nerdexam
MicrosoftMicrosoft

SC-200 · Question #271

SC-200 Question #271: Real Exam Question with Answer & Explanation

Sign in or unlock SC-200 to reveal the answer and full explanation for question #271. The question stem and answer options stay visible for context.

Submitted by viktor_hu· Apr 18, 2026Manage threat mitigation using Microsoft Defender for Cloud

Question

You create an Azure subscription named sub1. In sub1, you create a Log Analytics workspace named workspace1. You enable Microsoft Defender for Cloud and configure Defender for Cloud to use workspace1. You need to collect security event logs from the Azure virtual machines that report to workspace1. What should you do?

Options

  • AFrom Defender for Cloud, modify Microsoft Defender for Servers plan settings.
  • BIn sub1, register a provider.
  • CFrom Defender for Cloud, create a workflow automation.
  • DIn workspace1, create a workbook.

Unlock SC-200 to see the answer

You've previewed enough free SC-200 questions. Unlock SC-200 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#Microsoft Defender for Cloud#Log Analytics#Security Event Collection#Microsoft Defender for Servers
Full SC-200 PracticeBrowse All SC-200 Questions