Microsoft Azure Security Engineer Associate AZ-500 Practice Question
Your company uses Microsoft Defender for Cloud across several Azure subscriptions. You want to automatically run a Logic App that sends an email whenever Defender for Cloud generates a security alert with severity High or Critical in the Production subscription. You need a no-code solution configured entirely from the Defender for Cloud portal. What should you create?
Create a workflow automation in Microsoft Defender for Cloud that filters alerts by severity and links to the Logic App.
Configure an Azure Monitor alert rule for the Microsoft.Security/locations/alerts metric and attach an email action group.
Enable continuous export of Defender for Cloud alerts to an Event Hub and trigger an Azure Function that sends the email.
Set up a Microsoft Sentinel automation rule that runs a playbook when the SecurityAlert table receives a High-severity record.
In Microsoft Defender for Cloud you can configure workflow automation policies that are triggered by new or updated security alerts or recommendations. Within the workflow automation blade you filter by attributes such as alert severity and affected subscription, then associate the policy with an existing or newly created Logic App. The Logic App is invoked automatically each time the conditions match, achieving the requested behaviour without extra code. The other options use different services (Azure Monitor alerts, continuous export with custom functions, or Microsoft Sentinel automation) and are not configured directly from the Defender for Cloud workflow automation feature.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is Microsoft Defender for Cloud workflow automation?
Open an interactive chat with Bash
What is a Logic App and how does it work in this scenario?
Open an interactive chat with Bash
How does filtering alerts by severity work in Defender for Cloud?
Open an interactive chat with Bash
Microsoft Azure Security Engineer Associate AZ-500
Secure Azure using Microsoft Defender for Cloud and Microsoft Sentinel
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .