nerdexam
Microsoft

SC-200 · Question #336

You have an Azure subscription that contains a Microsoft Sentinel workspace named Workspace1. From Content Hub, you deploy the Microsoft Entra solution for Microsoft Sentinel and configure a…

The correct answer is A. Azure Activity. The Azure Monitor Activity Log is a platform log that provides insight into subscription-level https://learn.microsoft.com/en-us/azure/azure-monitor/essentials/activity-log-insights

Submitted by carlos_mx· Apr 18, 2026

Question

You have an Azure subscription that contains a Microsoft Sentinel workspace named Workspace1. From Content Hub, you deploy the Microsoft Entra solution for Microsoft Sentinel and configure a connector. You need to analyze actions performed by users that have administrative privileges to the subscription. Which workbook should you use?

Options

  • AAzure Activity
  • BMicrosoft Entra Audit logs
  • CMicrosoft Entra Sign-ins logs
  • DIdentity & Access

How the community answered

(42 responses)
  • A
    71% (30)
  • B
    5% (2)
  • C
    17% (7)
  • D
    7% (3)

Explanation

The Azure Monitor Activity Log is a platform log that provides insight into subscription-level https://learn.microsoft.com/en-us/azure/azure-monitor/essentials/activity-log-insights

Community Discussion

No community discussion yet for this question.

Full SC-200 Practice