A SOC analyst notices repeated failed sign-in attempts followed by a successful login from an unusual country. Which Microsoft Sentinel analytics rule type is BEST suited to detect this pattern?
-
A
Fusion
-
B
Scheduled
-
C
NRT (Near Real-Time)
-
D
Microsoft Security