SC-100 · Question #107
SC-100 Question #107: Real Exam Question with Answer & Explanation
Sign in or unlock SC-100 to reveal the answer and full explanation for question #107. The question stem and answer options stay visible for context.
Question
A customer has a hybrid cloud infrastructure that contains a Microsoft 365 E5 subscription and an Azure subscription. All the on-premises servers in the perimeter network are prevented from connecting directly to the internet. The customer recently recovered from a ransomware attack. The customer plans to deploy Microsoft Sentinel. You need to recommend configurations to meet the following requirements: - Ensure that the security operations team can access the security logs and the operation logs. - Ensure that the IT operations team can access only the operations logs, including the event logs of the servers in the perimeter network. Which two configurations can you include in the recommendation? Each correct answer presents a complete solution. NOTE: Each correct selection is worth one point.
Options
- AConfigure Azure Active Directory (Azure AD) Conditional Access policies.
- BCreate a custom collector that uses the Log Analytics agent.
- CImplement resource-based role-based access control (RBAC) in Microsoft Sentinel.
- DUse the Azure Monitor agent with the multi-homing configuration.
Unlock SC-100 to see the answer
You've previewed enough free SC-100 questions. Unlock SC-100 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.