nerdexam
MicrosoftMicrosoft

MS-102 · Question #376

MS-102 Question #376: Real Exam Question with Answer & Explanation

Sign in or unlock MS-102 to reveal the answer and full explanation for question #376. The question stem and answer options stay visible for context.

Submitted by haruto_sh· Apr 18, 2026Manage security and threats by using Microsoft Defender XDR

Question

You have a Microsoft 365 subscription that uses Microsoft Defender for Endpoint. All the devices in your organization are onboarded to Microsoft Defender for Endpoint. You need to ensure that an alert is generated if malicious activity was detected on a device during the last 24 hours. What should you do?

Options

  • AFrom the Microsoft Purview compliance portal, create a data loss prevention (DLP) policy.
  • BFrom the Microsoft Defender portal, create an alert suppression rule and assign an alert.
  • CFrom Advanced hunting, create a query and a detection rule.
  • DFrom the Microsoft Defender portal, create an Advanced hunting query and a detection rule.

Unlock MS-102 to see the answer

You've previewed enough free MS-102 questions. Unlock MS-102 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#Defender for Endpoint#Advanced hunting#Custom detection#Security alerting
Full MS-102 PracticeBrowse All MS-102 Questions