HOTSPOT
-
You have a Microsoft Sentinel workspace that has User and Entity Behavior Analytics (UEBA) enabled.
You need to identify all the log entries that relate to security-sensitive user actions performed on a server named Server1. The solution must meet the following requirements:
• Only include security-sensitive actions by users that are NOT members of the IT department.
• Minimize the number of false positives.
How should you complete the query? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
ACSC
Highly Voted 2 years, 2 months agotirajvid
1 year, 9 months agoDaraVasu
Highly Voted 2 years, 2 months agosmanzana
Most Recent 8 months, 3 weeks ago7d801bf
9 months, 2 weeks agoDChilds
1 year agoKurdd
1 year, 5 months agochepeerick
1 year, 5 months agodonathon
1 year, 8 months agodevop23
1 year, 9 months ago