AZ-500 Manage identity and access • Set 3
AZ-500 Manage identity and access Practice Test 3 — 15 questions with explanations. Free, no signup.
A security operations team uses Microsoft Sentinel. They have created a playbook that sends an email notification to the security team when a high-severity incident is created by a specific analytics rule named 'CriticalRDPAccess'. They want the playbook to trigger automatically only when the incident has severity 'High' AND the incident was created by the rule named 'CriticalRDPAccess'. Which automation rule configuration should they use?
Choose an answer to begin — your selection is scored in the full session.
15 questions · instant feedback and full explanations after every question.