MicrosoftMicrosoft
SC-200 · Question #111
SC-200 Question #111: Real Exam Question with Answer & Explanation
The correct answer is A: Azure Sentinel Contributor. Azure Sentinel Contributor can create and edit workbooks, analytics rules, and other Azure Sentinel resources. https://docs.microsoft.com/en-us/azure/sentinel/roles
Submitted by skyler.x· Apr 18, 2026Configure your environment in Microsoft Sentinel
Question
You use Azure Sentinel. You need to use a built-in role to provide a security analyst with the ability to edit the queries of custom Azure Sentinel workbooks. The solution must use the principle of least privilege. Which role should you assign to the analyst?
Options
- AAzure Sentinel Contributor
- BSecurity Administrator
- CAzure Sentinel Responder
- DLogic App Contributor
Explanation
Azure Sentinel Contributor can create and edit workbooks, analytics rules, and other Azure Sentinel resources. https://docs.microsoft.com/en-us/azure/sentinel/roles
Topics
#Azure Sentinel Roles#RBAC#Least Privilege#Workbooks
Community Discussion
No community discussion yet for this question.