MS-102 Practice Question 3088

Exam: MS-102
Domain: Manage security and threats using Microsoft Defender XDR
Difficulty: easy
You need to view an aggregated security graph that connects alerts across endpoint processes, email delivery, and user identity sign-ins into a single security incident. Where is this viewed?

Answer Options

A
The Incidents queue in Microsoft Defender XDR portal
B
Local Windows Event Viewer
C
SharePoint site recycle bin
D
Azure Cost Management analysis blade

Correct Answer

A: The Incidents queue in Microsoft Defender XDR portal

Explanation

The Incidents queue in the Microsoft Defender XDR portal correlates related alerts across identities, endpoints, emails, and cloud apps into consolidated incidents.