SC-200 Respond to security incidents • Set 19
SC-200 Respond to security incidents Practice Test 19 — 15 questions with explanations. Free, no signup.
Your organization uses Microsoft Defender for Cloud Apps. A security analyst receives an alert about suspicious activity from a user account indicating a potential ransomware attack. The analyst needs to quickly isolate the user's device and revoke the user's access to all cloud apps. What is the most efficient way to achieve this?