Question Title

* 1. What is the first deployment pre-requisite for Azure Sentinel

Question Title

* 2. Identity the default configuration for log retention.

Question Title

* 3. Identity ideal long term to store log over 90 days at the same time able to run KQL Queries

Question Title

* 4. If you want to collect Firewalls, IPS, network devices logs which of the connectors you need to configure.

Question Title

* 5. When you use the Syslog log forwarder for ingesting Syslog  - Identify the incorrect statement from the following list.

Question Title

* 6. Which of the following logs needs the creation of log parsers in the sentinel

Question Title

* 7. When you ingest Data from AWS into Azure sentinel - identity the correct parsing mechanism.

Question Title

* 8. Where does Azure store the logs of creation and deletion of Azure resources?

Question Title

* 9. What are the out-of-the-box RBAC available for Azure Sentinel?

Question Title

* 10. If you need to create SOAR playbooks what access you need based on Least privilege access model

Question Title

* 11. What are the pre-requests to get Azure Sentinel started (Pick the most appropriate)

Question Title

* 12. Azure sentinel provides a PowerShell automation library called Az.SecurityInsights. Identify what are the actions you can accomplish using the Library.

Question Title

* 13. Which are the logs used for building the Entity insights?

Question Title

* 14. Which of the following role is not an Azure Role but an Azure AD Role

Question Title

* 15. IF you want to share data with 3rd party SIEM which of the Azure Resource is an ideal fit.

Question Title

* 16. For Creating and managing SOAR playbooks - what is exact RBAC is required in accordance with the least access privilege  model

Question Title

* 17. What is the most secure way to store secrets

Question Title

* 18. Azure Sentinel provides options to create custom logs. From the list below identity the correct format from the list below.

Question Title

* 19. Which of the Azure Sentinel workbooks Enables you to explore, audit, and speed up Windows Event Log analysis.

Question Title

* 20. BYO-ML platform makes use of the following technology to enable customers to build custom ML models:

T