Microsoft Azure Fundamentals — Question 294

You need to collect and automatically analyze security events from Azure Active Directory (Azure AD).
What should you use?

Answer options

Correct answer: A

Explanation

Microsoft Sentinel is designed for collecting and analyzing security events, making it the appropriate choice for Azure AD security event analysis. Azure Synapse Analytics is focused on data integration and analytics, Azure AD Connect is for synchronizing on-premises directories with Azure AD, and Azure Key Vault is used for managing secrets and keys, which are not relevant to security event analysis.