SC-200 • Practice Test 8
Free SC-200 practice test — 10 questions with explanations. Set 8. No signup required.
A security analyst is using Microsoft 365 Defender advanced hunting to investigate a ransomware incident. The analyst wants to find all processes that were created with a specific parent process ID. Which column in the DeviceProcessEvents table should the analyst use to filter the parent process?
Choose an answer to begin — your selection is scored in the full session.
10 questions · instant feedback and full explanations after every question.