nerdexam
MicrosoftMicrosoft

SC-100 · Question #140

SC-100 Question #140: Real Exam Question with Answer & Explanation

The correct answer is A: Microsoft Sentinel. Option A is correct because Microsoft Sentinel delivers intelligent security analytics and threat intelligence across the enterprise. With Microsoft Sentinel, you get a single solution for attack detection, threat visibility, proactive hunting, and threat response. Option B is in

Design security operations, identity, and compliance capabilities

Question

You are a security architect for a company with Microsoft Azure and Microsoft 365 subscriptions, and you recently had a ransomware attack. After reviewing with the team, you found that while information was available to help remediate the attack, the information was not central to help contextualize the security incident, slowing down the remedial action. Which tools can provide a central console to detect, investigate, remediate, hunt, utilize threat intelligence, and contextualize security incidents?

Options

  • AMicrosoft Sentinel
  • BMicrosoft Defender for Cloud
  • CMicrosoft Defender for 365 Apps
  • DDefender for Endpoint

Explanation

Option A is correct because Microsoft Sentinel delivers intelligent security analytics and threat intelligence across the enterprise. With Microsoft Sentinel, you get a single solution for attack detection, threat visibility, proactive hunting, and threat response. Option B is incorrect because Microsoft Defender for Cloud does not provide proactive hunting and threat response. Option C is incorrect because Microsoft Defender for 365 Apps will not provide attack detection, threat visibility, proactive hunting, and threat response for Azure resources. Option D is incorrect because Defender for Endpoint will not offer a single solution for attack detection, threat visibility, proactive hunting, and threat response. https://learn.microsoft.com/en-us/azure/sentinel/overview

Topics

#Microsoft Sentinel#SIEM#Security Operations#Incident Response

Community Discussion

No community discussion yet for this question.

Full SC-100 PracticeBrowse All SC-100 Questions