nerdexam
MicrosoftMicrosoft

SC-200 · Question #111

SC-200 Question #111: Real Exam Question with Answer & Explanation

The correct answer is A: Azure Sentinel Contributor. Azure Sentinel Contributor can create and edit workbooks, analytics rules, and other Azure Sentinel resources. https://docs.microsoft.com/en-us/azure/sentinel/roles

Submitted by skyler.x· Apr 18, 2026Configure your environment in Microsoft Sentinel

Question

You use Azure Sentinel. You need to use a built-in role to provide a security analyst with the ability to edit the queries of custom Azure Sentinel workbooks. The solution must use the principle of least privilege. Which role should you assign to the analyst?

Options

  • AAzure Sentinel Contributor
  • BSecurity Administrator
  • CAzure Sentinel Responder
  • DLogic App Contributor

Explanation

Azure Sentinel Contributor can create and edit workbooks, analytics rules, and other Azure Sentinel resources. https://docs.microsoft.com/en-us/azure/sentinel/roles

Topics

#Azure Sentinel Roles#RBAC#Least Privilege#Workbooks

Community Discussion

No community discussion yet for this question.

Full SC-200 PracticeBrowse All SC-200 Questions