SC-200 • Mock Exam 72
Free SC-200 mock exam — 25 questions with explanations. Set 72. No signup required.
Your threat hunting team uses Microsoft Sentinel. They want to search for anomalous network connections to known malicious IP addresses over the past 7 days. Which KQL operator should they use to match the source IP addresses against a watchlist containing the malicious IPs?
Choose an answer to begin — your selection is scored in the full session.
25 questions · instant feedback and full explanations after every question.