ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 133 - MS-102 discussion

Report
Export

You have a Microsoft 365 tenant that contains a Windows 10 device. The device is onboarded to Microsoft Defender for Endpoint.

From Microsoft Defender Security Center, you perform a security investigation.

You need to run a PowerShell script on the device to collect forensic information.

Which action should you select on the device page?

A.

Initiate Live Response Session

Answers
A.

Initiate Live Response Session

B.

Initiate Automated Investigation

Answers
B.

Initiate Automated Investigation

C.

Collect investigation package

Answers
C.

Collect investigation package

D.

Go hunt

Answers
D.

Go hunt

Suggested answer: A

Explanation:

https://docs.microsoft.com/en-us/microsoft-365/security/defender-endpoint/live-response?view=o365-worldwide

asked 05/10/2024
Ajayi Johnson
45 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first