SC-200 › Respond to security incidents
This domain covers responding to security incidents using Microsoft Sentinel, Defender XDR, and related tools. It tests your ability to triage, investigate, contain, and remediate threats. You must know how to use incident management, automation rules, playbooks, and advanced hunting to resolve attacks like phishing, ransomware, and data exfiltration.
SC-200 Respond to security incidents — All 521 Questions
Every question in this domain with answers and detailed explanations.