ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 371 - MS-102 discussion

Report
Export

You have a Microsoft 365 subscription that uses Microsoft Defender for Endpoint.

All the devices in your organization are onboarded to Microsoft Defender for Endpoint.

You need to ensure that an alert is generated if malicious activity was detected on a device during the last 24 hours.

What should you do?

A.

From the Microsoft Purview compliance portal, create a data loss prevention (DLP) policy.

Answers
A.

From the Microsoft Purview compliance portal, create a data loss prevention (DLP) policy.

B.

From Alerts queue, create a suppression rule and assign an alert.

Answers
B.

From Alerts queue, create a suppression rule and assign an alert.

C.

From Advanced hunting, create a query and a detection rule.

Answers
C.

From Advanced hunting, create a query and a detection rule.

D.

From the Microsoft Purview compliance portal, create an audit log search.

Answers
D.

From the Microsoft Purview compliance portal, create an audit log search.

Suggested answer: C
asked 05/10/2024
Nelson Mira
44 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first