SC-200 Perform threat hunting • Set 8
SC-200 Perform threat hunting Practice Test 8 — 15 questions with explanations. Free, no signup.
During a hunt, you discover that an attacker used a valid but compromised service principal to authenticate to Azure Key Vault and export secrets. Which Microsoft Sentinel hunting query would best identify similar activity across your environment?
Choose an answer to begin — your selection is scored in the full session.
15 questions · instant feedback and full explanations after every question.