nerdexam
Microsoft

AZ-500 · Question #643

You have an Azure subscription named Sub1 that contains a resource group named RG1. RG1 contains an Azure logic app named App1. You need to ensure that a user named User1 can add App1 as a playbook…

The correct answer is E. Microsoft Sentinel Contributor for RG1. To add an existing Azure Logic App as a playbook in Microsoft Sentinel, the following roles and scopes are required for the user: Required for the User Role: Microsoft Sentinel Contributor (or higher). Scope: The Resource Group containing the Microsoft Sentinel workspace…

Submitted by haruto_sh· Mar 6, 2026Secure Azure using Microsoft Defender for Cloud and Microsoft Sentinel

Question

You have an Azure subscription named Sub1 that contains a resource group named RG1. RG1 contains an Azure logic app named App1. You need to ensure that a user named User1 can add App1 as a playbook in Microsoft Sentinel. The solution must follow the principle of least privilege. Which role should you assign to User1?

Options

  • AMicrosoft Sentinel Contributor for Sub1
  • BLogic App Operator for RG1
  • CLogic App Operator for Sub1
  • DLogic App Contributor for RG1
  • EMicrosoft Sentinel Contributor for RG1

How the community answered

(30 responses)
  • A
    13% (4)
  • B
    3% (1)
  • C
    7% (2)
  • D
    3% (1)
  • E
    73% (22)

Explanation

To add an existing Azure Logic App as a playbook in Microsoft Sentinel, the following roles and scopes are required for the user: Required for the User Role: Microsoft Sentinel Contributor (or higher). Scope: The Resource Group containing the Microsoft Sentinel workspace. https://learn.microsoft.com/en-us/azure/sentinel/roles

Topics

#Microsoft Sentinel#playbooks#Logic App Operator#RBAC least privilege

Community Discussion

No community discussion yet for this question.

Full AZ-500 Practice