SC-200 Perform threat hunting • Set 10
SC-200 Perform threat hunting Practice Test 10 — 15 questions with explanations. Free, no signup.
Your organization uses Microsoft Sentinel with the Microsoft Defender XDR connector to ingest alerts and incidents from Defender for Endpoint, Defender for Office 365, and Defender for Identity. As a threat hunter, you want to proactively search for devices that may be communicating with known malicious IP addresses that have not yet triggered an alert. You have a list of known malicious IP addresses from an external threat intelligence feed. Which approach should you take to perform this hunt efficiently?
Choose an answer to begin — your selection is scored in the full session.
15 questions · instant feedback and full explanations after every question.