Microsoft
AZ-500 · Question #643
You have an Azure subscription named Sub1 that contains a resource group named RG1. RG1 contains an Azure logic app named App1. You need to ensure that a user named User1 can add App1 as a playbook…
The correct answer is E. Microsoft Sentinel Contributor for RG1. To add an existing Azure Logic App as a playbook in Microsoft Sentinel, the following roles and scopes are required for the user: Required for the User Role: Microsoft Sentinel Contributor (or higher). Scope: The Resource Group containing the Microsoft Sentinel workspace…
Submitted by haruto_sh· Mar 6, 2026Secure Azure using Microsoft Defender for Cloud and Microsoft Sentinel
Question
You have an Azure subscription named Sub1 that contains a resource group named RG1. RG1 contains an Azure logic app named App1. You need to ensure that a user named User1 can add App1 as a playbook in Microsoft Sentinel. The solution must follow the principle of least privilege. Which role should you assign to User1?
Options
- AMicrosoft Sentinel Contributor for Sub1
- BLogic App Operator for RG1
- CLogic App Operator for Sub1
- DLogic App Contributor for RG1
- EMicrosoft Sentinel Contributor for RG1
How the community answered
(30 responses)- A13% (4)
- B3% (1)
- C7% (2)
- D3% (1)
- E73% (22)
Explanation
To add an existing Azure Logic App as a playbook in Microsoft Sentinel, the following roles and scopes are required for the user: Required for the User Role: Microsoft Sentinel Contributor (or higher). Scope: The Resource Group containing the Microsoft Sentinel workspace. https://learn.microsoft.com/en-us/azure/sentinel/roles
Topics
#Microsoft Sentinel#playbooks#Logic App Operator#RBAC least privilege
Community Discussion
No community discussion yet for this question.