SC-200 Respond to security incidents • Set 8
SC-200 Respond to security incidents Practice Test 8 — 15 questions with explanations. Free, no signup.
You run the above KQL query in Microsoft Sentinel to detect encoded PowerShell commands. The query returns no results, even though you know that some devices have executed encoded PowerShell commands. What is the most likely reason?
Choose an answer to begin — your selection is scored in the full session.
15 questions · instant feedback and full explanations after every question.