SC-200 • Practice Exam 65
Free SC-200 practice exam — 20 questions with explanations. Set 65. No signup required.
You are a security analyst at Fabrikam. The company uses Microsoft Defender for Cloud Apps and Microsoft Sentinel. During a threat hunt, you need to identify users who are accessing cloud applications from multiple geographic locations in a short time, which could indicate credential theft or token replay. You want to create a hunting query in Microsoft Sentinel using the CloudAppEvents table. Which approach should you take?
Choose an answer to begin — your selection is scored in the full session.
20 questions · instant feedback and full explanations after every question.