あなたはセキュリティ オペレーション センター チームの責任者であり、最近 Microsoft Sentinel を実装しました。 セキュリティ オペレーション センター チームのメンバーは、Azure および Microsoft 365 環境のセキュリティにとって重要なセキュリティ アラートに重点を置いたカスタム ビューを備えたダッシュボードの作成を要求しました。 Microsoft Sentinel のどの機能がこの目的を達成できますか?
正解:C
Option C is correct because you can immediately visualize and analyze data after connecting your data sources to Microsoft Sentinel, allowing you to keep track of what's occurring across all of your linked data sources; it will also allow you to create custom views easily. Option A is incorrect because Playbooks in Microsoft Sentinel are built on workflows created in Azure Logic Apps, which are not used for visualization but rather for scheduling, automating, and orchestrating tasks and workflows across systems in the company. Option B is incorrect because Microsoft Sentinel Notebooks, also known as Jupyter notebooks, is an interactive development and data analysis environment hosted in a browser; this will not provide the functionality and features required. Option D is incorrect because Microsoft Defender for Cloud is a Cloud Security Posture Management (CSPM) and Cloud Workload Protection Platform (CWPP). It will not provide the holistic view the Security Operation Center team needs. Reference: https://docs.microsoft.com/en-us/azure/sentinel/get-visibility