Microsoft Security Operations Analyst SC-200 Question # 6 Topic 1 Discussion

Microsoft Security Operations Analyst SC-200 Question # 6 Topic 1 Discussion

SC-200 Exam Topic 1 Question 6 Discussion:
Question #: 6
Topic #: 1

You need to correlate data from the SecurityEvent Log Anarytks table to meet the Microsoft Sentinel requirements for using UEBA. Which Log Analytics table should you use?


A.

SentwlAuoNt


B.

AADRiskyUsers


C.

IdentityOirectoryEvents


D.

Identityinfo


Get Premium SC-200 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.