MS-102 Practice Question 3087
Exam: MS-102
Domain: Manage security and threats using Microsoft Defender XDR
Difficulty: medium
You are configuring alert suppression rules in Microsoft Defender XDR. Why would a security operations team create an alert suppression rule?
Answer Options
A
Hiding or resolving known false positives or expected benign activity
B
Deleting user mailboxes automatically
C
Turning off real-time antivirus protection
D
Blocking all incoming external email traffic
Correct Answer
A: Hiding or resolving known false positives or expected benign activity
Explanation
Suppression rules automatically resolve or hide known false positives or expected benign administrative activities from the active incident queue.