MS-102 Practice Question 3087

Exam: MS-102
Domain: Manage security and threats using Microsoft Defender XDR
Difficulty: medium
You are configuring alert suppression rules in Microsoft Defender XDR. Why would a security operations team create an alert suppression rule?

Answer Options

A
Hiding or resolving known false positives or expected benign activity
B
Deleting user mailboxes automatically
C
Turning off real-time antivirus protection
D
Blocking all incoming external email traffic

Correct Answer

A: Hiding or resolving known false positives or expected benign activity

Explanation

Suppression rules automatically resolve or hide known false positives or expected benign administrative activities from the active incident queue.