SC-200 Respond to security incidents • Set 19
SC-200 Respond to security incidents Practice Test 19 — 15 questions with explanations. Free, no signup.
Your organization uses Microsoft Sentinel. You need to create an incident response playbook that automatically isolates a compromised device when a high-severity incident is created. The playbook should only run during business hours (9 AM - 5 PM local time). How should you configure this?
Choose an answer to begin — your selection is scored in the full session.
15 questions · instant feedback and full explanations after every question.