Damn, I made it. I went through the practice questions twice. My exam is on Dec 10th 2022. I passed my AZ-900 Fundamentals, CompTIA Security+ and SC-900 is tomorrow! Thank you Exam Topics, changing lives!
"playbooks" is the answer.
https://learn.microsoft.com/en-us/azure/sentinel/tutorial-respond-threats-playbook?tabs=LAC%2Cincidents#what-are-automation-rules-and-playbooks
Playbooks are collections of procedures that can be run from Microsoft Sentinel in response to an alert or incident. A playbook can help automate and orchestrate your response, and can be set to run automatically when specific alerts or incidents are generated, by being attached to an analytics rule or an automation rule, respectively. It can also be run manually on-demand.
Playbooks in Microsoft Sentinel are based on workflows built in Azure Logic Apps, which means that you get all the power, customizability, and built-in templates of Logic Apps. Each playbook is created for the specific subscription to which it belongs, but the Playbooks display shows you all the playbooks available across any selected subscriptions.
Answer: playbooks
Playbooks are collections of procedures that can be run from Microsoft Sentinel in response to an alert or incident. A playbook can help automate and orchestrate your response, and can be set to run automatically when specific alerts or incidents are generated, by being attached to an analytics rule or an automation rule, respectively. It can also be run manually on-demand.
Reference
Tutorial: Use playbooks with automation rules in Microsoft Sentinel
https://learn.microsoft.com/en-us/azure/sentinel/tutorial-respond-threats-playbook
Playbooks is correct.
https://docs.microsoft.com/en-us/azure/sentinel/tutorial-respond-threats-playbook?tabs=LAC
upvoted 4 times
...
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
NAMP
Highly Voted 2 years, 2 months agoAVHT
Highly Voted 1 year, 12 months agoLegendaryZA
Most Recent 1 month, 3 weeks agoDarkfire
1 year, 4 months agozellck
1 year, 7 months agoPinkUnicorns
1 year, 11 months agoITOPS
1 year, 11 months agoOrangeSG
1 year, 12 months agoMacDanorld
2 years, 2 months agojellybiscuit
2 years, 3 months ago