SC-100 Practice Question 3946
Exam: SC-100
Domain: Design security operations, identity, and compliance capabilities
Difficulty: easy
When designing Microsoft Sentinel incident management, what component allows analysts to create structured investigation steps, checklists, and tasks directly within an incident?
Answer Options
A
Incident Tasks in Microsoft Sentinel
B
Local Sticky Notes on the analyst desktop
C
Outlook calendar meeting reminders
D
Windows Task Manager processes
Correct Answer
A: Incident Tasks in Microsoft Sentinel
Explanation
Incident Tasks in Microsoft Sentinel enable SOC leads to standardize response procedures by defining manual or automated checklists for analysts to complete during triage.