MS-102 • Practice Test 2 — 30 Questions
Free MS-102 practice test 2 — 30 questions with explanations. No signup required.
A security analyst needs to create a custom detection rule in Microsoft 365 Defender that triggers when a suspicious PowerShell process (e.g., using -EncodedCommand) is detected on a device, and within 5 minutes, an outbound network connection to a known malicious IP address occurs. Which two advanced hunting tables must be joined?
Choose an answer to begin — your selection is scored in the full session.
30 questions · instant feedback and full explanations after every question.