SC-200 Respond to security incidents • Set 20
SC-200 Respond to security incidents Practice Test 20 — 15 questions with explanations. Free, no signup.
You are investigating a potential ransomware incident in Microsoft Defender XDR. The incident has a high severity alert indicating that a user installed a suspicious application. Which initial response action should you take to contain the threat while preserving evidence?
Choose an answer to begin — your selection is scored in the full session.
15 questions · instant feedback and full explanations after every question.