enough free AZ-500 questions. Unlock AZ-500 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Full AZ-500 PracticeBrowse All AZ-500 Questions