Describe the capabilities of Microsoft security solutions1 / 5
Which Microsoft security solution is a cloud-native SIEM and SOAR solution that collects data at cloud scale, detects previously undetected threats, and responds to incidents with built-in orchestration and automation?
CorrectIncorrect
Alex
Microsoft Sentinel is a cloud-native SIEM (Security Information and Event Management) and SOAR (Security Orchestration, Automation, and Response) solution. It collects data at cloud scale from across the entire organization using 350+ built-in data connectors. Sentinel uses AI and machine learning to detect previously undetected threats, minimize false positives, and provide intelligent security analytics. Key capabilities include data collection, threat detection with analytics rules, investigation with incidents and entity mapping, and automated response with playbooks (Logic Apps). Exam tip: Sentinel = SIEM + SOAR. SIEM = collect and analyze security data. SOAR = automate responses with playbooks. Cloud-native means no infrastructure to deploy.
Sourcelearn.microsoft.com
Follow-up answers are available in the app. Create a free account — no credit card required.
Question 1 of 5
Create a free account