SC-200 · Question #336
You have an Azure subscription that contains a Microsoft Sentinel workspace named Workspace1. From Content Hub, you deploy the Microsoft Entra solution for Microsoft Sentinel and configure a…
The correct answer is A. Azure Activity. The Azure Monitor Activity Log is a platform log that provides insight into subscription-level https://learn.microsoft.com/en-us/azure/azure-monitor/essentials/activity-log-insights
Question
You have an Azure subscription that contains a Microsoft Sentinel workspace named Workspace1. From Content Hub, you deploy the Microsoft Entra solution for Microsoft Sentinel and configure a connector. You need to analyze actions performed by users that have administrative privileges to the subscription. Which workbook should you use?
Options
- AAzure Activity
- BMicrosoft Entra Audit logs
- CMicrosoft Entra Sign-ins logs
- DIdentity & Access
How the community answered
(42 responses)- A71% (30)
- B5% (2)
- C17% (7)
- D7% (3)
Explanation
The Azure Monitor Activity Log is a platform log that provides insight into subscription-level https://learn.microsoft.com/en-us/azure/azure-monitor/essentials/activity-log-insights
Community Discussion
No community discussion yet for this question.