nerdexam
Microsoft

SC-200 · Question #129

You have a Microsoft 365 E5 subscription that is linked to a hybrid Azure AD tenant. You need to identify all the changes made to Domain Admins group during the past 30 days. What should you use?

The correct answer is C. the Modifications of sensitive groups report in Microsoft Defender for Identity. The Modifications of sensitive groups report in Microsoft Defender for Identity would be the best option to use to identify all the changes made to the Domain Admins group during the past 30 days. This report provides information about changes made to sensitive groups…

Submitted by certguy· Apr 18, 2026Manage threat mitigation using Microsoft Defender XDR

Question

You have a Microsoft 365 E5 subscription that is linked to a hybrid Azure AD tenant. You need to identify all the changes made to Domain Admins group during the past 30 days. What should you use?

Options

  • Athe Azure Active Directory Provisioning Analysis workbook
  • Bthe Overview settings of Insider risk management
  • Cthe Modifications of sensitive groups report in Microsoft Defender for Identity
  • Dthe identity security posture assessment in Microsoft Defender for Cloud Apps

How the community answered

(18 responses)
  • A
    11% (2)
  • B
    6% (1)
  • C
    78% (14)
  • D
    6% (1)

Explanation

The Modifications of sensitive groups report in Microsoft Defender for Identity would be the best option to use to identify all the changes made to the Domain Admins group during the past 30 days. This report provides information about changes made to sensitive groups, including the Domain Admins group, in the Azure AD environment and helps to identify potential security

Topics

#Microsoft Defender for Identity#Hybrid Identity Security#Active Directory Auditing#Sensitive Group Monitoring

Community Discussion

No community discussion yet for this question.

Full SC-200 Practice