ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 64 - SC-200 discussion

Report
Export

Your company uses Microsoft Defender for Endpoint.

The company has Microsoft Word documents that contain macros. The documents are used frequently on the devices of the company's accounting team.

You need to hide false positive in the Alerts queue, while maintaining the existing security posture.

Which three actions should you perform? Each correct answer presents part of the solution.

NOTE: Each correct selection is worth one point.

A.

Resolve the alert automatically.

Answers
A.

Resolve the alert automatically.

B.

Hide the alert.

Answers
B.

Hide the alert.

C.

Create a suppression rule scoped to any device.

Answers
C.

Create a suppression rule scoped to any device.

D.

Create a suppression rule scoped to a device group.

Answers
D.

Create a suppression rule scoped to a device group.

E.

Generate the alert.

Answers
E.

Generate the alert.

Suggested answer: B, C, E

Explanation:

Reference:

https://docs.microsoft.com/en-us/windows/securitv/threat-protection/microsoft-defender-atp/manaqe-alerts

asked 05/10/2024
charles ratchagaraj
43 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first