SC-200 Practice Question 3780
Exam: SC-200
Domain: Respond to security incidents
Difficulty: hard
You are investigating an alert where Defender Antivirus detected a suspicious file, but Automated Investigation marked it as "No threats found". You want a Microsoft security expert to inspect the sample. What action can you initiate?
Answer Options
A
Submit sample to Microsoft Defender Experts via "Ask Defender Experts"
B
Post the sample file onto a public social media website
C
Email the file to personal webmail addresses
D
Ignore the alert and close the investigation
Correct Answer
A: Submit sample to Microsoft Defender Experts via "Ask Defender Experts"
Explanation
Submit the file sample to Microsoft Defender Security Experts via "Ask Defender Experts" to request human analysis from Microsoft specialized threat researchers.