CertyRush
Đang tải...
C CertyRush
Câu hỏi free preview

Câu 121: SC-200: Microsoft Security Operations Analyst

You have a Microsoft Sentinel workspace that contains the following incident. Brute force attack against Azure Portal analytics rule has been triggered. You need to identify the geolocation information that corresponds to the incident. What should you do?

Nội dung câu hỏi

You have a Microsoft Sentinel workspace that contains the following incident. Brute force attack against Azure Portal analytics rule has been triggered. You need to identify the geolocation information that corresponds to the incident. What should you do?

Các lựa chọn

Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.

  1. A. From Overview, review the Potential malicious events map.
  2. B. From Incidents, review the details of the IPCustomEntity entity associated with the incident. — đáp án hiện tại
  3. C. From Incidents, review the details of the AccountCustomEntity entity associated with the incident.
  4. D. From Investigation, review insights on the incident entity.

Cộng đồng

0 bình luận công khai. Tên thành viên được ẩn một phần.

Chưa có bình luận. Mở giao diện tương tác để bắt đầu thảo luận.

Câu hỏi liền kề