Microsoft Security Operations Analyst Associate SC-200 Practice Question
You are investigating a multi-stage incident in Microsoft Sentinel. To understand how the different alerts, entities, and evidence relate to each other, you want an automatically generated visual map that you can explore directly from the incident record without writing KQL. Which Microsoft Sentinel feature should you use?
The Investigation graph (also called the investigation map) is opened directly from an incident in Microsoft Sentinel. It automatically lays out all alerts, entities, and supporting evidence, and lets you expand or pivot on nodes to follow the attack path without running any queries. Livestream, Threat intelligence, and the Query timechart view do not create an entity-centric visual map of the incident.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is the primary function of the Investigation graph in Microsoft Sentinel?
Open an interactive chat with Bash
How does the Investigation graph differ from the Livestream feature in Microsoft Sentinel?
Open an interactive chat with Bash
What types of insights can analysts gain by using an Investigation graph in Microsoft Sentinel?
Open an interactive chat with Bash
Microsoft Security Operations Analyst Associate SC-200
Manage incident response
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .