New Year Sale 2026! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Microsoft SC-200 Exam - Topic 4 Question 74 Discussion

Actual exam question for Microsoft's SC-200 exam
Question #: 74
Topic #: 4
[All SC-200 Questions]

You have a Microsoft 365 E5 subscription that contains 100 Linux devices. The devices are onboarded to Microsoft Defender 365. You need to initiate the collection of investigation packages from the devices by using the Microsoft 365 Defender portal. Which response action should you use?

Show Suggested Answer Hide Answer
Suggested Answer: B

Contribute your Thoughts:

0/2000 characters
Farrah
3 months ago
I’m not sure about this, but I thought Live Response was for real-time issues.
upvoted 0 times
...
Rodrigo
3 months ago
Totally agree with C, that's the standard procedure.
upvoted 0 times
...
Graham
3 months ago
Wait, can you really collect investigation packages from Linux devices? Sounds odd!
upvoted 0 times
...
Loise
4 months ago
I think option B is the right choice for this scenario.
upvoted 0 times
...
Latia
4 months ago
You need to collect investigation packages, so it's definitely option C.
upvoted 0 times
...
Rolland
4 months ago
I’m a bit confused; I thought running an antivirus scan was more for immediate threats. I guess I need to focus on the context of collecting investigation packages.
upvoted 0 times
...
Novella
4 months ago
I feel like I've seen a similar question before, and it was about initiating a response action. I think D, "Initiate Live Response Session," could be relevant too, but I'm leaning towards C.
upvoted 0 times
...
Refugia
4 months ago
I'm not entirely sure, but I remember something about "Initiate Automated Investigation" being more about analyzing threats rather than collecting data.
upvoted 0 times
...
Laticia
5 months ago
I think the answer might be C, "Collect investigation package," since it specifically mentions collecting data for investigation.
upvoted 0 times
...
Tracie
5 months ago
I'm a little confused by the wording of this question. What's the difference between "Initiate Automated Investigation" and "Collect investigation package"? I want to make sure I understand the nuances before I select an answer.
upvoted 0 times
...
Gwenn
5 months ago
Okay, I've got this. The question is asking about collecting investigation packages, so the correct answer has to be C - Collect investigation package. I'm confident that's the right choice.
upvoted 0 times
...
Kandis
5 months ago
Hmm, I'm a bit unsure about this one. I'm trying to decide between B - Initiate Automated Investigation and C - Collect investigation package. I'll need to review the differences between those two options to make sure I choose the right one.
upvoted 0 times
...
Noah
5 months ago
This looks like a straightforward question. I think the answer is C - Collect investigation package, since the question specifically asks about initiating the collection of investigation packages.
upvoted 0 times
...
Venita
5 months ago
This seems straightforward to me. The question is specifically asking about collecting investigation packages, so I'm going to go with C - Collect investigation package. That's the most direct response to the requirement stated in the question.
upvoted 0 times
...
Elliott
5 months ago
This seems like a good approach. The key is using the Date and time for Identify to get the birth date, then doing the age calculation. As long as you have the logic for the age groups correct, this should meet the goal.
upvoted 0 times
...
Marlon
5 months ago
Distribution requirements planning? That's a new one for me. I'll have to guess on this one and hope for the best. Maybe I can come back to it if I have time at the end.
upvoted 0 times
...
Doug
10 months ago
Well, 'Run antivirus scan' might be the easiest option, but where's the fun in that? I say go big or go home - 'Collect investigation package' all the way!
upvoted 0 times
Edda
8 months ago
D) Initiate Live Response Session
upvoted 0 times
...
Ruthann
9 months ago
C) Collect investigation package
upvoted 0 times
...
Fausto
9 months ago
B) Initiate Automated Investigation
upvoted 0 times
...
...
Bette
10 months ago
Alright, time to put on my detective hat. 'Initiate Automated Investigation' seems like the smart choice to get to the bottom of this mystery. Wonder if they have any secret Linux spy software we need to uncover.
upvoted 0 times
Yuette
10 months ago
User 2: Agreed, that sounds like the best option to collect investigation packages from the devices.
upvoted 0 times
...
Mary
10 months ago
User 1: I think we should go with B) Initiate Automated Investigation.
upvoted 0 times
...
...
Leatha
11 months ago
Ooh, 'Initiate Live Response Session' sounds like the perfect way to get up close and personal with those Linux machines. Just don't forget to bring your hazmat suit, you never know what kind of bugs you might find!
upvoted 0 times
...
Corazon
11 months ago
Hmm, I think 'Collect investigation package' is the way to go here. Can't wait to see what juicy details those Linux devices have been hiding!
upvoted 0 times
Evette
9 months ago
User 4: Sounds like a plan, 'Collect investigation package' it is!
upvoted 0 times
...
Lai
9 months ago
User 3: Let's go ahead and initiate the collection to uncover any hidden information.
upvoted 0 times
...
Aliza
9 months ago
User 2: Definitely, that option will give us the details we need from those Linux devices.
upvoted 0 times
...
Margart
10 months ago
User 1: I agree, 'Collect investigation package' sounds like the right choice.
upvoted 0 times
...
...
Stephaine
11 months ago
I'm not sure, but I think option D) Initiate Live Response Session could also be a valid choice.
upvoted 0 times
...
Erinn
11 months ago
I agree with Maile. Collecting investigation package seems like the right action to take.
upvoted 0 times
...
Maile
11 months ago
I think we should use option C) Collect investigation package.
upvoted 0 times
...

Save Cancel