Questions
To test your understanding of integrating Microsoft 365 Defender with Microsoft Sentinel, take a shot at the following questions:
- A serious incident in your Microsoft 365 Defender portal is made up of 140 alerts. How would you expect Microsoft Sentinel to respond to this? Choose one.
- Sentinel will split the incident into two incidents
- Sentinel will have one incident with all alerts
- Sentinel will redirect you to Microsoft 365 Defender to see all the alerts
- Sentinel will hide alerts with a lower priority
- Which of the following components would not fall into scope for Microsoft 365 Defender’s connector to Sentinel? Choose all that apply.
- Azure Active Directory Identity Protection
- Microsoft Defender Vulnerability Management
- Microsoft Purview Data Loss Prevention
- Microsoft Defender for SQL
- You are using Microsoft Sentinel to create queries for your SOC team. Which of the following tables would be most appropriate to find out the severity of an alert as determined...