Microsoft Azure Fundamentals — Question 294
You need to collect and automatically analyze security events from Azure Active Directory (Azure AD).
What should you use?
Answer options
- A. Microsoft Sentinel
- B. Azure Synapse Analytics
- C. Azure AD Connect
- D. Azure Key Vault
Correct answer: A
Explanation
Microsoft Sentinel is designed for collecting and analyzing security events, making it the appropriate choice for Azure AD security event analysis. Azure Synapse Analytics is focused on data integration and analytics, Azure AD Connect is for synchronizing on-premises directories with Azure AD, and Azure Key Vault is used for managing secrets and keys, which are not relevant to security event analysis.