SC-200 Web TestEngine demo

Exit VCEDump SC-200 Microsoft Security Operations Analyst
Question 18 of 61
0% complete
Q18 Multiple choice

You provision Azure Sentinel for a new Azure subscription.

You are configuring the Security Events connector.

While creating a new rule from a template in the connector, you decide to generate a new alert for every event.

You create the following rule query.

Question 18 diagram

By which two components can you group alerts into incidents? Each correct answer presents a complete solution.

NOTE: Each correct selection is worth one point.

Select all that apply.

Sign in to mark questions

Sign in to save marked questions and return to this demo.

Sign in