nerdexam
Microsoft

SC-100 · Question #140

You are a security architect for a company with Microsoft Azure and Microsoft 365 subscriptions, and you recently had a ransomware attack. After reviewing with the team, you found that while informati

Sign in or unlock SC-100 to reveal the answer and full explanation for question #140. The question stem and answer options stay visible for context.

Design security operations, identity, and compliance capabilities

Question

You are a security architect for a company with Microsoft Azure and Microsoft 365 subscriptions, and you recently had a ransomware attack. After reviewing with the team, you found that while information was available to help remediate the attack, the information was not central to help contextualize the security incident, slowing down the remedial action. Which tools can provide a central console to detect, investigate, remediate, hunt, utilize threat intelligence, and contextualize security incidents?

Options

  • AMicrosoft Sentinel
  • BMicrosoft Defender for Cloud
  • CMicrosoft Defender for 365 Apps
  • DDefender for Endpoint

Unlock SC-100 to see the answer

You've previewed enough free SC-100 questions. Unlock SC-100 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#Microsoft Sentinel#SIEM#Security Operations#Incident Response
Full SC-100 Practice