SC-200 Manage a security operations environment • Set 2
SC-200 Manage a security operations environment Practice Test 2 — 15 questions with explanations. Free, no signup.
As a security operations analyst, you receive an alert from Microsoft Defender for Identity about a suspicious Kerberos activity. You need to investigate the alert and determine if it is a true positive. What should you use to pivot from the alert to the related user and device timeline?
Choose an answer to begin — your selection is scored in the full session.
15 questions · instant feedback and full explanations after every question.