nerdexam
Microsoft

SC-200 · Question #65

You recently deployed Microsoft Sentinel. You discover that the default Fusion rule does not generate any alerts. You verify that the rule is enabled. You need to ensure that the Fusion rule can…

The correct answer is B. Add data connectors. Add data connectors to bring in source data for rules, notebooks, playbooks to query/take action https://docs.microsoft.com/en-us/azure/sentinel/configure-fusion-rules

Submitted by ngozi_ng· Apr 18, 2026Manage log connection to Microsoft Sentinel

Question

You recently deployed Microsoft Sentinel. You discover that the default Fusion rule does not generate any alerts. You verify that the rule is enabled. You need to ensure that the Fusion rule can generate alerts. What should you do?

Options

  • ADisable, and then enable the rule.
  • BAdd data connectors.
  • CCreate a new machine learning analytics rule.
  • DAdd a hunting bookmark.

How the community answered

(32 responses)
  • A
    3% (1)
  • B
    72% (23)
  • C
    6% (2)
  • D
    19% (6)

Explanation

Add data connectors to bring in source data for rules, notebooks, playbooks to query/take action https://docs.microsoft.com/en-us/azure/sentinel/configure-fusion-rules

Topics

#Microsoft Sentinel#Fusion rule#Data connectors#Alert generation

Community Discussion

No community discussion yet for this question.

Full SC-200 Practice