Microsoft Security Operations Analyst SC-200 Question # 16 Topic 2 Discussion

Microsoft Security Operations Analyst SC-200 Question # 16 Topic 2 Discussion

SC-200 Exam Topic 2 Question 16 Discussion:
Question #: 16
Topic #: 2

You have a Microsoft 365 subscription that contains three users named User1. User2 and User3 and the resources shown in the following table.

SC-200 Question 16

You have a Microsoft Defender XDR detection rule named Rule1 that has the following configurations:

• Scope: DevGroup1

• File hash: File1.exe

• Actions

o Devices: Collect investigation package

o User: Mark as compromised o Files: Block

Each user attempts to run File1.exe on their device.

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

NOTE: Each correct selection is worth one point.

SC-200 Question 16


Get Premium SC-200 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.