CertyRush
Đang tải...
C CertyRush
Câu hỏi free preview

Câu 99: SC-200: Microsoft Security Operations Analyst

You have a third-party security information and event management (SIEM) solution. You need to ensure that the SIEM solution can generate alerts for Azure Active Directory (Azure AD) sign-events in near real time. What should you do to route events to the SIEM solution?

Nội dung câu hỏi

You have a third-party security information and event management (SIEM) solution. You need to ensure that the SIEM solution can generate alerts for Azure Active Directory (Azure AD) sign-events in near real time. What should you do to route events to the SIEM solution?

Các lựa chọn

Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.

  1. A. Create an Azure Sentinel workspace that has a Security Events connector.
  2. B. Configure the Diagnostics settings in Azure AD to stream to an event hub. — đáp án hiện tại
  3. C. Create an Azure Sentinel workspace that has an Azure Active Directory connector.
  4. D. Configure the Diagnostics settings in Azure AD to archive to a storage account.

Cộng đồng

0 bình luận công khai. Tên thành viên được ẩn một phần.

Chưa có bình luận. Mở giao diện tương tác để bắt đầu thảo luận.

Câu hỏi liền kề