nerdexam
Microsoft

SC-200 · Question #449

Your company uses Microsoft Sentinel to manage alerts from more than 10,000 IoT devices. A security manager at the company reports that tracking security threats is increasingly difficult due to the…

The correct answer is C. workbooks. Jupyter notebooks combine full programmability with a huge collection of libraries for machine learning, visualization, and data analysis. These attributes make Jupyter a compelling tool for security investigation and hunting. workbooks (best) In Microsoft Sentinel, Workbooks…

Submitted by mateo_ar· Apr 18, 2026

Question

Your company uses Microsoft Sentinel to manage alerts from more than 10,000 IoT devices. A security manager at the company reports that tracking security threats is increasingly difficult due to the large number of incidents. You need to recommend a solution to provide a custom visualization to simplify the investigation of threats and to infer threats by using machine learning. What should you include in the recommendation?

Options

  • Abuilt-in queries
  • Blivestream
  • Cworkbooks
  • Dbookmarks

How the community answered

(39 responses)
  • A
    3% (1)
  • B
    18% (7)
  • C
    72% (28)
  • D
    8% (3)

Explanation

Jupyter notebooks combine full programmability with a huge collection of libraries for machine learning, visualization, and data analysis. These attributes make Jupyter a compelling tool for security investigation and hunting. * workbooks (best) In Microsoft Sentinel, Workbooks are for interactive, visual dashboards (like Power BI) for monitoring and reporting, ideal for SOC analysts to see trends and metrics. * built-in queries https://docs.microsoft.com/en-us/azure/sentinel/notebooks https://learn.microsoft.com/en-gb/azure/sentinel/resources

Community Discussion

No community discussion yet for this question.

Full SC-200 Practice