What should you do first?

You have an Azure Sentinel deployment in the East US Azure region.

You create a Log Analytics workspace named LogsWest in the West US Azure region.

You need to ensure that you can use scheduled analytics rules in the existing Azure Sentinel deployment to generate alerts based on queries to LogsWest.

What should you do first?
A . Deploy Azure Data Catalog to the West US Azure region.
B . Modify the workspace settings of the existing Azure Sentinel deployment
C . Add Microsoft Sentinel to a workspace.
D . Create a data connector in Azure Sentinel.

Answer: C

Explanation:

Reference: https://docs.microsoft.com/en-us/azure/sentinel/extend-sentinel-across-workspaces-tenants

Latest SC-200 Practice Questions with 75 Q&As

Updated Study Material | Instant Download | Detailed Answers and Explanations

Subscribe
Notify of
guest
0 Comments